CVE-2026-50469 Windows Projected File System Elevation of Privilege Vulnerability
Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50454 Windows User Interface Core Elevation of Privilege Vulnerability
Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50365 Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability
Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.
Categories: Microsoft
CVE-2026-50426 Windows DNS Server Remote Code Execution Vulnerability
Relative path traversal in DNS Server allows an authorized attacker to execute code over an adjacent network.
Categories: Microsoft
CVE-2026-50385 Windows Runtime Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50413 Windows Runtime Elevation of Privilege Vulnerability
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50427 Content Delivery Manager Elevation of Privilege Vulnerability
Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50422 Windows NTFS Elevation of Privilege Vulnerability
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50421 Windows Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50374 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a physical attack.
Categories: Microsoft
CVE-2026-50367 Windows Sensor Data Service Elevation of Privilege Vulnerability
Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50383 Windows Print Spooler Information Disclosure Vulnerability
Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50451 Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50455 Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability
Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50466 Microsoft Brokering File System Elevation of Privilege Vulnerability
Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50402 NTFS Elevation of Privilege Vulnerability
Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50435 Windows Overlay Filter Elevation of Privilege Vulnerability
Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50409 Windows Overlay Filter Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Overlay Filter allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50441 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50465 Windows DNS Client Tampering Vulnerability
Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.
Categories: Microsoft


