📦

windows_11_26h1

Vendor: microsoft

Actively Exploited 1 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 16 Remote Access
Total CVEs 687 Total Indexed
Avg. EPSS 0.65% Exploit Prob.
Latest CVE CVE-2026-50507 Jun 09

Security Vulnerability Index

Page 31 / 69
7.8 CVSS

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

EPSS: 0.38%
7.8 CVSS

Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.

EPSS: 0.34%
7.8 CVSS
CVE-2026-24291
Exploit Found

Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

EPSS: 3.24%
7.8 CVSS

Improper access control in Windows Projected File System allows an authorized attacker to elevate privileges locally.

EPSS: 0.33%
7.8 CVSS

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 4.49%
7.8 CVSS

External control of file name or path in Windows Kernel allows an authorized attacker to elevate privileges locally.

EPSS: 0.33%