Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 2 min 39 sec ago

CVE-2026-50688 Windows Win32k Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50680 Windows Hyper-V Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50681 Windows Secure Channel Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-54121 Active Directory Certificate Services Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-50682 Active Directory Denial of Service Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-50685 Windows DHCP Server Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-50683 Windows DHCP Client Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.
Categories: Microsoft

CVE-2026-50687 Windows Win32k Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50686 Windows OLE Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-50689 Windows Clipboard Server Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-54125 Windows Runtime Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-50690 Windows SMB Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50692 Desktop Window Manager Elevation of Privilege Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-54128 Windows DHCP Client Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Windows DHCP Client allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-54126 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-55010 Minecraft Bedrock Dedicated Server Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Minecraft Bedrock Dedicated Server allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-47290 Microsoft Office Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-47642 Microsoft Excel Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-48580 Microsoft Excel Information Disclosure Vulnerability

Tue, 07/14/2026 - 14:00
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-50301 Microsoft Office Remote Code Execution Vulnerability

Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Categories: Microsoft

Pages