CVE 列表 – 发现高风险与在野利用漏洞

聚合 NVD、CVE 及多源情报,深度解析 RCE 等高危风险。系统集成 CVSS 与 EPSS 模型,动态追踪 Exploit 资源与 PoC 公开状态,研判可利用性。结合官方补丁与修复方案,优化漏洞管理优先级,缩短响应周期,保障资产安全。

分配机构(CNA / 来源):[email protected] 移除此筛选

显示 20122013926 条结果
CVE 描述 最高 CVSS EPSS % 公开时间 更新时间
CVE-2026-50676 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally. 7.8 0.24% 2026-07-14 2026-07-22
CVE-2026-50674 Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally. 7.0 0.25% 2026-07-14 2026-07-22
CVE-2026-50673 Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. 7.8 0.19% 2026-07-14 2026-07-16
CVE-2026-50672 Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally. 7.0 0.16% 2026-07-14 2026-07-22
CVE-2026-50670 Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally. 8.8 0.24% 2026-07-14 2026-07-16
CVE-2026-50669 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally. 7.0 0.16% 2026-07-14 2026-07-22
CVE-2026-50668 Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack. 6.8 0.31% 2026-07-14 2026-07-22
CVE-2026-50667 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an authorized attacker to elevate privileges locally. 7.8 2.16% 2026-07-14 2026-07-22
CVE-2026-50666 Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a network. 8.8 0.62% 2026-07-14 2026-07-22
CVE-2026-50665 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 7.8 0.35% 2026-07-14 2026-07-16
CVE-2026-50661 Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack. 6.1 0.38% 2026-07-14 2026-07-22
CVE-2026-50658 Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally. 7.0 0.19% 2026-07-14 2026-07-22
CVE-2026-50657 Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally. 4.7 0.41% 2026-07-14 2026-07-22
CVE-2026-50655 Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. 7.8 0.52% 2026-07-14 2026-07-22
CVE-2026-50647 Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network. 7.5 1.10% 2026-07-14 2026-07-22
CVE-2026-50518 Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a network. 9.8 7.36% 2026-07-14 2026-07-22
CVE-2026-50510 Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally. 7.8 0.31% 2026-07-14 2026-07-22
CVE-2026-50509 Deserialization of untrusted data in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally. 7.8 2.31% 2026-07-14 2026-07-22
CVE-2026-50505 Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network. 7.5 0.48% 2026-07-14 2026-07-22
CVE-2026-50504 Buffer over-read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. 6.5 0.64% 2026-07-14 2026-07-22
cvelogic Threat Intelligence