CVE-2026-50439 Microsoft Message Queuing Queue Manager Remote Code Execution Vulnerability
Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50462 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
External control of file name or path in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50457 Windows Runtime Elevation of Privilege Vulnerability
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50473 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50442 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50389 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50456 Windows File Explorer Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50432 Window Virtual Filtering Platform (VFP) Denial of Service Vulnerability
Use after free in Windows Virtual Filtering Platform (VFP) allows an authorized attacker to deny service over a network.
Categories: Microsoft
CVE-2026-50399 Windows Kernel Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50461 Windows NTFS Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50431 Windows Quality of Service (QoS) Packet Scheduler Information Disclosure Vulnerability
Information published.
Categories: Microsoft
CVE-2026-50453 Windows USB Audio Class Driver Information Disclosure Vulnerability
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
Categories: Microsoft
CVE-2026-50417 Windows NTFS Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50447 Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50438 Microsoft PC Manager Elevation of Privilege Vulnerability
Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50420 HTTP.sys Information Disclosure Vulnerability
Out-of-bounds read in Windows HTTP.sys allows an unauthorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-50362 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50474 Remote Desktop Client Remote Code Execution Vulnerability
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50411 Windows Active Directory Federation Services Denial of Service Vulnerability
Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
Categories: Microsoft
CVE-2026-50444 Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability
Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft


