|
861
|
7.8 |
HIGH
Local
|
-
|
-
|
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
|
CWE-415
Double Free
|
CVE-2026-26163
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
862
|
7.0 |
HIGH
Local
|
-
|
-
|
Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.
|
CWE-416
Use After Free
|
CVE-2026-26165
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
863
|
7.0 |
HIGH
Local
|
-
|
-
|
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
|
CWE-415
Double Free
|
CVE-2026-26166
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
864
|
8.8 |
HIGH
Local
|
-
|
-
|
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2026-26167
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
865
|
7.8 |
HIGH
Local
|
-
|
-
|
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locall…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2026-26168
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
866
|
6.1 |
MEDIUM
Local
|
-
|
-
|
Buffer over-read in Windows Kernel Memory allows an authorized attacker to disclose information locally.
|
CWE-126
Buffer Over-read
|
CVE-2026-26169
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
867
|
7.8 |
HIGH
Local
|
-
|
-
|
Improper input validation in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
|
CWE-20
Improper Input Validation
|
CVE-2026-26170
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
868
|
7.5 |
HIGH
Network
|
-
|
-
|
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
|
CWE-400 CWE-611
Uncontrolled Resource Consumption XXE
|
CVE-2026-26171
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
869
|
7.8 |
HIGH
Local
|
-
|
-
|
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2026-26172
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
870
|
7.0 |
HIGH
Local
|
-
|
-
|
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locall…
|
CWE-362 CWE-416 CWE-476
Race Condition Use After Free NULL Pointer Dereference
|
CVE-2026-26173
|
2026-04-18 00:10 |
2026-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|