CVE-2026-50502 Windows Event Logging Service Remote Code Execution Vulnerability
Insufficient granularity of access control in Windows Event Logging Service allows an authorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50485 Windows Hyper-V Denial of Service Vulnerability
Buffer over-read in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
Categories: Microsoft
CVE-2026-50486 Windows Runtime Elevation of Privilege Vulnerability
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50487 Windows DNS Client Elevation of Privilege Vulnerability
Use after free in Microsoft Windows DNS allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft
CVE-2026-50488 Clipboard User Service Elevation of Privilege Vulnerability
Improper neutralization of special elements used in a command ('command injection') in Windows Clipboard User Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50500 Windows Netlogon Elevation of Privilege Vulnerability
Use after free in Windows Netlogon allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft
CVE-2026-50499 Windows Print Spooler Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50489 Win32k Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50494 Windows NTFS Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50490 Windows Installer Elevation of Privilege Vulnerability
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50498 Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
Information published.
Categories: Microsoft
CVE-2026-50505 Windows Message Queuing Service (MSMQ) Remote Code Execution Vulnerability
Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-50491 Code Integrity DLL (ci.dll) Elevation of Privilege Vulnerability
Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50492 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with a physical attack.
Categories: Microsoft
CVE-2026-50501 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.
Categories: Microsoft
CVE-2026-50503 Windows Runtime Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-50497 Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
Off-by-one error in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-50496 Windows Network Policy Server SNMP Information Disclosure Vulnerability
Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-50504 Windows Remote Desktop Client Information Disclosure Vulnerability
Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-47295 Microsoft SQL Server Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft


