📦

windows_11_26h1

Vendor: microsoft

Actively Exploited 1 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 16 Remote Access
Total CVEs 685 Total Indexed
Avg. EPSS 0.65% Exploit Prob.
Latest CVE CVE-2026-50507 Jun 09

Security Vulnerability Index

Page 25 / 69
7.8 CVSS

Improper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileges locally.

EPSS: 0.21%
7.8 CVSS

Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

EPSS: 1.77%
7.0 CVSS

Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally.

EPSS: 1.55%
7.8 CVSS

Integer underflow (wrap or wraparound) in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.

EPSS: 0.30%
4.4 CVSS

Improper input validation in Windows Hello allows an authorized attacker to bypass a security feature locally.

EPSS: 0.39%
7.8 CVSS

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.

EPSS: 0.24%
7.0 CVSS

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

EPSS: 0.20%
7.8 CVSS

Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.

EPSS: 0.23%
7.8 CVSS

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 0.30%
7.8 CVSS
CVE-2026-26179
Exploit Found

Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 0.42%