VYPR

Windows 10 22h2

Sign in to watch

by Microsoft

CVEs (107)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2026-32090Hig0.517.80.00Apr 14, 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Speech Brokered Api allows an authorized attacker to elevate privileges locally.
CVE-2026-32089Hig0.517.80.00Apr 14, 2026Use after free in Windows Speech Brokered Api allows an authorized attacker to elevate privileges locally.
CVE-2026-32078Hig0.517.80.00Apr 14, 2026Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-32077Hig0.517.80.00Apr 14, 2026Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
CVE-2026-32074Hig0.517.80.00Apr 14, 2026Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-32069Hig0.517.80.00Apr 14, 2026Double free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-27927Hig0.517.80.00Apr 14, 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-27924Hig0.517.80.00Apr 14, 2026Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-27923Hig0.517.80.00Apr 14, 2026Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-27920Hig0.517.80.00Apr 14, 2026Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
CVE-2026-27919Hig0.517.80.00Apr 14, 2026Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
CVE-2026-27918Hig0.517.80.00Apr 14, 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to elevate privileges locally.
CVE-2026-27916Hig0.517.80.00Apr 14, 2026Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
CVE-2026-27915Hig0.517.80.00Apr 14, 2026Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
CVE-2026-27914Hig0.517.80.00Apr 14, 2026Improper access control in Microsoft Management Console allows an authorized attacker to elevate privileges locally.
CVE-2026-27911Hig0.517.80.00Apr 14, 2026Concurrent execution using shared resource with improper synchronization ('race condition') in Windows User Interface Core allows an authorized attacker to elevate privileges locally.
CVE-2026-27910Hig0.517.80.00Apr 14, 2026Improper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-27909Hig0.517.80.00Apr 14, 2026Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
CVE-2026-26184Hig0.517.80.00Apr 14, 2026Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-26180Hig0.517.80.00Apr 14, 2026Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Page 2 of 6