BlackTreeCVE IntelligenceMicrosoft · KB5082126
Linked CVE review
Deploy Microsoft ESU security update KB5082126
- Linked CVEs
- 59
- Confirmed exploited
- 0
- PoC or lab evidence
- 1
- Maximum CVSS
- 8.8
Confirmed exploitation, public exploit material, EPSS probability and CVSS severity answer different questions. “No confirmation recorded” means the checked sources do not currently confirm exploitation. It is not proof that exploitation has not occurred.
| CVE and description | Severity | Exploit reality | Forecast and access | Remediation |
|---|---|---|---|---|
CVE-2026-33829 PoC or lab evidence Windows Snipping Tool Spoofing VulnerabilityExposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to perform spoofing over a network. | 4.3 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.Public exploit referencedCISA Vulnrichment records proof-of-concept exploitation in its SSVC data. BlackTree has not independently executed or validated exploit material. | EPSS: 2.04% · 80.5th percentileForecast date: 2026-10-08NETWORK · LOW complexity · NONE privileges · REQUIRED user interaction | Within 7 daysMedium technical severity with public exploit material referenced by a structured source; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26154 Scheduled assessment Windows Server Update Service (WSUS) Tampering VulnerabilityImproper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network. | 7.5 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 1.23% · 68.1th percentileForecast date: 2026-10-08NETWORK · LOW complexity · NONE privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32157 Scheduled assessment Remote Desktop Client Remote Code Execution VulnerabilityUse after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network. | 8.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.82% · 55.9th percentileForecast date: 2026-10-08NETWORK · LOW complexity · NONE privileges · REQUIRED user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Patch available. 10.0.28000.1836:Security Update:https://support.microsoft.com/help/5083768 |
CVE-2026-32225 Scheduled assessment Windows Shell Security Feature Bypass VulnerabilityProtection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network. | 8.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.82% · 55.9th percentileForecast date: 2026-10-08NETWORK · LOW complexity · NONE privileges · REQUIRED user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26151 Scheduled assessment Remote Desktop Spoofing VulnerabilityInsufficient ui warning of dangerous operations in Windows Remote Desktop allows an unauthorized attacker to perform spoofing over a network. | 7.1 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.78% · 54.7th percentileForecast date: 2026-10-08NETWORK · LOW complexity · NONE privileges · REQUIRED user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-33827 Scheduled assessment Windows TCP/IP Remote Code Execution VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over a network. | 8.1 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.54% · 43.8th percentileForecast date: 2026-10-08NETWORK · HIGH complexity · NONE privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-33826 Scheduled assessment Windows Active Directory Remote Code Execution VulnerabilityImproper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network. | 8.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.54% · 43.7th percentileForecast date: 2026-10-08ADJACENT · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32183 Scheduled assessment Windows Snipping Tool Remote Code Execution VulnerabilityImproper neutralization of special elements used in a command ('command injection') in Windows Snipping Tool allows an unauthorized attacker to execute code locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.46% · 38.0th percentileForecast date: 2026-10-08LOCAL · LOW complexity · NONE privileges · REQUIRED user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27912 Scheduled assessment Windows Kerberos Elevation of Privilege VulnerabilityImproper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network. | 8.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.43% · 35.0th percentileForecast date: 2026-10-08ADJACENT · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32077 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUntrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.41% · 33.7th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27913 Scheduled assessment Windows BitLocker Security Feature Bypass VulnerabilityImproper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally. | 7.7 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.37% · 28.7th percentileForecast date: 2026-10-08LOCAL · LOW complexity · NONE privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26162 Scheduled assessment Windows OLE Elevation of Privilege VulnerabilityAccess of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26163 Scheduled assessment Windows Kernel Elevation of Privilege VulnerabilityDouble free in Windows Kernel allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26176 Scheduled assessment Windows Client Side Caching driver (csc.sys) Elevation of Privilege VulnerabilityHeap-based buffer overflow in Windows Client Side Caching driver (csc.sys) allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26180 Scheduled assessment Windows Kernel Elevation of Privilege VulnerabilityHeap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27909 Scheduled assessment Windows Search Service Elevation of Privilege VulnerabilityUse after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27915 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUse after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27916 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUse after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27919 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUntrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27920 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUntrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27923 Scheduled assessment Desktop Window Manager Elevation of Privilege VulnerabilityUse after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.33% · 24.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26159 Scheduled assessment Remote Desktop Licensing Service Elevation of Privilege VulnerabilityMissing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.30% · 20.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26160 Scheduled assessment Remote Desktop Licensing Service Elevation of Privilege VulnerabilityMissing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.30% · 20.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26183 Scheduled assessment Remote Access Management service/API (RPC server) Elevation of Privilege VulnerabilityImproper access control in Windows RPC API allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.30% · 20.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27910 Scheduled assessment Windows Installer Elevation of Privilege VulnerabilityImproper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.30% · 20.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27914 Scheduled assessment Microsoft Management Console Elevation of Privilege VulnerabilityImproper access control in Microsoft Management Console allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.30% · 20.6th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32156 Scheduled assessment Windows UPnP Device Host Remote Code Execution VulnerabilityUse after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to execute code locally. | 7.4 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.29% · 19.6th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · NONE privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26152 Scheduled assessment Microsoft Cryptographic Services Elevation of Privilege VulnerabilityInsecure storage of sensitive information in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26177 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26182 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27908 Scheduled assessment Windows TDI Translation Driver (tdx.sys) Elevation of Privilege VulnerabilityUse after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27917 Scheduled assessment Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of Privilege VulnerabilityUse after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27922 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32070 Scheduled assessment Windows Common Log File System Driver Elevation of Privilege VulnerabilityUse after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32073 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32075 Scheduled assessment Windows UPnP Device Host Elevation of Privilege VulnerabilityUse after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32087 Scheduled assessment Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege VulnerabilityHeap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-33099 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.8th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-33100 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityUse after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.26% · 16.7th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26168 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.8 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26173 Scheduled assessment Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-26174 Scheduled assessment Windows Server Update Service (WSUS) Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Update Service allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27921 Scheduled assessment Windows TDI Translation Driver (tdx.sys) Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27929 Scheduled assessment Windows LUA File Virtualization Filter Driver Elevation of Privilege VulnerabilityTime-of-check time-of-use (toctou) race condition in Windows LUAFV allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32068 Scheduled assessment Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32082 Scheduled assessment Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32083 Scheduled assessment Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32086 Scheduled assessment Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32093 Scheduled assessment Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32150 Scheduled assessment Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-33104 Scheduled assessment Win32k Elevation of Privilege VulnerabilityConcurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. | 7.0 · CVSS 3.1 · HighSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.20% · 9.3th percentileForecast date: 2026-10-08LOCAL · HIGH complexity · LOW privileges · NONE user interaction | Within 7 daysHigh technical severity; prioritise exposed affected systems while verifying vendor guidance.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32151 Scheduled assessment Windows Shell Information Disclosure VulnerabilityExposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information over a network. | 6.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 1.00% · 61.5th percentileForecast date: 2026-10-08NETWORK · LOW complexity · LOW privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27930 Scheduled assessment Windows GDI Information Disclosure VulnerabilityOut-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally. | 5.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.54% · 43.7th percentileForecast date: 2026-10-08LOCAL · LOW complexity · NONE privileges · REQUIRED user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-27925 Scheduled assessment Windows UPnP Device Host Information Disclosure VulnerabilityUse after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over an adjacent network. | 6.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.54% · 43.4th percentileForecast date: 2026-10-08ADJACENT · LOW complexity · NONE privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32084 Scheduled assessment Windows Print Spooler Information Disclosure VulnerabilityExposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally. | 5.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.48% · 39.3th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32217 Scheduled assessment Windows Kernel Information Disclosure VulnerabilityInsertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally. | 5.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.48% · 39.3th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32212 Scheduled assessment Universal Plug and Play (upnp.dll) Information Disclosure VulnerabilityImproper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally. | 5.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.37% · 29.1th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-32214 Scheduled assessment Universal Plug and Play (upnp.dll) Information Disclosure VulnerabilityImproper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally. | 5.5 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.35% · 26.5th percentileForecast date: 2026-10-08LOCAL · LOW complexity · LOW privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Mitigation available. No fixed version is explicitly recorded in the structured CVE data. |
CVE-2026-25250 Scheduled assessment EAZ EazyFix 12.9 allows a Security Feature Bypass related to a "Missing Cryptographic Step" associated with "Secure Boot disable."EAZ EazyFix 12.9 allows a Security Feature Bypass related to a "Missing Cryptographic Step" associated with "Secure Boot disable." | 6.0 · CVSS 3.1 · MediumSource: CNA | No confirmation recordedNo CISA KEV match was present at the last successful refresh. This means no confirmation from that source, not proof of no exploitation.None recordedNo exploit-tagged reference or CISA SSVC proof-of-concept state is currently recorded. Research may still exist outside the structured feeds. | EPSS: 0.16% · 4.4th percentileForecast date: 2026-10-08LOCAL · LOW complexity · HIGH privileges · NONE user interaction | ScheduledMedium technical severity with no CISA KEV confirmation; remediate through the normal risk-based patch cycle unless local exposure raises the priority.Awaiting fix. No fixed version is explicitly recorded in the structured CVE data. |