Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 23 min 8 sec ago

CVE-2026-50341 Windows NTFS Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50407 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50331 Windows Application Model Core API Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50343 Microsoft Install Service Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50396 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50370 DHCP Server Service Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.
Categories: Microsoft

CVE-2026-50347 Windows Data.dll Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-50321 Windows USB Driver Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50425 Windows Internal System User Profile Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50315 Windows Image Acquisition Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Information published.
Categories: Microsoft

CVE-2026-50434 Windows Push Notification Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50339 Windows Push Notification Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50430 Windows Push Notification Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50310 Windows Human Interface Device Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50324 Windows Active Directory Federation Services Denial of Service Vulnerability

Tue, 07/14/2026 - 14:00
Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-50312 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50330 Windows Remote Desktop Client Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-50357 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-50377 Windows Kernel Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50390 Windows Kernel Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

Pages