Blog

Microsoft Patch Tuesday – August 2026

34 min. read
11/08/2026
By Esben Dochy
Patch Tuesday
Microsoft Patch Tuesday

⚡ TL;DR | Go Straight to the August 2026 Patch Tuesday Audit Report

Patch Tuesday is once again upon us. As always, our team has put together the monthly Patch Tuesday Report to help you manage your update progress. The audit report gives you a quick and clear overview of your Windows machines and their patching status. The August 2026 edition of Patch Tuesday brings us 669 fixes, with 82 rated as critical. We’ve listed the most important changes below.

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerabilities

CVE-2026-68820, CVE-2026-61348, and CVE-2026-70307 all hit the same component this month: the Ancillary Function Driver (AFD) for WinSock, the kernel-mode driver that handles socket operations for just about every networked Windows process. All three are local elevation of privilege bugs rated Important with a CVSS score of 7.0, requiring low privileges and high attack complexity but no user interaction.

What makes this trio worth your attention is CVE-2026-68820: Microsoft confirms it is already being exploited in the wild. An attacker who already has a foothold on a machine, even a low-privileged one, can use this flaw to escalate to SYSTEM. The other two land in the exact same driver in the same release, so if you’re running exposed workstations or terminal servers where users can execute untrusted code, get this one out first.

Patch status aside, seeing three AFD vulnerabilities fixed together is a good reminder that this driver has quietly become one of the more consistent privilege escalation targets in Windows.

Microsoft SharePoint Server Remote Code Execution and Elevation of Privilege Vulnerabilities

CVE-2026-63520, CVE-2026-65665, and CVE-2026-70355 round out another month of SharePoint Server fixes. CVE-2026-65665 is the standout: a Critical, network-exploitable remote code execution vulnerability with a CVSS score of 8.8, requiring only low privileges and no user interaction. CVE-2026-63520 is a related RCE rated 8.1, though it needs high attack complexity to pull off. CVE-2026-70355 is an elevation of privilege issue reachable over the network, rated 7.3, that does require some user interaction.

None of the three are flagged as exploited yet, but Microsoft’s exploitability assessment marks them as exploitation more likely. That’s worth taking seriously given last month’s SharePoint RCE was actively used to steal machine keys from on-premises servers. If you’re running SharePoint Server on-premises or in a hybrid setup, treat this batch as a priority.

Microsoft High Performance Computing (HPC) Pack Remote Code Execution and Elevation of Privilege Vulnerabilities

CVE-2026-59124 is the highest CVSS score in this month’s release: a 9.8, network-exploitable, no privileges or user interaction required. It’s paired with CVE-2026-59133, an elevation of privilege bug in the same product rated 8.8. Both affect Microsoft HPC Pack, the clustering and job-scheduling software used to manage compute clusters.

HPC Pack isn’t as widely deployed as SharePoint or core Windows components, but if you run one, this pair deserves your full attention: an unauthenticated attacker on the network can chain straight to code execution without touching a login prompt. Not every environment will have HPC Pack in scope, but for the ones that do, this is as close to a patch-now as August gets.

Run the Patch Tuesday August 2026 Audit

To help manage your update progress, we’ve created the Patch Tuesday Audit that checks if the assets in your network are on the latest patch updates. The report has been color-coded to see which machines are up-to-date and which ones still need to be updated. As always, system administrators are urged to update their environment as soon as possible to ensure all endpoints are secured.

The Lansweeper Patch Tuesday dashboard is available in our marketplace and is automatically kept up-to-date. Lansweeper Sites is included in all our licenses without any additional cost and allows you to federate all your installations into one single view so all you need to do is look at one dashboard, automatically updated.

Patch Tuesday August 2026 CVE Codes & Titles

CVE IDTitle
CVE-2026-15534Perl versions through 5.45.1 have out-of-bounds heap reads and writes during regular expression matching via an undersized superlinear cache in S_regmatch
CVE-2026-20337ClamAV ZIP File Format Processing Memory Corruption Vulnerability
CVE-2026-20338ClamAV ZIP File Format Processing Memory Corruption Vulnerability
CVE-2026-20339ClamAV PESpin File Format Processing Integer Overflow Vulnerability
CVE-2026-20345ClamAV GPT File Format Processing Memory Corruption Vulnerability
CVE-2026-20346ClamAV PDF File Format Processing Memory Corruption Vulnerability
CVE-2026-20347ClamAV Mach-O File Format Processing Memory Corruption Vulnerability
CVE-2026-20348ClamAV XAR File Format Processing Memory Corruption Vulnerability
CVE-2026-40375Microsoft Dynamics Business Central Information Disclosure Vulnerability
CVE-2026-42976Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability
CVE-2026-47285Visual Studio Code Information Disclosure Vulnerability
CVE-2026-47299Azure Monitor Agent Elevation of Privilege Vulnerability
CVE-2026-49179Windows Active Directory Domain Services Remote Code Execution Vulnerability
CVE-2026-50472Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability
CVE-2026-54113Remote Procedure Call Denial of Service Vulnerability
CVE-2026-54123Microsoft Defender for Endpoint for Mac Information Disclosure Vulnerability
CVE-2026-54981Visual Studio Code Python Extension Security Feature Bypass Vulnerability
CVE-2026-54984Windows Imaging Component Remote Code Execution Vulnerability
CVE-2026-56174Windows Narrator Braille Elevation of Privilege Vulnerability
CVE-2026-56179Windows Network Address Translation (NAT) Spoofing Vulnerability
CVE-2026-57104Azure Storage Explorer Elevation of Privilege Vulnerability
CVE-2026-57105Microsoft Office SharePoint Spoofing Vulnerability
CVE-2026-58612PowerShell Information Disclosure Vulnerability
CVE-2026-58639Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-58641.NET Elevation of Privilege Vulnerability
CVE-2026-58650Visual Studio Code Security Feature Bypass Vulnerability
CVE-2026-58651Microsoft Word Remote Code Execution Vulnerability
CVE-2026-59113Visual Studio Code Remote Code Execution Vulnerability
CVE-2026-59119PowerShell Elevation of Privilege Vulnerability
CVE-2026-59122Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-59124Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability
CVE-2026-59125Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability
CVE-2026-59126Windows Event Logging Service Elevation of Privilege Vulnerability
CVE-2026-59127Windows Installer Elevation of Privilege Vulnerability
CVE-2026-59128Windows Encrypting File System (EFS) Information Disclosure Vulnerability
CVE-2026-59130AMD Zen Information Disclosure Vulnerability
CVE-2026-59131AMD Zen Information Disclosure Vulnerability
CVE-2026-59132Windows TCP/IP Denial of Service Vulnerability
CVE-2026-59133Microsoft High Performance Computing (HPC) Pack Elevation of Privilege Vulnerability
CVE-2026-59134Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-59135Microsoft Windows Search Component Information Disclosure Vulnerability
CVE-2026-59136Microsoft COM for Windows Information Disclosure Vulnerability
CVE-2026-59137Windows Event Logging Service Information Disclosure Vulnerability
CVE-2026-59138Microsoft Remote Registry Service Denial of Service Vulnerability
CVE-2026-61345Microsoft Remote Registry Service Denial of Service Vulnerability
CVE-2026-61346Windows Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-61347Windows Event Logging Service Information Disclosure Vulnerability
CVE-2026-61348Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-61349Windows Work Folder Service Elevation of Privilege Vulnerability
CVE-2026-61350Windows NTFS Information Disclosure Vulnerability
CVE-2026-61352Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-61353Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-61355Windows Sensor Data Service Elevation of Privilege Vulnerability
CVE-2026-61356Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61357Application Information Services Elevation of Privilege Vulnerability
CVE-2026-61358Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
CVE-2026-61359Windows Storage Elevation of Privilege Vulnerability
CVE-2026-61360Windows GDI Information Disclosure Vulnerability
CVE-2026-61361Windows DHCP Client Remote Code Execution Vulnerability
CVE-2026-61363Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-61364Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61365Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61366Windows Network Connection Broker Elevation of Privilege Vulnerability
CVE-2026-61367Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-61368Windows Hyper-V Information Disclosure Vulnerability
CVE-2026-61477Libvirt: libvirt: newline injection in network xml dns txt/srv fields allows dnsmasq config directive injection
CVE-2026-61918Windows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-61920Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-61921Windows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-61923Windows Display Enhancement Service Elevation of Privilege Vulnerability
CVE-2026-61924Windows Remote Desktop Client Information Disclosure Vulnerability
CVE-2026-61925Windows Installer Elevation of Privilege Vulnerability
CVE-2026-61926Windows USB Driver Elevation of Privilege Vulnerability
CVE-2026-61927Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-61928Windows Hello Tampering Vulnerability
CVE-2026-61929Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-61930Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-61932Windows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-61933Windows DWM Core Library Information Disclosure Vulnerability
CVE-2026-61934Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-61936Windows Defender Firewall Service Security Feature Bypass Vulnerability
CVE-2026-61937Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-61938Windows Installer Elevation of Privilege Vulnerability
CVE-2026-61939Winlogon Elevation of Privilege Vulnerability
CVE-2026-62688Windows MIDI Service Module Elevation of Privileges Vulnerability
CVE-2026-62690Windows Push Notifications Elevation of Privilege Vulnerability
CVE-2026-62692Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVE-2026-62693Windows MIDI Service Module Elevation of Privileges Vulnerability
CVE-2026-62695Windows Storage Elevation of Privilege Vulnerability
CVE-2026-62696Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability
CVE-2026-62698Microsoft Digest Authentication Elevation of Privilege Vulnerability
CVE-2026-62699Windows Universal Disk Format File System Driver (UDFS) Remote Code Execution Vulnerability
CVE-2026-62700Windows NTFS Elevation of Privilege Vulnerability
CVE-2026-62701Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62702Windows Graphics Kernel Denial of Service Vulnerability
CVE-2026-62703Windows DWM Core Library Information Disclosure Vulnerability
CVE-2026-62705Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62707Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability
CVE-2026-62708Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-62709Windows GDI+ Information Disclosure Vulnerability
CVE-2026-62710Windows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62711Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62712Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62713Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62714Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62715Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62716Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62717Windows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-62718Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62719Windows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-62720Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62721Windows User-Mode Power Service (UMPS) Elevation of Privilege Vulnerability
CVE-2026-62722Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62723Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62724Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62725Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62726Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62728Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2026-62729Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62730Windows Wired AutoConfig Service Information Disclosure Vulnerability
CVE-2026-62732Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62733Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62734Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62735Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62736Windows DHCP Client Elevation of Privilege Vulnerability
CVE-2026-62737Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-62738Windows Management Instrumentation Information Disclosure Vulnerability
CVE-2026-62739Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62740Windows Imaging Component Information Disclosure Vulnerability
CVE-2026-62741Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62742Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62743Win32k Information Disclosure Vulnerability
CVE-2026-62745Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62746Win32k Information Disclosure Vulnerability
CVE-2026-62747Windows Device Association Service Elevation of Privilege Vulnerability
CVE-2026-62748Windows Telephony Service Elevation of Privilege Vulnerability
CVE-2026-62749Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-62750Windows HTTP Protocol Stack Tampering Vulnerability
CVE-2026-62751Windows Projected File System Elevation of Privilege Vulnerability
CVE-2026-62752Windows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62753Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62754Windows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62755Windows DHCP Client Elevation of Privilege Vulnerability
CVE-2026-62757Windows Schannel Security Feature Bypass Vulnerability
CVE-2026-62758Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2026-62761Windows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62766Windows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62768Windows Installer Elevation of Privilege Vulnerability
CVE-2026-62769Windows DNS Elevation of Privilege Vulnerability
CVE-2026-62770Windows Shell Elevation of Privilege Vulnerability
CVE-2026-62771Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2026-62772Windows Container Isolation FS Filter Driver (unionfs.sys) Elevation of Privilege Vulnerability
CVE-2026-62773Windows Kerberos Elevation of Privilege Vulnerability
CVE-2026-62774Windows Graphics Kernel Elevation of Privilege Vulnerability
CVE-2026-62775Windows Container Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability
CVE-2026-62776Windows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62777Windows License Manager Elevation of Privilege Vulnerability
CVE-2026-62778Windows DNS Elevation of Privilege Vulnerability
CVE-2026-62779Windows Schannel Elevation of Privilege Vulnerability
CVE-2026-62780Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-62781RPC Runtime Library Remote Code Execution Vulnerability
CVE-2026-62782Windows SMB Client Information Disclosure Vulnerability
CVE-2026-62783Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2026-62784Microsoft Local Security Authority Server (lsasrv) Remote Code Execution Vulnerability
CVE-2026-62785Windows LDAP – Lightweight Directory Access Protocol Remote Code Execution Vulnerability
CVE-2026-62786Win32k Information Disclosure Vulnerability
CVE-2026-62787Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-62788Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-62790Windows SMBv3 Server Remote Code Execution Vulnerability
CVE-2026-62792Windows TCP/IP Remote Code Execution Vulnerability
CVE-2026-62793Windows NTFS Information Disclosure Vulnerability
CVE-2026-62795Windows LDAP – Lightweight Directory Access Protocol Remote Code Execution Vulnerability
CVE-2026-62796Windows NTFS Information Disclosure Vulnerability
CVE-2026-62797Windows NTFS Elevation of Privilege Vulnerability
CVE-2026-62798Win32k Information Disclosure Vulnerability
CVE-2026-62799Windows SMB Client Elevation of Privilege Vulnerability
CVE-2026-62800Windows SMBv3 Server Remote Code Execution Vulnerability
CVE-2026-62803Windows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62807Windows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62811Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2026-62812Windows DHCP Server Elevation of Privilege Vulnerability
CVE-2026-62814Windows DHCP Server Information Disclosure Vulnerability
CVE-2026-62815Microsoft QUIC Remote Code Execution Vulnerability
CVE-2026-62816Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability
CVE-2026-62817Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-62818Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
CVE-2026-62819Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2026-62820Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-62822Windows GDI+ Remote Code Execution Vulnerability
CVE-2026-62823Windows DHCP Server Remote Code Execution Vulnerability
CVE-2026-62824Remote Desktop Client Remote Code Execution Vulnerability
CVE-2026-62827Microsoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-62829Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-62832Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2026-62837Microsoft SharePoint Server Information Disclosure Vulnerability
CVE-2026-62839Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-62842Microsoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-62871.NET Elevation of Privilege Vulnerability
CVE-2026-62872.NET Framework Elevation of Privilege Vulnerability
CVE-2026-62876Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62877Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62878Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-62880Windows NTFS Elevation of Privilege Vulnerability
CVE-2026-62881Windows DNS Elevation of Privilege Vulnerability
CVE-2026-62882Microsoft Outlook Spoofing Vulnerability
CVE-2026-62883Windows DNS Elevation of Privilege Vulnerability
CVE-2026-62885Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-62886.NET Elevation of Privilege Vulnerability
CVE-2026-62887Windows NTFS Information Disclosure Vulnerability
CVE-2026-62888Windows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-62889Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2026-62890Windows GDI+ Elevation of Privilege Vulnerability
CVE-2026-62892Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVE-2026-62893Windows Deployment Services TFTP Server Remote Code Execution Vulnerability
CVE-2026-62894Windows DWM Core Library Elevation of Privilege Vulnerability
CVE-2026-62897.NET Framework Remote Code Execution Vulnerability
CVE-2026-62898Microsoft QUIC Information Disclosure Vulnerability
CVE-2026-62899.NET Security Feature Bypass Vulnerability
CVE-2026-62900.NET Information Disclosure Vulnerability
CVE-2026-62901.NET Denial of Service Vulnerability
CVE-2026-62902.NET Information Disclosure Vulnerability
CVE-2026-62908Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2026-62909.NET Elevation of Privilege Vulnerability
CVE-2026-62910Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-62911Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-62912Microsoft Exchange Server Denial of Service Vulnerability
CVE-2026-62913Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2026-62914Microsoft Exchange Server Spoofing Vulnerability
CVE-2026-62915Microsoft Exchange Server Security Feature Bypass Vulnerability
CVE-2026-62917Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-63512Microsoft SharePoint Server Tampering Vulnerability
CVE-2026-63513Microsoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-63514Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-63515Microsoft Office Remote Code Execution Vulnerability
CVE-2026-63516Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-63517Microsoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-63518Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-63519Microsoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-63520Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-63521Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-63524Microsoft Office Information Disclosure Vulnerability
CVE-2026-63525Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-63526Microsoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-63527Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-63528Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-63529Microsoft Office Information Disclosure Vulnerability
CVE-2026-63530Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-63531Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-63532Microsoft Office Remote Code Execution Vulnerability
CVE-2026-63533Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64563rhashtable: clear stale iter->p on table restart
CVE-2026-64581xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
CVE-2026-64652GitHub CLI: Partial token disclosure in `gh auth status` output
CVE-2026-64653GitHub CLI: Unescaped variable components in request URLs could allow path traversal
CVE-2026-64654GitHub CLI: Terminal escape sequence injection in multiple `gh` commands
CVE-2026-64655GitHub CLI: Attestation Verification Bypass via Unescaped Regex Metacharacters in SAN Matching
CVE-2026-64897Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-64898Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64899Microsoft Office Information Disclosure Vulnerability
CVE-2026-64900Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-64901Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-64902Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-64903Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64904Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64905Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-64906Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64907Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-64908Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64909Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64910Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64911Microsoft Office Remote Code Execution Vulnerability
CVE-2026-64912Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64914Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64915Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-64916Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-64917Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-64919Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64920Microsoft Access Remote Code Execution Vulnerability
CVE-2026-64921Microsoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-64922Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-65656Microsoft Office Remote Code Execution Vulnerability
CVE-2026-65657Microsoft Office Remote Code Execution Vulnerability
CVE-2026-65658Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-65660Microsoft SharePoint Server Spoofing Vulnerability
CVE-2026-65661Microsoft Office Remote Code Execution Vulnerability
CVE-2026-65662Windows GDI Information Disclosure Vulnerability
CVE-2026-65663Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-65664Microsoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-65665Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-65671Remote Access API Elevation of Privilege Vulnerability
CVE-2026-65672Remote Access API Elevation of Privilege Vulnerability
CVE-2026-65673Microsoft Entra Connect Elevation of Privilege Vulnerability
CVE-2026-65675CoPilot Chat Security Feature Bypass Vulnerability
CVE-2026-65678Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-65679Windows iSCSI Target Service Remote Code Execution Vulnerability
CVE-2026-65680Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability
CVE-2026-65681Windows iSCSI Target Service Denial of Service Vulnerability
CVE-2026-65767Microsoft Teams for Android and iOS Spoofing Vulnerability
CVE-2026-65768Microsoft Teams Remote Code Execution Vulnerability
CVE-2026-65769Microsoft Teams iOS Information Disclosure Vulnerability
CVE-2026-65773Windows Kernel Elevation of Privilege Vulnerability
CVE-2026-65774Windows Installer Elevation of Privilege Vulnerability
CVE-2026-65775Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-65776Windows Win32k Elevation of Privilege Vulnerability
CVE-2026-65777Active Directory Security Feature Bypass Vulnerability
CVE-2026-65778Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65779Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65780Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65781Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65782Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65783Windows Autopilot Elevation of Privilege Vulnerability
CVE-2026-65784Windows NTFS Information Disclosure Vulnerability
CVE-2026-65785Windows DHCP Client Denial of Service Vulnerability
CVE-2026-65786Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65787Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65788Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2026-65789Windows DNS Server Remote Code Execution Vulnerability
CVE-2026-65790Windows Message Queuing Elevation of Privilege Vulnerability
CVE-2026-65791Windows iSCSI Target Service Remote Code Execution Vulnerability
CVE-2026-65794Windows SMB Client Information Disclosure Vulnerability
CVE-2026-65795Windows DNS Elevation of Privilege Vulnerability
CVE-2026-65796Windows iSCSI Target Service Denial of Service Vulnerability
CVE-2026-65797Windows DNS Elevation of Privilege Vulnerability
CVE-2026-65798Windows DNS Elevation of Privilege Vulnerability
CVE-2026-65799Windows DNS Elevation of Privilege Vulnerability
CVE-2026-65806Azure CycleCloud Information Disclosure Vulnerability
CVE-2026-65807Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-65810.NET Framework Elevation of Privilege Vulnerability
CVE-2026-65811Power BI Remote Code Execution Vulnerability
CVE-2026-65813Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-65814Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability
CVE-2026-65815Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
CVE-2026-65819gopacket: Multiple layer decoders panic on crafted packets (out-of-bounds/underflow) enabling unauthenticated remote DoS via DecodingLayerParser
CVE-2026-66301Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
CVE-2026-66484Path Traversal in GNU cpio
CVE-2026-66485Uncontrolled Memory Allocation in GNU cpio
CVE-2026-66486Improper Output Encoding in GNU cpio
CVE-2026-66799Windows Key Guard Elevation of Privilege Vulnerability
CVE-2026-66802Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability
CVE-2026-66804Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
CVE-2026-66805Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-66806Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-66807Microsoft Office Graphics Component Remote Code Execution Vulnerability
CVE-2026-66808Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2026-66809Microsoft Office Graphics Component Information Disclosure Vulnerability
CVE-2026-66810Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-6726MITRE: CVE-2026-6726 TPM 2.0 Improper Object Slot Reuse
CVE-2026-6727MITRE: CVE-2026-6727 TPM 2.0 RSA OAEP Timing Side-Channel Vulnerability
CVE-2026-68083ksmbd: fix path resolution in ksmbd_vfs_kern_path_create
CVE-2026-68084staging: vme_user: fix location monitor leak in tsi148 bridge
CVE-2026-68085Bluetooth: hci_uart: clear HCI_UART_SENDING when write_work is canceled
CVE-2026-68086mm/khugepaged: write all dirty file folios when collapsing
CVE-2026-68088usb: gadget: function: rndis: add length check to response query
CVE-2026-68090debugobjects: Plug race against a concurrent OOM disable
CVE-2026-68091HID: wacom: stop hardware after post-start probe failures
CVE-2026-68093KVM: SVM: Bump asid_generation on CPU online to avoid ASID collision after hotplug
CVE-2026-68096audit: fix recursive locking deadlock in audit_dupe_exe()
CVE-2026-68097ksmbd: validate ACE size against SID sub-authorities
CVE-2026-68098ksmbd: bound DACL dedup walk to copied ACEs
CVE-2026-68099ksmbd: restore DACL size on check_add_overflow() to avoid malformed ACL
CVE-2026-68100ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl
CVE-2026-68102drm/amdgpu: fix aperture mapping leak
CVE-2026-68103drm/amdgpu: reject mapping a reserved doorbell to a new queue
CVE-2026-68104drm/amdgpu: invoke pm_genpd_remove() before freeing genpd
CVE-2026-68105drm/amdgpu: Fix kernel panic during driver load failure
CVE-2026-68106drm/amdgpu: fix division by zero with invalid uvd dimensions
CVE-2026-68107drm/amdgpu/vcn4: avoid rereading IB param length
CVE-2026-68108drm/amdgpu/vce: fix integer overflow in image size
CVE-2026-68109drm/amdgpu/sdma7.1: replace BUG_ON() with WARN_ON()
CVE-2026-68110drm/amdgpu/sdma4.4.2: replace BUG_ON() with WARN_ON()
CVE-2026-68111drm/amdgpu/gfx9: replace BUG_ON() with WARN_ON()
CVE-2026-68112drm/amdgpu/gfx9.4.3: replace BUG_ON() with WARN_ON()
CVE-2026-68113drm/amdgpu/gfx12: replace BUG_ON() with WARN_ON()
CVE-2026-68114drm/amdgpu/gfx12.1: replace BUG_ON() with WARN_ON()
CVE-2026-68115drm/amdgpu/gfx10: replace BUG_ON() with WARN_ON()
CVE-2026-68116vxlan: mdb: Fix source list corruption on a failed replace
CVE-2026-68117tipc: clear sock->sk on the failed-insert path in tipc_sk_create()
CVE-2026-68118tcp: challenge ACK for non-exact RST in SYN-RECEIVED
CVE-2026-68121pppoe: reload header pointer after dev_hard_header()
CVE-2026-68123openvswitch: fix GSO userspace truncation underflow
CVE-2026-68124mctp: serial: handle zero-length frames to prevent rx buffer overflow
CVE-2026-68125mac802154: llsec: reject frames shorter than the authentication tag
CVE-2026-68126mac802154: hold an interface reference across the scan worker
CVE-2026-68127ila: reload IPv6 header after pskb_may_pull in checksum adjust
CVE-2026-68129gve: fix Rx queue stall on alloc failure
CVE-2026-68130ksmbd: defer destroy_previous_session() until after NTLM authentication
CVE-2026-68131rbd: Reset positive result codes to zero in object map update path
CVE-2026-68132super: fix emergency thaw deadlock on frozen block devices
CVE-2026-68135net: hip04: fix RX buffer leak on build_skb failure
CVE-2026-68136net: gro: fix double aggregation of flush-marked skbs
CVE-2026-68137net/x25: fix use-after-free in x25_kill_by_neigh()
CVE-2026-68138net/sched: serialize qdisc_rtab_list against concurrent get/put
CVE-2026-68140net/iucv: fix use-after-free of a severed iucv_path
CVE-2026-68141net/af_iucv: fix NULL deref in afiucv_hs_callback_syn()
CVE-2026-68142geneve: require CAP_NET_ADMIN in the device netns for changelink
CVE-2026-68143net: slip: serialize receive against buffer reallocation
CVE-2026-68144phonet: pep: fix use-after-free in pep_get_sb()
CVE-2026-68145iomap: fix out-of-bounds bitmap_set() with zero-length range
CVE-2026-68146ftrace: Add global mutex to serialize trace_parser access
CVE-2026-68147fscrypt: Avoid dynamic allocation in fscrypt_get_devices()
CVE-2026-68148fscrypt: Add missing superblock check in find_or_insert_direct_key()
CVE-2026-68149fs: preserve ACL_DONT_CACHE state in forget_cached_acl()
CVE-2026-68151binfmt_elf_fdpic: only honour the first PT_INTERP
CVE-2026-68152amt: fix use-after-free in AMT delayed works
CVE-2026-68153libceph: remove debugfs files before client teardown
CVE-2026-68154libceph: reject zero bucket types in crush_decode
CVE-2026-68155libceph: Reject monmaps advertising zero monitors
CVE-2026-68156libceph: refresh auth->authorizer_buf{,_len} after authorizer update
CVE-2026-68157libceph: guard missing CRUSH type name lookup
CVE-2026-68158libceph: Fix multiplication overflow in decode_new_up_state_weight()
CVE-2026-68159libceph: bound pg_{temp,upmap,upmap_items} length to CEPH_PG_MAX_SIZE
CVE-2026-68160ceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps()
CVE-2026-68161sctp: close UDP tunnel sockets during netns teardown
CVE-2026-68162sctp: avoid auth_enable sysctl UAF during netns teardown
CVE-2026-68164mm/damon/core: disallow overlapping input ranges for damon_set_regions()
CVE-2026-68165mm/damon/core: validate ranges in damon_set_regions()
CVE-2026-68166userfaultfd: prevent registration of special VMAs
CVE-2026-68169mptcp: pm: userspace: fix use-after-free in get_local_id
CVE-2026-68171arm64: syscall: Ensure saved x0 is kept in-sync with tracer updates
CVE-2026-68175tracing: Fix resource leak on mmiotrace trace_pipe close
CVE-2026-68176tracing: Fix mmiotrace possible NULL dereferencing of hiter->dev
CVE-2026-68180intel_th: fix MSC output device reference leak
CVE-2026-68181mei: bus: access mei_device under device_lock on cleanup
CVE-2026-68182comedi: comedi_parport: deal with premature interrupt
CVE-2026-68183firmware: stratix10-svc: fix memory leaks and list corruption bugs
CVE-2026-68184cdrom: fix stack out-of-bounds read in CDROMVOLCTRL
CVE-2026-68185LoongArch: Move jump_label_init() before parse_early_param()
CVE-2026-68186binfmt_misc: set have_execfd only once the interpreter is opened
CVE-2026-68187exec: fix unsigned loop counter wrap in transfer_args_to_stack()
CVE-2026-68188Bluetooth: RFCOMM: Fix session UAF in set_termios
CVE-2026-68189Bluetooth: hci_sync: Protect UUID list traversal
CVE-2026-68190staging: rtl8723bs: fix OOB reads in rtw_get_wps_ie()
CVE-2026-68192wifi: brcmfmac: make release_scratchbuffers idempotent
CVE-2026-68194wifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68195wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68196wifi: wilc1000: validate assoc response length before subtracting header
CVE-2026-68197wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
CVE-2026-68198wifi: ath6kl: fix use-after-free in aggr_reset_state()
CVE-2026-68199wifi: ath6kl: fix OOB access from firmware ADDBA window size
CVE-2026-68202ALSA: seq: close a re-opened queue timer in the destructor
CVE-2026-68203media: vivid: fix cleanup bugs in vivid_init()
CVE-2026-68204media: vivid: check for vb2_is_busy() when toggling caps
CVE-2026-68205media: v4l2-fwnode: Fix subdev owner overwritten in v4l2_async_register_subdev_sensor()
CVE-2026-68206media: v4l2-ctrls: validate HEVC active reference counts
CVE-2026-68207media: ti: vpe: unwind v4l2 device registration on probe error
CVE-2026-68209media: sun4i-csi: Return queued buffers on start_streaming() failure
CVE-2026-68210media: stm32: dcmi: unregister notifier on probe failure
CVE-2026-68212media: saa7134: Fix a possible memory leak in saa7134_video_init1
CVE-2026-68214media: rtl2832: fix use-after-free in rtl2832_remove()
CVE-2026-68215media: radio-si476x: Unregister v4l2_device on probe failure
CVE-2026-68216media: pwc: Return queued buffers on start_streaming() failure
CVE-2026-68217media: pwc: Drain fill_buf on start_streaming() failure
CVE-2026-68218media: pci: dm1105: Free allocated workqueue
CVE-2026-68219media: nxp: imx8-isi: Fix potential out-of-bounds issues
CVE-2026-68220media: nxp: imx8-isi: Add missing v4l2_subdev_cleanup() in crossbar and pipe
CVE-2026-68222media: msi2500: Return queued buffers on start_streaming() failure
CVE-2026-68223media: meson: vdec: Fix memory leak in error path of vdec_open
CVE-2026-68226media: cx23885: add ioremap return check and cleanup
CVE-2026-68229media: cedrus: skip invalid H.264 reference list entries
CVE-2026-68231media: airspy: Return queued buffers on start_streaming() failure
CVE-2026-68233drm/vc4: Shut down BO cache timer before teardown
CVE-2026-68234drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved
CVE-2026-68235drm/amd/display: dce100: skip non-DP stream encoders for DP MST
CVE-2026-68236drm/amd/display: set new_stream to NULL after release
CVE-2026-68238drm/amdgpu: Release VFCT ACPI table reference
CVE-2026-68241drm/i915/mst: limit DP MST ESI service loop
CVE-2026-68242drm/i915/gt: Fix NULL deref on sched_engine alloc failure
CVE-2026-68243drm/i915/gem: Fix NULL deref in I915_CONTEXT_PARAM_SSEU
CVE-2026-68244drm/i915/gem: Do not leak siblings[] on proto context error
CVE-2026-68245drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()
CVE-2026-68246drm/amdgpu/gfx11: replace BUG_ON() with WARN_ON()
CVE-2026-68247drm/i915/bios: range check LFP Data Block panel_type2
CVE-2026-68248drm/i915: Return NULL on error in active_instance
CVE-2026-68249drm/amdgpu/sdma5.0: replace BUG_ON() with WARN_ON()
CVE-2026-68250drm/amdgpu/sdma5.2: replace BUG_ON() with WARN_ON()
CVE-2026-68251drm/amdgpu/sdma6.0: replace BUG_ON() with WARN_ON()
CVE-2026-68252drm/amdgpu/sdma7.0: replace BUG_ON() with WARN_ON()
CVE-2026-68253drm/i915/hdcp: check streams[] bounds before overflow
CVE-2026-68254drm/i915/vrr: require valid min/max vfreq for VRR
CVE-2026-68255drm/virtio: bound EDID block reads to the response buffer
CVE-2026-68256drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference
CVE-2026-68257drm/amdkfd: fix 32-bit overflow in CWSR total size calculation
CVE-2026-68258drm/amdkfd: Check bounds on CRIU restore queue type and mqd size
CVE-2026-68259drm/amdkfd: Check bounds in allocate_event_notification_slot
CVE-2026-68269drm/i915/gem: Add missing nospec on parallel submit slot
CVE-2026-68271drm/nouveau: fix reversed error cleanup order in ucopy functions
CVE-2026-68272drm/amdgpu: validate CP_GFX_SHADOW chunk size in CS pass1
CVE-2026-68273drm/amdgpu: Fix context pstate override handling
CVE-2026-68277drm/dp/mst: fix OOB reads on 2-byte fields in sideband reply parsers
CVE-2026-68278drm/dp/mst: fix buffer overflows in sideband chunk accumulation
CVE-2026-68279drm/dp/mst: fix OOB reads in remote DPCD/I2C sideband reply parsers
CVE-2026-68280drm/bridge: cdns-dsi: Replace deprecated UNIVERSAL_DEV_PM_OPS()
CVE-2026-68284bpf, sockmap: Fix cork use-after-free in tcp_bpf_sendmsg()
CVE-2026-68286drop_monitor: perform u64_stats updates under IRQ-disabled section
CVE-2026-68287drop_monitor: fix size calculations for 64-bit attributes
CVE-2026-68288net: drop_monitor: fix info leak in NET_DM_ATTR_PAYLOAD
CVE-2026-68289tipc: fix integer overflow in tipc_recvmsg() and tipc_recvstream()
CVE-2026-68293net/mlx5: Fix MCIA register buffer overflow on 32 dword reads
CVE-2026-68294net: qrtr: restrict socket creation to the initial network namespace
CVE-2026-68297tipc: fix u16 MTU truncation in media and bearer MTU validation
CVE-2026-68299vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets
CVE-2026-68300sctp: auth: verify auth requirement when auth_chunk is NULL
CVE-2026-68301net: hsr: fix memory leak on slave unregistration by removing synced VLANs
CVE-2026-68302amt: re-read skb header pointers after every pull
CVE-2026-68303drm/vc4: hvs/v3d: Fix null dereference in unbind
CVE-2026-68304wifi: brcmfmac: fix 802.1X-SHA256 call trace warning
CVE-2026-68306wifi: mt76: mt7996: fix possible NULL-pointer deref in mt7996_mcu_sta_bfer_eht()
CVE-2026-68308wifi: mt76: mt7996: check pointer returned by mt76_connac_get_he_phy_cap()
CVE-2026-68309wifi: mt76: connac: fix possible NULL-pointer deref in mt76_connac_mcu_uni_bss_he_tlv()
CVE-2026-68310wifi: mt76: mt7915: guard HE capability lookups
CVE-2026-68312cifs: fix cifsFileInfo leak on kmalloc failure in deferred close drain paths
CVE-2026-68313tipc: fix infinite loop in __tipc_nl_compat_dumpit
CVE-2026-68315sctp: validate stream count in sctp_process_strreset_inreq()
CVE-2026-68317pds_core: fix auxiliary device add/del races
CVE-2026-68318pds_core: fix use-after-free on workqueue during remove
CVE-2026-68320sctp: fix auth_chunk_list capacity check in sctp_auth_ep_add_chunkid
CVE-2026-68322rds: Fix inet6_addr_lst NULL dereference when IPv6 is disabled
CVE-2026-68323tipc: serialize udp bearer replicast list updates
CVE-2026-68324iommu/intel: Fix out-of-bounds memset in dmar_latency_disable()
CVE-2026-68325iommu/amd: Bound the early ACPI HID map
CVE-2026-68326wifi: mwifiex: bound uAP association event IEs to the event buffer
CVE-2026-68327wan: wanxl: Only reset hardware after BAR mapping
CVE-2026-68328nfp: Check resource mutex allocation
CVE-2026-68329iommu/amd: Wait for completion instead of returning early in iommu_completion_wait()
CVE-2026-68331dpaa2-eth: put MAC endpoint device on disconnect
CVE-2026-68333dpaa2-switch: put MAC endpoint device on disconnect
CVE-2026-68335rds: drop incoming messages that cross network namespace boundaries
CVE-2026-68336bonding: fix devconf_all NULL dereference when IPv6 is disabled
CVE-2026-68337bpf: Reject redirect helpers without a bpf_net_context
CVE-2026-68338net/packet: avoid fanout hook re-registration after unregister
CVE-2026-68339Bluetooth: btusb: validate Realtek vendor event length
CVE-2026-68340hwmon: occ: validate poll response sensor blocks
CVE-2026-68343smb: client: validate DFS referral PathConsumed
CVE-2026-68348ASoC: tas2781: bound firmware description string parsing
CVE-2026-68349wifi: carl9170: fix buffer overflow in rx_stream failover path
CVE-2026-68350wifi: carl9170: fix OOB read from off-by-two in TX status handler
CVE-2026-68351wifi: carl9170: bound memcpy length in cmd callback to prevent OOB read
CVE-2026-68352wifi: ath6kl: fix OOB read from firmware IE lengths in connect event
CVE-2026-68353wifi: ath6kl: fix OOB read from firmware num_msg in TX complete handler
CVE-2026-68354firewire: net: Fix fragmented datagram reassembly
CVE-2026-68355wifi: ath11k: fix potential buffer underflow in ath11k_hal_rx_msdu_list_get()
CVE-2026-68357watchdog: pretimeout: Fix UAF in watchdog_unregister_governor()
CVE-2026-68359hwmon: (nzxt-smart2) Stop device IO before calling hid_hw_stop
CVE-2026-68360hwmon: (corsair-cpro) Stop device IO before calling hid_hw_stop
CVE-2026-68361hwmon: (corsair-psu) Stop device IO before calling hid_hw_stop
CVE-2026-68362wifi: ath11k: fix NULL pointer dereference in ath11k_hal_srng_access_begin
CVE-2026-68363wifi: ath9k: hif_usb: don’t dereference hif_dev after re-arming firmware request
CVE-2026-68364drm/amd/display: Fix ISM dc_lock deadlock during suspend
CVE-2026-68365USB: serial: io_edgeport: cap received transmit credits
CVE-2026-68366usb: gadget: uvc: clamp SEND_RESPONSE length to the response buffer
CVE-2026-68367usb: gadget: f_tcm: synchronize delayed set_alt with teardown
CVE-2026-68368usb: gadget: f_ncm: validate datagram bounds in ncm_unwrap_ntb()
CVE-2026-68369usb: gadget: printer: fix infinite loop in printer_read()
CVE-2026-68370usb: gadget: dummy_hcd: prevent fifo_req reuse during giveback
CVE-2026-68371usb: musb: omap2430: Do not put borrowed of_node in probe
CVE-2026-68373wifi: at76c50x-usb: avoid length underflow in at76_guess_freq()
CVE-2026-68374usb: core: sysfs: add lock to bos_descriptors_read()
CVE-2026-68376sctp: fix auth_hmacs array size in struct sctp_cookie
CVE-2026-68377net/sched: act_tunnel_key: Defer dst_release to RCU callback
CVE-2026-68381ksmbd: pin conn during async oplock break notification
CVE-2026-68386bpf, sockmap: Reject unhashed UDP sockets on sockmap update
CVE-2026-68388smb/client: handle overlapping allocated ranges in fallocate
CVE-2026-68389Bluetooth: hci_qca: Clear memdump state on invalid dump size
CVE-2026-68391Bluetooth: mgmt: hold reference for hci_conn in mgmt_pending_cmds
CVE-2026-68392Bluetooth: mgmt: fix locking in unpair_device/disconnect_sync
CVE-2026-68395ata: sata_dwc_460ex: enable SATA interrupts only after IRQ handler is registered
CVE-2026-68396scsi: core: wake eh reliably when using scsi_schedule_eh
CVE-2026-68397net/iucv: take a reference on the socket found in afiucv_hs_rcv()
CVE-2026-68398ppp: defer channel free to an RCU grace period to fix pppol2tp RX UAF
CVE-2026-68399bpf: Fix UAF in sock clone early bailouts
CVE-2026-68401firmware: arm_ffa: Fix out-of-bound writes in ffa_setup_and_transmit()
CVE-2026-68402wifi: cfg80211: bound element ID read when checking non-inheritance
CVE-2026-68403wifi: brcmfmac: initialize SDIO data work before cleanup
CVE-2026-68404wifi: cfg80211: use wiphy work for socket owner autodisconnect
CVE-2026-68405wifi: mac80211: free AP_VLAN bc_buf SKBs outside IRQ lock
CVE-2026-68406wifi: cfg80211: validate PMSR FTM preamble range
CVE-2026-68407wifi: nl80211: free RNR data on MBSSID mismatch
CVE-2026-68408wifi: cfg80211: convert pmsr_free_wk to wiphy_work to fix deadlock
CVE-2026-68409wifi: mac80211: defer link RX stats percpu free to RCU
CVE-2026-68410wifi: libertas: fix memory leak in helper_firmware_cb()
CVE-2026-68411wifi: mac80211_hwsim: clamp virtio RX length before skb_put
CVE-2026-68412wifi: cfg80211: Fix an error handling path in cfg80211_wext_siwscan()
CVE-2026-68413wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one()
CVE-2026-68414wifi: cfg80211: cancel sched scan results work on unregister
CVE-2026-68416mtd: fix double free and WARN_ON in add_mtd_device() error paths
CVE-2026-68417RDMA/siw: publish QP after initialization
CVE-2026-68418RDMA/irdma: Prevent user-triggered null deref on QP create
CVE-2026-68419RDMA/irdma: Prevent rereg_mr for non-mem regions
CVE-2026-68422btrfs: fix root leak if its reloc root is unexpected in merge_reloc_roots()
CVE-2026-68425IB/mad: Drop unmatched RMPP responses before reassembly
CVE-2026-68426xfrm: fix stale skb->prev after async crypto steals a GSO segment
CVE-2026-68427gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings
CVE-2026-68428KVM: x86/mmu: Fix use-after-free on vendor module reload
CVE-2026-68792Microsoft Office Elevation of Privilege Vulnerability
CVE-2026-68793Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68794Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68795Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68796Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68797Microsoft Excel Information Disclosure Vulnerability
CVE-2026-68798Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68799Microsoft Excel Information Disclosure Vulnerability
CVE-2026-68800Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68801Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68802Microsoft Excel Information Disclosure Vulnerability
CVE-2026-68803Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68804Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68805Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68806Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68807Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68808Microsoft Excel Information Disclosure Vulnerability
CVE-2026-68809Powerpoint Information Disclosure Vulnerability
CVE-2026-68810Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68811Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68812Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68813Microsoft Excel Information Disclosure Vulnerability
CVE-2026-68814Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68815Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68816Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68817Microsoft Excel Remote Code Execution Vulnerability
CVE-2026-68819Windows Network File System Denial of Service Vulnerability
CVE-2026-68820Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-68821Windows Package Manager Elevation of Privilege Vulnerability
CVE-2026-69278Visual Studio Code Security Feature Bypass Vulnerability
CVE-2026-69306Visual Studio Code Security Feature Bypass Vulnerability
CVE-2026-69320Visual Studio Code Remote Code Execution Vulnerability
CVE-2026-70130Microsoft Office Remote Code Execution Vulnerability
CVE-2026-70304Windows DNS Elevation of Privilege Vulnerability
CVE-2026-70306Microsoft Office SharePoint Spoofing Vulnerability
CVE-2026-70307Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2026-70310Microsoft Word Information Disclosure Vulnerability
CVE-2026-70311Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-70312Powerpoint Information Disclosure Vulnerability
CVE-2026-70313Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2026-70314Microsoft Office Information Disclosure Vulnerability
CVE-2026-70315Microsoft Office Information Disclosure Vulnerability
CVE-2026-70316Powerpoint Information Disclosure Vulnerability
CVE-2026-70317Microsoft Office Information Disclosure Vulnerability
CVE-2026-70318Microsoft Excel Information Disclosure Vulnerability
CVE-2026-70319Microsoft Office Word Information Disclosure Vulnerability
CVE-2026-70320Powerpoint Information Disclosure Vulnerability
CVE-2026-70321Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2026-70322Powerpoint Information Disclosure Vulnerability
CVE-2026-70323Microsoft Office Information Disclosure Vulnerability
CVE-2026-70324Microsoft SharePoint Elevation of Privilege Vulnerability
CVE-2026-70325Powerpoint Information Disclosure Vulnerability
CVE-2026-70326Microsoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-70327Microsoft Excel Information Disclosure Vulnerability
CVE-2026-70328Microsoft Excel Information Disclosure Vulnerability
CVE-2026-70329Microsoft Outlook Remote Code Execution Vulnerability
CVE-2026-70330Windows DNS Elevation of Privilege Vulnerability
CVE-2026-70335GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
CVE-2026-70336Visual Studio Code Remote Code Execution Vulnerability
CVE-2026-70337Microsoft PowerShell Remote Code Execution Vulnerability
CVE-2026-70338Microsoft PowerShell Security Feature Bypass Vulnerability
CVE-2026-70340Azure CycleCloud Elevation of Privilege Vulnerability
CVE-2026-70344Windows Installer Elevation of Privilege Vulnerability
CVE-2026-70345Windows Installer Elevation of Privilege Vulnerability
CVE-2026-70346Windows Installer Elevation of Privilege Vulnerability
CVE-2026-70347Windows Installer Elevation of Privilege Vulnerability
CVE-2026-70348Windows Management Services Denial of Service Vulnerability
CVE-2026-70354.NET Core Remote Code Execution Vulnerability
CVE-2026-70355Microsoft SharePoint Server Elevation of Privilege Vulnerability
CVE-2026-71331Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability
CVE-2026-71497jsoup: Cleaner may expose markup with custom raw-text elements
CVE-2026-71556go-git: Worktree operations may follow symlinks
CVE-2026-71557go-git: Malicious reference names may modify files outside the reference storage
CVE-2026-72522libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same as high surrogates during Unicode processing in the *_toUtf16 functions.
CVE-2026-72568Redis – Heap Out-of-Bounds Read in Cluster Bus PING Message Handler
CVE-2026-72971Windows Container Isolation FS Filter Driver (unionfs.sys) Tampering Vulnerability

Ready to get started?

Explore the full platform, free for 14 days.
No credit card required.

Need help evaluating?
Get guidance on pricing at scale and enterprise requirements.
Talk to sales
Clear pricing as you grow
Transparent plans that scale with your environment.
View plans & pricing