VYPR

Windows

by Microsoft

CVEs (2,653)

  • CVE-2022-41049MedKEVNov 9, 2022
    risk 0.47cvss 5.4epss 0.02

    Windows Mark of the Web Security Feature Bypass Vulnerability

  • CVE-2019-1252MedSep 11, 2019
    risk 0.47cvss 6.5epss 0.60

    An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1286.

  • CVE-2017-11823MedOct 13, 2017
    risk 0.47cvss 6.7epss 0.03

    The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypass by the way it handles Windows PowerShell sessions, aka "Microsoft Windows Security Feature Bypass".

  • CVE-2016-3319HigAug 9, 2016
    risk 0.47cvss 7.0epss 0.19

    The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."

  • CVE-2026-65678HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-59126HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50472HigAug 11, 2026
    risk 0.46cvss 7.0epss 0.00

    Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.

  • CVE-2026-34347HigMay 12, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-34331HigMay 12, 2026
    risk 0.46cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-27929HigApr 14, 2026
    risk 0.46cvss 7.0epss 0.00

    Time-of-check time-of-use (toctou) race condition in Windows LUAFV allows an authorized attacker to elevate privileges locally.

  • CVE-2026-27917HigApr 14, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate privileges locally.

  • CVE-2026-25171HigMar 10, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.

  • CVE-2026-24285HigMar 10, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-21219HigJan 13, 2026
    risk 0.46cvss 7.0epss 0.00

    Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.

  • CVE-2025-59208HigOct 14, 2025
    risk 0.46cvss 7.1epss 0.00

    Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose information over a network.

  • CVE-2025-55331HigOct 14, 2025
    risk 0.46cvss 7.0epss 0.00

    Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.

  • CVE-2025-27468HigMay 13, 2025
    risk 0.46cvss 7.0epss 0.00

    Improper privilege management in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.

  • CVE-2025-26665HigApr 8, 2025
    risk 0.46cvss 7.0epss 0.00

    Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.

  • CVE-2025-25008HigMar 11, 2025
    risk 0.46cvss 7.1epss 0.01

    Improper link resolution before file access ('link following') in Microsoft Windows allows an authorized attacker to elevate privileges locally.

  • CVE-2024-38248HigSep 10, 2024
    risk 0.46cvss 7.0epss 0.01

    Windows Storage Elevation of Privilege Vulnerability

Page 61 of 133