microsoft
3,712 known vulnerabilities affecting microsoft products.
Products
windows_server_2019 1452
windows_server_2016 1310
windows_server_2022 1272
windows_server_2025 1131
windows_10_1809 1131
windows_11_24h2 1111
windows_11_25h2 1081
windows_10_22h2 1066
windows_10_21h2 1061
windows_11_26h1 1009
windows 990
windows_10_1607 980
windows_server_2012 977
windows_11_23h2 761
windows_10 343
windows_server_2008 326
365_apps 277
office_2021 225
office_2024 225
office_2019 217
windows_8.1 192
microsoft_365 185
windows_rt_8.1 170
windows_7 169
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-62710 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Device Association Service allows an autho… | |
| CVE-2026-62711 | Medium | 0.3% | 7.8 | Use after free in Windows Win32K allows an authorized attacker to elevate privil… | |
| CVE-2026-62717 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attac… | |
| CVE-2026-62719 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Message Queuing allows an authorized attac… | |
| CVE-2026-62722 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Brokering File System allows an authorized… | |
| CVE-2026-62732 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Telephony Service allows an authorized att… | |
| CVE-2026-62747 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Device Association Service allows an autho… | |
| CVE-2026-62751 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Projected File System allows an author… | |
| CVE-2026-62752 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to … | |
| CVE-2026-62754 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to … | |
| CVE-2026-62768 | Medium | 0.3% | 7.8 | Stack-based buffer overflow in Windows Installer allows an authorized attacker t… | |
| CVE-2026-65787 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Desktop Window Manager allows an authorized attack… | |
| CVE-2026-68845 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Program Compatibility Assistant Service al… | |
| CVE-2026-69295 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows USB Driver allows an authorized attacker to elevat… | |
| CVE-2026-69298 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized… | |
| CVE-2026-69307 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allo… | |
| CVE-2026-69312 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69323 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69348 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to el… | |
| CVE-2026-69352 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69421 | Medium | 0.3% | 7.8 | Integer underflow (wrap or wraparound) in Windows Kernel Mode Driver allows an a… | |
| CVE-2026-69475 | Medium | 0.3% | 7.8 | Untrusted pointer dereference in Windows Remote Desktop Services allows an autho… | |
| CVE-2026-69489 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69513 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Error Reporting allows an authorized attac… | |
| CVE-2026-69532 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69571 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allo… | |
| CVE-2026-69580 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69583 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69584 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows USB Video Driver allows an authorized … | |
| CVE-2026-69589 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69593 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69687 | Medium | 0.3% | 7.8 | Integer underflow (wrap or wraparound) in Windows USB Audio Class driver (usbaud… | |
| CVE-2026-69707 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows USB Audio Class driver (usbaudio.sys) … | |
| CVE-2026-69709 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-69738 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized… | |
| CVE-2026-69787 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-69822 | Medium | 0.3% | 7.8 | Numeric truncation error in Windows Kerberos allows an authorized attacker to el… | |
| CVE-2026-69841 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an aut… | |
| CVE-2026-69844 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate pr… | |
| CVE-2026-70338 | Medium | 0.3% | 7.8 | Improper control of generation of code ('code injection') in Microsoft PowerShel… | |
| CVE-2026-70344 | Medium | 0.3% | 7.8 | Stack-based buffer overflow in Windows Installer allows an authorized attacker t… | |
| CVE-2026-70346 | Medium | 0.3% | 7.8 | Stack-based buffer overflow in Windows Installer allows an authorized attacker t… | |
| CVE-2026-70347 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Installer allows an authorized attacker to… | |
| CVE-2026-70564 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Print Spooler Components allows an authori… | |
| CVE-2026-70569 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to ele… | |
| CVE-2026-70572 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized… | |
| CVE-2026-70581 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized… | |
| CVE-2026-71337 | Medium | 0.3% | 7.8 | Stack-based buffer overflow in Windows Storage Management Provider allows an aut… | |
| CVE-2026-72941 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-72967 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Network Connection Broker allows an author… |