VYPR

Windows Win32K

by Microsoft

CVEs (38)

  • CVE-2026-69610HigSep 8, 2026
    risk 0.46cvss 7.0epss 0.00

    Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-69410HigSep 8, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-69274HigSep 8, 2026
    risk 0.46cvss 7.1epss 0.01

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-65776HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-33839HigMay 12, 2026
    risk 0.46cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-33104HigApr 14, 2026
    risk 0.46cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-20863HigJan 13, 2026
    risk 0.46cvss 7.0epss 0.00

    Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

  • CVE-2025-27732HigApr 8, 2025
    risk 0.46cvss 7.0epss 0.00

    Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-69498HigSep 8, 2026
    risk 0.45cvss 7.0epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2025-26681MedApr 8, 2025
    risk 0.44cvss 6.7epss 0.01

    Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-69832MedSep 8, 2026
    risk 0.36cvss 5.6epss 0.00

    Exposure of sensitive system information to an unauthorized control sphere in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-69808MedSep 8, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-62798MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Untrusted pointer dereference in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-62786MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-62746MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-62743MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.

  • CVE-2026-58632HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-54112HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally.

Page 2 of 2