VYPR

Windows 11 25h2

by Microsoft

CVEs (1,162)

  • CVE-2026-50361HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50360HigJul 14, 2026
    risk 0.00cvss 8.8epss 0.01

    Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-50359HigJul 14, 2026
    risk 0.00cvss 7.0epss 0.00

    Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50358HigJul 14, 2026
    risk 0.00cvss 7.0epss 0.00

    Use after free in Windows Media allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50357HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

  • CVE-2026-50353HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50352MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

  • CVE-2026-50348HigJul 14, 2026
    risk 0.00cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-50347HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.

  • CVE-2026-50346HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Improper authorization in RPC Runtime allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50345HigJul 14, 2026
    risk 0.00cvss 7.0epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50344HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Improper authorization in Windows OLE allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50343HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.04

    Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50341MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

  • CVE-2026-50340HigJul 14, 2026
    risk 0.00cvss 8.5epss 0.01

    Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-50339MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

  • CVE-2026-50337HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50336HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Media allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50335HigJul 14, 2026
    risk 0.00cvss 7.8epss 0.00

    Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

  • CVE-2026-50334MedJul 14, 2026
    risk 0.00cvss 5.5epss 0.00

    Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally.

Page 51 of 59