📦

windows_11_26h1

Vendor: microsoft

Actively Exploited 1 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 16 Remote Access
Total CVEs 685 Total Indexed
Avg. EPSS 0.65% Exploit Prob.
Latest CVE CVE-2026-50507 Jun 09

Security Vulnerability Index

Page 15 / 69
5.5 CVSS

Null pointer dereference in Windows LDAP - Lightweight Directory Access Protocol allows an authorized attacker to deny service locally.

EPSS: 0.28%
7.8 CVSS

Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

EPSS: 0.25%
7.8 CVSS

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

EPSS: 0.16%
7.8 CVSS

Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

EPSS: 0.25%
7.8 CVSS

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

EPSS: 0.15%
7.8 CVSS

Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

EPSS: 0.30%
7.0 CVSS

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

EPSS: 0.19%
7.8 CVSS

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

EPSS: 0.30%
8.8 CVSS

Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network.

EPSS: 0.44%
7.8 CVSS

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 0.31%