CVE-2026-83968
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-400
CWE-416
T1203
T1499
Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83969
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83970
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83971
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83972
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83973
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83974
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83975
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83976
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83977
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83978
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83979
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-416
T1203
Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83980
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83981
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83982
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83983
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83985
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83986
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83987
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83988
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83990
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-121
Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-83995
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
T1203
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-84000
HIGH
CVSS: 7.8
EPSS: 0.3%
CWE-122
CWE-190
T1203
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute code locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-77909
HIGH
CVSS: 7.7
EPSS: 0.9%
CWE-522
T1552
Insufficiently protected credentials in Azure CycleCloud allows an authorized attacker to disclose information over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-57098
HIGH
CVSS: 7.5
EPSS: 0.6%
CWE-347
T1556
Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-57099
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-770
T1499
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-62759
HIGH
CVSS: 7.5
EPSS: 0.4%
CWE-290
Authentication bypass by spoofing in Windows Netlogon allows an unauthorized attacker to perform spoofing over an adjacent network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-62813
HIGH
CVSS: 7.5
EPSS: 0.7%
CWE-416
T1203
Use after free in Active Directory Domain Services allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-66304
HIGH
CVSS: 7.5
EPSS: 1.0%
CWE-918
T1190
Server-side request forgery (ssrf) in Skype for Business allows an unauthorized attacker to disclose information over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-66307
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-191
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-67376
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-190
T1203
Integer overflow or wraparound in SQL Server allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-68887
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-125
T1005
Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69329
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-125
CWE-190
T1005
T1203
Out-of-bounds read in BranchCache allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69342
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-125
T1005
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69378
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-674
T1499
Uncontrolled recursion in Microsoft Exchange Server allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69397
HIGH
CVSS: 7.5
EPSS: 0.6%
CWE-416
T1203
Use after free in OpenSSH for Windows allows an unauthorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69428
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-125
T1005
Out-of-bounds read in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69429
HIGH
CVSS: 7.5
EPSS: 0.7%
CWE-122
T1203
Heap-based buffer overflow in Windows IKE Extension allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69443
HIGH
CVSS: 7.5
EPSS: 1.0%
CWE-125
T1005
Out-of-bounds read in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to disclose information over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69514
HIGH
CVSS: 7.5
EPSS: 0.7%
CWE-122
T1203
Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69539
HIGH
CVSS: 7.5
EPSS: 0.7%
CWE-416
T1203
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69587
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-476
T1499
Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69588
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-401
T1499
Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69599
HIGH
CVSS: 7.5
EPSS: 0.7%
CWE-416
T1203
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69607
HIGH
CVSS: 7.5
EPSS: 0.6%
CWE-416
T1203
Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69631
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-190
T1203
Integer overflow or wraparound in Windows DNS allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69710
HIGH
CVSS: 7.5
EPSS: 0.2%
CWE-362
T1068
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hello allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69744
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-476
T1499
Null pointer dereference in Windows Kerberos allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69760
HIGH
CVSS: 7.5
EPSS: 1.2%
CWE-125
T1005
Out-of-bounds read in Windows Kerberos allows an unauthorized attacker to deny service over a network.
Published: 2026-09-08
Mentioned in 1 article(s):
CVE-2026-69793
HIGH
CVSS: 7.5
EPSS: 0.8%
CWE-1288
Improper validation of consistency within input in Windows TCP/IP allows an unauthorized attacker to bypass a security feature over a network.
Published: 2026-09-08
Mentioned in 1 article(s):