| CVE-2026-72938 | Access of resource using incompatible type ('type confusion') in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network. | medium | |
| CVE-2026-71336 | Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network. | high | |
| CVE-2026-72943 | Use after free in Windows Deployment Services allows an authorized attacker to execute code over a network. | high | |
| CVE-2026-72957 | Heap-based buffer overflow in Windows Deployment Services allows an authorized attacker to execute code locally. | high | |
| CVE-2026-72937 | Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally. | medium | |
| CVE-2026-72931 | Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to deny service locally. | medium | |
| CVE-2026-72989 | Use of uninitialized resource in Windows Failover Cluster allows an unauthorized attacker to disclose information over a network. | high | |
| CVE-2026-72962 | Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-73028 | Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network. | high | |
| CVE-2026-73010 | Use after free in Windows Failover Cluster allows an unauthorized attacker to execute code over a network. | critical | |
| CVE-2026-73005 | Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-77504 | Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-77886 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | high | |
| CVE-2026-73018 | Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-73026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-73029 | Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network. | medium | |
| CVE-2026-77911 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. | medium | |
| CVE-2026-77491 | Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-78463 | Improper control of generation of code ('code injection') in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-77487 | Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network. | high | |
| CVE-2026-78516 | Insertion of sensitive information into externally-accessible file or directory in Windows Storage allows an authorized attacker to disclose information locally. | medium | |
| CVE-2026-80074 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-78507 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-80079 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. | medium | |
| CVE-2026-81396 | Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | high | |
| CVE-2026-80089 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network. | medium | |
| CVE-2026-81399 | Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-81354 | Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-78520 | Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. | medium | |
| CVE-2026-78450 | Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-83954 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83948 | Improper neutralization of special elements used in a command ('command injection') in Microsoft Azure CLI allows an authorized attacker to execute code over a network. | high | |
| CVE-2026-83987 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83970 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83996 | Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83988 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83971 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-81401 | Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-83974 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-81954 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | high | |
| CVE-2026-85877 | Heap-based buffer overflow in Windows Print Spooler Components allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-83968 | Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally. | high | |
| CVE-2026-83998 | Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | high | |
| CVE-2026-83949 | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-81953 | Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | high | |
| CVE-2026-81387 | Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-81381 | Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. | high | |
| CVE-2026-81394 | Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-81393 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | medium | |
| CVE-2026-78503 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. | medium | |