$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
KISA 보호나라 · 보안공지

MS 9월 보안 위협에 따른 정기 보안 업데이트 권고

발행 2026-09-09 (26일 전)연결된 CVE 996건보호나라 원문 ›

이 권고가 다루는 취약점

권고 본문에서 CVE 번호를 추출해 우리 원장과 맞춘 것입니다. KISA 가 제공하는 매핑이 아닙니다.

CVE-2026-68839Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an unauthorized attacker to execute…0.8%심각9.8
CVE-2026-69431Heap-based buffer overflow in Telnet Client allows an unauthorized attacker to execute code over a network.0.9%심각9.8
CVE-2026-69715Out-of-bounds read in Windows Direct Show allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-73009Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute c…0.9%심각9.8
CVE-2026-73010Use after free in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.0.9%심각9.8
CVE-2026-66302External control of file name or path in Skype for Business allows an unauthorized attacker to execute code ov…0.5%심각9.8
CVE-2026-72982Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network…0.9%심각9.8
CVE-2026-72983Use after free in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to execute code ov…0.9%심각9.8
CVE-2026-69824Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an unauthorized attacker to execute co…1.0%심각9.8
CVE-2026-69845Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a netwo…0.9%심각9.8
CVE-2026-69590Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthori…1.0%심각9.8
CVE-2026-73025Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a netwo…0.9%심각9.8
CVE-2026-69463Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code over a network.0.9%심각9.8
CVE-2026-78510Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…1.0%심각9.8
CVE-2026-69579Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-69496Heap-based buffer overflow in Windows Compressed Folder allows an unauthorized attacker to execute code over a…1.0%심각9.8
CVE-2026-70296Out-of-bounds write in Windows Imaging Component allows an unauthorized attacker to execute code over a networ…1.0%심각9.8
CVE-2026-69491Heap-based buffer overflow in Windows Microsoft DirectMusic allows an unauthorized attacker to execute code ov…0.9%심각9.8
CVE-2026-69493Out-of-bounds read in Windows Event Logging Service allows an unauthorized attacker to execute code over a net…1.0%심각9.8
CVE-2026-69595Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code o…1.1%심각9.8
CVE-2026-69586Integer overflow or wraparound in Microsoft Windows PDF allows an unauthorized attacker to execute code over a…1.0%심각9.8
CVE-2026-72979Use after free in Windows DHCP Server allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-69525Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a netwo…1.1%심각9.8
CVE-2026-69408Integer overflow or wraparound in Microsoft Windows Media Foundation allows an unauthorized attacker to execut…1.0%심각9.8
CVE-2026-78445Use after free in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to execute code o…0.9%심각9.8
CVE-2026-69819Out-of-bounds write in RPC Runtime allows an unauthorized attacker to execute code over a network.0.9%심각9.8
CVE-2026-69910Stack-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code over a network.1.0%심각9.8
CVE-2026-69276Integer underflow (wrap or wraparound) in Microsoft UxTheme Library (uxtheme.dll) allows an unauthorized attac…0.9%심각9.8
CVE-2026-69730Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.1.1%심각9.8
CVE-2026-78509Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a …1.0%심각9.8
CVE-2026-69829Heap-based buffer overflow in Windows Shell allows an unauthorized attacker to execute code over a network.1.1%심각9.8
CVE-2026-65669Improper neutralization of special elements in output used by a downstream component ('injection') in SQL Serv…0.7%심각9.6
CVE-2026-81376Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a s…0.7%심각9.6
CVE-2026-80098Improper verification of cryptographic signature in Copilot Studio allows an unauthorized attacker to elevate …0.3%심각9.3
CVE-2026-69356Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Ser…0.7%심각9.3
CVE-2026-69641Missing authorization in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a …0.8%심각9.1
CVE-2026-62916Authentication bypass using an alternate path or channel in Microsoft Entra ID allows an unauthorized attacker…0.6%심각9.1
CVE-2026-69854Improper authentication in Spring Cloud Azure allows an unauthorized attacker to elevate privileges over a net…0.6%심각9.0
CVE-2026-80096Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over…0.7%높음8.8
CVE-2026-78526Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-71352Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attack…0.7%높음8.8
CVE-2026-69268Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne…0.7%높음8.8
CVE-2026-69547Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network…0.9%높음8.8
CVE-2026-69266Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a n…0.4%높음8.8
CVE-2026-80074Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-69551Use after free in Windows DNS allows an authorized attacker to execute code over a network.0.9%높음8.8
CVE-2026-69556Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-69273Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne…0.5%높음8.8
CVE-2026-69529Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a n…0.5%높음8.8
CVE-2026-80077Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-69282Improper access control in Microsoft Office SharePoint allows an authorized attacker to execute code over a ne…0.5%높음8.8
CVE-2026-69518Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-69285Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-80080Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-69522Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69291Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execu…0.6%높음8.8
CVE-2026-80081Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-69511Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute co…0.8%높음8.8
CVE-2026-80083Untrusted pointer dereference in Windows Hyper-V allows an authorized attacker to execute code locally.0.2%높음8.8
CVE-2026-80085Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.5%높음8.8
CVE-2026-69494Out-of-bounds read in Windows Event Logging Service allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-72950Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthori…0.9%높음8.8
CVE-2026-69495Heap-based buffer overflow in Windows Event Logging Service allows an unauthorized attacker to execute code ov…0.8%높음8.8
CVE-2026-69499Integer overflow or wraparound in Windows Imaging Component allows an unauthorized attacker to execute code ov…0.8%높음8.8
CVE-2026-78504Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.6%높음8.8
CVE-2026-69461Stack-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69464Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker to elevate …0.9%높음8.8
CVE-2026-69465Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a netw…0.8%높음8.8
CVE-2026-69439Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges ove…0.7%높음8.8
CVE-2026-69442Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-78505Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69434Heap-based buffer overflow in Windows URL Moniker allows an unauthorized attacker to execute code over a netwo…0.8%높음8.8
CVE-2026-78507Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-69334Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execu…0.8%높음8.8
CVE-2026-69386Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute co…0.8%높음8.8
CVE-2026-69360Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-69355External control of file name or path in Microsoft Exchange Server allows an authorized attacker to execute co…0.8%높음8.8
CVE-2026-72972Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-69485Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code over a ne…0.9%높음8.8
CVE-2026-72973Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-78463Improper control of generation of code ('code injection') in Remote Desktop Client allows an unauthorized atta…0.9%높음8.8
CVE-2026-78456Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.9%높음8.8
CVE-2026-78462Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypa…0.5%높음8.8
CVE-2026-77901Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a netwo…0.6%높음8.8
CVE-2026-77906Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-77907Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-72986Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-78521Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-77908Improper control of generation of code ('code injection') in Microsoft Dynamics 365 allows an authorized attac…0.7%높음8.8
CVE-2026-73006Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ov…0.8%높음8.8
CVE-2026-73012Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges …0.6%높음8.8
CVE-2026-77484Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.1.1%높음8.8
CVE-2026-77480Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges o…0.5%높음8.8
CVE-2026-77481Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-77482Heap-based buffer overflow in SQL Server allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-77483Weak authentication in SQL Server allows an authorized attacker to elevate privileges over a network.0.5%높음8.8
CVE-2026-81385Deserialization of untrusted data in Microsoft Office Publisher allows an unauthorized attacker to execute cod…1.0%높음8.8
CVE-2026-77486Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-77487Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.0.5%높음8.8
CVE-2026-85877Heap-based buffer overflow in Windows Print Spooler Components allows an unauthorized attacker to execute code…0.4%높음8.8
CVE-2026-73013Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a…0.6%높음8.8
CVE-2026-83992Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a…0.6%높음8.8
CVE-2026-73016Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ove…0.6%높음8.8
CVE-2026-73018Heap-based buffer overflow in Graphic Fonts allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-77495Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a…0.6%높음8.8
CVE-2026-83996Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges loca…0.2%높음8.8
CVE-2026-78525Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-72933Heap-based buffer overflow in Microsoft WDAC OLE DB provider for SQL allows an unauthorized attacker to execut…0.8%높음8.8
CVE-2026-73023Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a…0.6%높음8.8
CVE-2026-69649Heap-based buffer overflow in Windows Raw Image Extension allows an unauthorized attacker to execute code over…0.8%높음8.8
CVE-2026-73028Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.0.5%높음8.8
CVE-2026-83998Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a net…0.4%높음8.8
CVE-2026-72940Heap-based buffer overflow in Windows Schannel allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-70586Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-81952Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-77504Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-81955Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ove…0.6%높음8.8
CVE-2026-62706Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over …0.6%높음8.8
CVE-2026-62744Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute co…0.8%높음8.8
CVE-2026-71328Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-62895Permissive cross-domain policy with untrusted domains in Azure Arc allows an unauthorized attacker to elevate …0.7%높음8.8
CVE-2026-65772Deserialization of untrusted data in Microsoft Dynamics 365 allows an authorized attacker to execute code over…0.9%높음8.8
CVE-2026-69797Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-66814Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges o…0.4%높음8.8
CVE-2026-66818Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network…0.6%높음8.8
CVE-2026-66819Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an a…0.7%높음8.8
CVE-2026-66820Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an a…0.5%높음8.8
CVE-2026-67368Improper link resolution before file access ('link following') in SQL Server allows an authorized attacker to …0.7%높음8.8
CVE-2026-69784Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.0.3%높음8.8
CVE-2026-67370Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an a…0.7%높음8.8
CVE-2026-67373Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-67380Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.7%높음8.8
CVE-2026-69772Heap-based buffer overflow in Windows Network File System allows an unauthorized attacker to execute code over…0.8%높음8.8
CVE-2026-67381Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.0.5%높음8.8
CVE-2026-67385Use after free in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-67384Integer overflow or wraparound in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-67388Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-69778Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a n…0.8%높음8.8
CVE-2026-69764Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-69767Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-67631Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-67638Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.7%높음8.8
CVE-2026-67639Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.7%높음8.8
CVE-2026-67643Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-67642Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-69742Integer overflow or wraparound in Microsoft Office Publisher allows an unauthorized attacker to execute code o…0.8%높음8.8
CVE-2026-69759Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-68775Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-69729Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to execute code over …0.9%높음8.8
CVE-2026-69740Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.0.3%높음8.8
CVE-2026-69722Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-69712Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network…0.9%높음8.8
CVE-2026-68786Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.8
CVE-2026-69716Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office Share…0.9%높음8.8
CVE-2026-69686Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a ne…0.8%높음8.8
CVE-2026-68828Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a net…0.4%높음8.8
CVE-2026-69598Incorrect calculation of buffer size in Windows iSCSI allows an unauthorized attacker to execute code over a n…0.8%높음8.8
CVE-2026-69669Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69671Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-69676Authentication bypass by capture-replay in Windows Kerberos allows an authorized attacker to execute code over…1.2%높음8.8
CVE-2026-69678Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-69632Use after free in Microsoft Office allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-71336Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code ov…0.9%높음8.8
CVE-2026-81352Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code…0.5%높음8.8
CVE-2026-69628Heap-based buffer overflow in Windows iSCSI allows an authorized attacker to execute code over a network.0.9%높음8.8
CVE-2026-69629Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a …0.8%높음8.8
CVE-2026-70351Integer overflow or wraparound in Microsoft WebP Image Extension allows an unauthorized attacker to execute co…0.8%높음8.8
CVE-2026-69614Stack-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a …0.9%높음8.8
CVE-2026-69603Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.0.3%높음8.8
CVE-2026-69601Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute co…0.8%높음8.8
CVE-2026-72959Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthori…0.9%높음8.8
CVE-2026-72960Heap-based buffer overflow in Windows Media Player allows an unauthorized attacker to execute code over a netw…0.8%높음8.8
CVE-2026-78511Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.8%높음8.8
CVE-2026-78512Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a netwo…0.8%높음8.8
CVE-2026-78514Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-69860Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a…0.8%높음8.8
CVE-2026-78517Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a net…0.6%높음8.8
CVE-2026-78518Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.0.9%높음8.8
CVE-2026-70203Heap-based buffer overflow in Windows Media Player allows an unauthorized attacker to execute code over a netw…0.8%높음8.8
CVE-2026-78519Use of uninitialized resource in Microsoft Office Outlook allows an unauthorized attacker to execute code over…0.6%높음8.8
CVE-2026-78439Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code ov…0.6%높음8.8
CVE-2026-78442Heap-based buffer overflow in Windows OLE DB allows an unauthorized attacker to execute code over a network.0.6%높음8.8
CVE-2026-69724Missing authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a netw…0.8%높음8.8
CVE-2026-78524Out-of-bounds write in Microsoft Office allows an unauthorized attacker to execute code over a network.0.8%높음8.8
CVE-2026-80097Improper authentication in Microsoft Authenticator allows an unauthorized attacker to elevate privileges local…0.4%높음8.6
CVE-2026-67378Untrusted pointer dereference in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.5
CVE-2026-67636Out-of-bounds read in SQL Server allows an authorized attacker to execute code over a network.0.5%높음8.5
CVE-2026-69857Authorization bypass through user-controlled key in Azure Cosmos DB allows an authorized attacker to perform s…0.4%높음8.5
CVE-2026-70178Missing authorization in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.0.4%높음8.5
CVE-2026-67379Stack-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.6%높음8.5
CVE-2026-65818Server-side request forgery (ssrf) in Power Automate allows an authorized attacker to elevate privileges over …0.3%높음8.5
CVE-2026-69479Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.0.3%높음8.4
CVE-2026-69638Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.0.3%높음8.4
CVE-2026-69646Improper verification of cryptographic signature in Skype for Business allows an unauthorized attacker to perf…0.2%높음8.3
CVE-2026-69846Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorized attacker to elevate privileg…0.3%높음8.2
CVE-2026-69906Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges l…0.3%높음8.2
CVE-2026-69874Untrusted pointer dereference in Windows ALPC allows an authorized attacker to elevate privileges locally.0.3%높음8.2
CVE-2026-72961Out-of-bounds read in Windows Hyper-V allows an authorized attacker to elevate privileges locally.0.3%높음8.2
CVE-2026-81356Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows …0.3%높음8.2
CVE-2026-72962Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges loc…0.3%높음8.2
CVE-2026-81357Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security …0.3%높음8.2
CVE-2026-81354Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally.0.2%높음8.2
CVE-2026-72958Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.0.3%높음8.2
CVE-2026-83939Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privilege…0.3%높음8.2
CVE-2026-81378Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature ove…0.3%높음8.2
CVE-2026-81379Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a securi…0.3%높음8.2
CVE-2026-69820Heap-based buffer overflow in Windows Hello allows an authorized attacker to elevate privileges locally.0.3%높음8.2
CVE-2026-70342Use after free in Windows Ancillary Function Driver for WinSock allows an unauthorized attacker to elevate pri…0.9%높음8.1
CVE-2026-72987Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.0.6%높음8.1
CVE-2026-69510Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-83997Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.0.5%높음8.1
CVE-2026-69546Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-69524Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-69786Heap-based buffer overflow in Windows Text Shaping allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-69782Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allo…0.6%높음8.1
CVE-2026-69620Stack-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over a netw…0.7%높음8.1
CVE-2026-69680Origin validation error in Windows DNS allows an unauthorized attacker to perform spoofing over a network.0.3%높음8.1
CVE-2026-72936Use after free in Windows SMB Client allows an unauthorized attacker to execute code over a network.0.6%높음8.1
CVE-2026-47297Deserialization of untrusted data in SQL Server allows an unauthorized attacker to execute code over a network…0.8%높음8.1
CVE-2026-78444Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over…0.5%높음8.1
CVE-2026-55007Double free in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network.0.7%높음8.1
CVE-2026-69989Use after free in DNS Server allows an unauthorized attacker to execute code over a network.0.7%높음8.1
CVE-2026-72981Use after free in IP Helper allows an unauthorized attacker to execute code over a network.0.5%높음8.1
CVE-2026-69813Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.0.7%높음8.1
CVE-2026-69858Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.0.7%높음8.1
CVE-2026-77505Use after free in DNS Server allows an unauthorized attacker to execute code over a network.0.5%높음8.1
CVE-2026-69325Heap-based buffer overflow in Microsoft JScript allows an unauthorized attacker to execute code over a network…0.6%높음8.1
CVE-2026-69530Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code…0.6%높음8.1
CVE-2026-70563Improper link resolution before file access ('link following') in Windows Shell allows an unauthorized attacke…0.9%높음8.1
CVE-2026-69438Incorrect conversion between numeric types in Microsoft JScript allows an unauthorized attacker to execute cod…0.7%높음8.1
CVE-2026-69380Missing authorization in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a …0.7%높음8.1
CVE-2026-69732Heap-based buffer overflow in Windows Link Layer Topology Discovery Protocol allows an unauthorized attacker t…0.7%높음8.1
CVE-2026-78449Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code…0.5%높음8.1
CVE-2026-78450Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code…0.5%높음8.1
CVE-2026-69827Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allo…0.5%높음8.1
CVE-2026-69847Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjace…0.5%높음8.0
CVE-2026-69346Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privil…0.7%높음8.0
CVE-2026-69365Out-of-bounds read in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elev…0.7%높음8.0
CVE-2026-83948Improper neutralization of special elements used in a command ('command injection') in Microsoft Azure CLI all…0.4%높음8.0
CVE-2026-69371Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges over …0.7%높음8.0
CVE-2026-69643Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges over a…0.8%높음8.0
CVE-2026-69271Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over …0.7%높음8.0
CVE-2026-69481Heap-based buffer overflow in Windows Enterprise App Management allows an authorized attacker to elevate privi…0.7%높음8.0
CVE-2026-69727Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges ov…0.7%높음8.0
CVE-2026-69623Heap-based buffer overflow in Windows HTTP Print Provider allows an authorized attacker to execute code over a…0.9%높음8.0
CVE-2026-69876Use after free in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network.0.6%높음8.0
CVE-2026-69826Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges ov…0.7%높음8.0
CVE-2026-69717Untrusted pointer dereference in Windows Group Policy allows an authorized attacker to elevate privileges over…0.7%높음8.0
CVE-2026-69412Stack-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjac…0.5%높음8.0
CVE-2026-69505Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges over a network.0.8%높음8.0
CVE-2026-69332Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges over a network.0.7%높음8.0
CVE-2026-69503Stack-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges over a n…0.8%높음8.0
CVE-2026-69512Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges over a…0.8%높음8.0
CVE-2026-68894Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges over…0.6%높음8.0
CVE-2026-69714Stack-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate pri…0.8%높음8.0
CVE-2026-69427Out-of-bounds read in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges over a network.0.7%높음8.0
CVE-2026-69625Heap-based buffer overflow in Windows Connected User Experiences and Telemetry allows an authorized attacker t…0.7%높음8.0
CVE-2026-69875Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.0.8%높음8.0
CVE-2026-68827Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate privileges ove…0.4%높음8.0
CVE-2026-69423Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges ove…0.7%높음8.0
CVE-2026-69619Out-of-bounds read in Windows exFAT File System allows an authorized attacker to elevate privileges over a net…0.8%높음8.0
CVE-2026-69689Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges over a network.0.8%높음8.0
CVE-2026-69418Heap-based buffer overflow in Volume Manager Driver allows an authorized attacker to elevate privileges over a…0.7%높음8.0
CVE-2026-69322Double free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a n…0.7%높음8.0
CVE-2026-69681Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate…0.8%높음8.0
CVE-2026-69773Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges ov…0.7%높음8.0
CVE-2026-68834Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network…0.6%높음8.0
CVE-2026-69777Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an …0.5%높음8.0
CVE-2026-68876Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to…0.7%높음8.0
CVE-2026-69762Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a netwo…0.7%높음8.0
CVE-2026-69458Out-of-bounds read in Windows BitLocker allows an authorized attacker to elevate privileges over a network.0.7%높음8.0
CVE-2026-68838Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network…0.4%높음8.0
CVE-2026-69301Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a netwo…0.8%높음8.0
CVE-2026-68878Stack-based buffer overflow in Windows Fast FAT Driver allows an authorized attacker to elevate privileges ove…0.5%높음8.0
CVE-2026-68880Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a networ…0.4%높음8.0
CVE-2026-69807Improper limitation of a pathname to a restricted directory ('path traversal') in Windows PowerShell allows an…0.9%높음8.0
CVE-2026-69462Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges over…0.7%높음8.0
CVE-2026-68787Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code locally.0.2%높음7.8
CVE-2026-69864Use after free in Windows Hello allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-69900Untrusted pointer dereference in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to el…0.3%높음7.8
CVE-2026-69921Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privil…0.3%높음7.8
CVE-2026-69707Integer overflow or wraparound in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker …0.3%높음7.8
CVE-2026-70334Incomplete list of disallowed inputs in Visual Studio Code allows an unauthorized attacker to bypass a securit…0.4%높음7.8
CVE-2026-70572Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-70569Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-70574Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privile…0.3%높음7.8
CVE-2026-70581Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-70584Access of resource using incompatible type ('type confusion') in Windows Core Messaging allows an authorized a…0.3%높음7.8
CVE-2026-70583Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges local…0.3%높음7.8
CVE-2026-69844Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-71343Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to execut…0.3%높음7.8
CVE-2026-71345Out-of-bounds write in Windows Spaceport.sys allows an authorized attacker to execute code locally.0.3%높음7.8
CVE-2026-72944Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-72946Heap-based buffer overflow in Storage Port Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-72953Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-72957Heap-based buffer overflow in Windows Deployment Services allows an authorized attacker to execute code locall…0.3%높음7.8
CVE-2026-72965Use after free in Windows WebClient Service allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-71337Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate pr…0.3%높음7.8
CVE-2026-71334Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attacker to elevate privileges local…0.2%높음7.8
CVE-2026-70564Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privil…0.3%높음7.8
CVE-2026-72967Heap-based buffer overflow in Windows Network Connection Broker allows an authorized attacker to elevate privi…0.3%높음7.8
CVE-2026-69478Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate priv…0.3%높음7.8
CVE-2026-72988Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-72990Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-72992Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-72991Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-72993Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-72994Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-72995Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-72997Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-73001Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-73007Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-69841Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to elevate pr…0.3%높음7.8
CVE-2026-73011Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-73014Missing authorization in Data Sharing Service Client allows an authorized attacker to elevate privileges local…0.3%높음7.8
CVE-2026-73015Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-73020Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-73021Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-73024Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elev…0.2%높음7.8
CVE-2026-73026Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-56172Use after free in Windows VHD miniport driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-56177Use after free in Windows Server allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-56198Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-58599Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code…0.3%높음7.8
CVE-2026-58600Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to elevate priv…0.3%높음7.8
CVE-2026-58611Improper authorization in XBox Gaming Services allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-62697Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-62804External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code…0.3%높음7.8
CVE-2026-62810Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized attacker to e…0.2%높음7.8
CVE-2026-68832Integer overflow or wraparound in Windows NTFS allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-68844Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code …0.3%높음7.8
CVE-2026-68845Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to…0.3%높음7.8
CVE-2026-68841Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-68848Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privil…0.2%높음7.8
CVE-2026-68850Heap-based buffer overflow in Microsoft Account allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-68875Buffer over-read in Windows NTFS allows an authorized attacker to execute code locally.0.2%높음7.8
CVE-2026-68877Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code …0.2%높음7.8
CVE-2026-68885Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges local…0.3%높음7.8
CVE-2026-68888Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges local…0.3%높음7.8
CVE-2026-68890Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges local…0.2%높음7.8
CVE-2026-68892Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges local…0.2%높음7.8
CVE-2026-68896Absolute path traversal in Microsoft Windows Search Component allows an authorized attacker to elevate privile…0.4%높음7.8
CVE-2026-69270Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to e…0.2%높음7.8
CVE-2026-69269Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an authorized attacker to elevate priv…0.3%높음7.8
CVE-2026-69265Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-69277Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacke…0.3%높음7.8
CVE-2026-69283Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locall…0.2%높음7.8
CVE-2026-69284Heap-based buffer overflow in Windows DCOM Server allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-69290Stack-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to elevate priv…0.2%높음7.8
CVE-2026-69289Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows an author…0.4%높음7.8
CVE-2026-69295Out-of-bounds read in Windows USB Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69293Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-69298Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-69307Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to e…0.3%높음7.8
CVE-2026-69312Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69328Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69324Access of resource using incompatible type ('type confusion') in Windows Performance Monitor allows an authori…0.3%높음7.8
CVE-2026-69323Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69352Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69348Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69359Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elevate privil…0.3%높음7.8
CVE-2026-77503Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-69368Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges local…0.2%높음7.8
CVE-2026-69377Missing authorization in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privi…0.3%높음7.8
CVE-2026-69389Heap-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate pri…0.3%높음7.8
CVE-2026-69392Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69391Stack-based buffer overflow in Windows Broker Infrastructure Service allows an authorized attacker to elevate …0.3%높음7.8
CVE-2026-69407Integer overflow or wraparound in Volume Manager Driver allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69424Heap-based buffer overflow in Windows Distributed File System (DFS) allows an authorized attacker to elevate p…0.3%높음7.8
CVE-2026-69426Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to execute code locally.0.3%높음7.8
CVE-2026-69421Integer underflow (wrap or wraparound) in Windows Kernel Mode Driver allows an authorized attacker to elevate …0.3%높음7.8
CVE-2026-69420Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69436Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges loca…0.3%높음7.8
CVE-2026-69433Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges loca…0.3%높음7.8
CVE-2026-69432Heap-based buffer overflow in Volume Manager Driver allows an authorized attacker to elevate privileges locall…0.3%높음7.8
CVE-2026-69444Heap-based buffer overflow in Microsoft Windows Speech allows an authorized attacker to elevate privileges loc…0.3%높음7.8
CVE-2026-69450Out-of-bounds read in Windows Error Reporting allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69447Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privileges locall…0.3%높음7.8
CVE-2026-69445Improper limitation of a pathname to a restricted directory ('path traversal') in Windows Compressed Folder al…0.4%높음7.8
CVE-2026-69459Heap-based buffer overflow in Windows Power Dependency Coordinator allows an authorized attacker to elevate pr…0.3%높음7.8
CVE-2026-69456Heap-based buffer overflow in Microsoft Windows Speech allows an authorized attacker to elevate privileges loc…0.3%높음7.8
CVE-2026-69455Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevat…0.3%높음7.8
CVE-2026-69467Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-69475Untrusted pointer dereference in Windows Remote Desktop Services allows an authorized attacker to elevate priv…0.3%높음7.8
CVE-2026-69476Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69480Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate pri…0.3%높음7.8
CVE-2026-69489Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69509Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69508Stack-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges…0.3%높음7.8
CVE-2026-69513Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges loca…0.3%높음7.8
CVE-2026-69528Missing authentication for critical function in Windows Shell allows an authorized attacker to elevate privile…0.3%높음7.8
CVE-2026-69535Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-69534Improper neutralization of special elements used in a command ('command injection') in Windows Program Compati…0.6%높음7.8
CVE-2026-69532Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69538Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally.0.2%높음7.8
CVE-2026-69544Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69542Heap-based buffer overflow in Windows Camera Frame Server Monitor allows an authorized attacker to elevate pri…0.2%높음7.8
CVE-2026-69541Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate…0.3%높음7.8
CVE-2026-69561Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69571Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to e…0.3%높음7.8
CVE-2026-69580Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69576Use after free in Graphic Fonts allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69585Incorrect type conversion or cast in Microsoft Windows Search Component allows an authorized attacker to eleva…0.4%높음7.8
CVE-2026-69584Integer overflow or wraparound in Windows USB Video Driver allows an authorized attacker to elevate privileges…0.3%높음7.8
CVE-2026-69583Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69582Buffer over-read in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-69589Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69594Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker…0.3%높음7.8
CVE-2026-69593Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69592Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized att…0.3%높음7.8
CVE-2026-69608Integer overflow or wraparound in Microsoft Windows Search Component allows an authorized attacker to elevate …0.3%높음7.8
CVE-2026-69604Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privileges locall…0.3%높음7.8
CVE-2026-69612Absolute path traversal in Windows Error Reporting allows an authorized attacker to elevate privileges locally…0.4%높음7.8
CVE-2026-69691Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges locall…0.3%높음7.8
CVE-2026-69687Integer underflow (wrap or wraparound) in Windows USB Audio Class driver (usbaudio.sys) allows an authorized a…0.3%높음7.8
CVE-2026-69685Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69720Heap-based buffer overflow in Windows MIDI Service Module allows an authorized attacker to elevate privileges …0.3%높음7.8
CVE-2026-69738Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-69731Heap-based buffer overflow in HID class driver allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69785Untrusted search path in Windows Smart Card allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69790Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to elevate privileges…0.3%높음7.8
CVE-2026-69801Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privileges locall…0.3%높음7.8
CVE-2026-69799Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hello a…0.2%높음7.8
CVE-2026-69822Numeric truncation error in Windows Kerberos allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69821Improper encoding or escaping of output in Active Directory Certificate Services (AD CS) allows an authorized …0.3%높음7.8
CVE-2026-72941Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-72929Improper validation of integrity check value in Windows Installer allows an authorized attacker to elevate pri…0.2%높음7.8
CVE-2026-77500Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to…0.3%높음7.8
CVE-2026-77489Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges loca…0.3%높음7.8
CVE-2026-77904Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate…0.2%높음7.8
CVE-2026-78448Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-78447Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-80075Heap-based buffer overflow in Windows Work Folders allows an authorized attacker to elevate privileges locally…0.3%높음7.8
CVE-2026-81353Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code…0.4%높음7.8
CVE-2026-81388Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81398Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.3%높음7.8
CVE-2026-81397Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81396Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81386Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.3%높음7.8
CVE-2026-83498Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized atta…0.3%높음7.8
CVE-2026-81960Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81959Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81957Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81956Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81954Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.3%높음7.8
CVE-2026-81953Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81951Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81950Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81948Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.8
CVE-2026-81947Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.3%높음7.8
CVE-2026-83978Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83976Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-83975Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83974Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-83973Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83972Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83971Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83970Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83969Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-83968Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-83967Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83955Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-83954Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83952Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate pr…0.2%높음7.8
CVE-2026-83942Missing authorization in Windows Kernel allows an authorized attacker to elevate privileges locally.0.2%높음7.8
CVE-2026-84000Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute code local…0.3%높음7.8
CVE-2026-83995Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-83990Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privilege…0.3%높음7.8
CVE-2026-83988Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83987Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83986Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83985Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83983Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83982Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83981Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83980Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-83979Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-83977Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-81949Integer overflow or wraparound in Microsoft Office Excel allows an unauthorized attacker to execute code local…0.4%높음7.8
CVE-2026-73002Integer overflow or wraparound in Windows Biometric Service allows an authorized attacker to elevate privilege…0.2%높음7.8
CVE-2026-73000Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.2%높음7.8
CVE-2026-72996Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69907Improper handling of insufficient permissions or privileges in Windows Enterprise App Management allows an aut…0.3%높음7.8
CVE-2026-69787Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.8
CVE-2026-69758Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized att…0.3%높음7.8
CVE-2026-69725Double free in Windows Hello allows an authorized attacker to elevate privileges locally.0.3%높음7.8
CVE-2026-69709Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.0.3%높음7.8
CVE-2026-70289Heap-based buffer overflow in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileg…0.3%높음7.8
CVE-2026-69683Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose in…0.8%높음7.7
CVE-2026-77909Insufficiently protected credentials in Azure CycleCloud allows an authorized attacker to disclose information…0.6%높음7.7
CVE-2026-69631Integer overflow or wraparound in Windows DNS allows an unauthorized attacker to deny service over a network.1.2%높음7.5
CVE-2026-72989Use of uninitialized resource in Windows Failover Cluster allows an unauthorized attacker to disclose informat…0.8%높음7.5
CVE-2026-77494Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…1.2%높음7.5
CVE-2026-62813Use after free in Active Directory Domain Services allows an authorized attacker to execute code over a networ…0.6%높음7.5
CVE-2026-69809Missing release of memory after effective lifetime in Active Directory Domain Services allows an unauthorized …1.1%높음7.5
CVE-2026-77895Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.1.1%높음7.5
CVE-2026-69881Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a netwo…1.2%높음7.5
CVE-2026-69805External control of file name or path in .NET allows an unauthorized attacker to elevate privileges over a net…0.5%높음7.5
CVE-2026-77889Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-69329Out-of-bounds read in BranchCache allows an unauthorized attacker to deny service over a network.1.1%높음7.5
CVE-2026-69587Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a netwo…1.2%높음7.5
CVE-2026-62759Authentication bypass by spoofing in Windows Netlogon allows an unauthorized attacker to perform spoofing over…0.3%높음7.5
CVE-2026-69852Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthori…0.6%높음7.5
CVE-2026-72954Use after free in Windows Deployment Services allows an authorized attacker to execute code over a network.0.6%높음7.5
CVE-2026-69793Improper validation of consistency within input in Windows TCP/IP allows an unauthorized attacker to bypass a …0.8%높음7.5
CVE-2026-72949Null pointer dereference in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized at…1.1%높음7.5
CVE-2026-77886Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-66304Server-side request forgery (ssrf) in Skype for Business allows an unauthorized attacker to disclose informati…0.7%높음7.5
CVE-2026-69397Use after free in OpenSSH for Windows allows an unauthorized attacker to execute code over a network.0.6%높음7.5
CVE-2026-69599Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network…0.7%높음7.5
CVE-2026-77498Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-69804Time-of-check time-of-use (toctou) race condition in Microsoft Office SharePoint allows an authorized attacker…0.5%높음7.5
CVE-2026-57099Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny s…0.8%높음7.5
CVE-2026-57098Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disc…0.6%높음7.5
CVE-2026-77502Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-69710Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hello a…0.2%높음7.5
CVE-2026-77888Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-81355Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to execute…0.2%높음7.5
CVE-2026-69428Out-of-bounds read in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to …1.1%높음7.5
CVE-2026-69890Use after free in Windows Virtual Trusted Platform Module allows an authorized attacker to elevate privileges …0.3%높음7.5
CVE-2026-77499Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-69739Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.9%높음7.5
CVE-2026-72932Buffer over-read in Windows Message Queuing Queue Manager allows an unauthorized attacker to disclose informat…1.0%높음7.5
CVE-2026-69342Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.1.1%높음7.5
CVE-2026-83989Out-of-bounds read in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to deny servi…0.9%높음7.5
CVE-2026-72928Use after free in Windows DNS allows an authorized attacker to execute code over a network.0.6%높음7.5
CVE-2026-66307Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service o…0.6%높음7.5
CVE-2026-69607Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.0.6%높음7.5
CVE-2026-77890Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-69514Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to execute code ov…0.7%높음7.5
CVE-2026-70587Improper null termination in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose infor…0.8%높음7.5
CVE-2026-72943Use after free in Windows Deployment Services allows an authorized attacker to execute code over a network.0.6%높음7.5
CVE-2026-73017Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally.0.2%높음7.5
CVE-2026-68887Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthorized attacker to deny service ov…0.8%높음7.5
CVE-2026-69760Out-of-bounds read in Windows Kerberos allows an unauthorized attacker to deny service over a network.1.1%높음7.5
CVE-2026-69429Heap-based buffer overflow in Windows IKE Extension allows an authorized attacker to execute code over a netwo…0.6%높음7.5
CVE-2026-69744Null pointer dereference in Windows Kerberos allows an unauthorized attacker to deny service over a network.1.1%높음7.5
CVE-2026-71330Exposure of sensitive system information to an unauthorized control sphere in Windows Services for NFS ONCRPC …0.8%높음7.5
CVE-2026-77501Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-69378Uncontrolled recursion in Microsoft Exchange Server allows an unauthorized attacker to deny service over a net…1.1%높음7.5
CVE-2026-84001Out-of-bounds read in Windows Key Distribution Center allows an unauthorized attacker to deny service over a n…0.6%높음7.5
CVE-2026-77898Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.0.5%높음7.5
CVE-2026-77893Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-70579Out-of-bounds read in Windows Mobile Broadband allows an unauthorized attacker to disclose information over a …1.0%높음7.5
CVE-2026-69443Out-of-bounds read in Windows Device Health Attestation (DHA) allows an unauthorized attacker to disclose info…1.0%높음7.5
CVE-2026-70570Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthori…0.4%높음7.5
CVE-2026-67376Integer overflow or wraparound in SQL Server allows an unauthorized attacker to deny service over a network.0.8%높음7.5
CVE-2026-69588Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny s…1.2%높음7.5
CVE-2026-70065Missing release of memory after effective lifetime in Windows DHCP Server allows an unauthorized attacker to d…1.2%높음7.5
CVE-2026-69539Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network…0.5%높음7.5
CVE-2026-84003Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unaut…0.4%높음7.4
CVE-2026-69347Heap-based buffer overflow in Windows Fast FAT Driver allows an unauthorized attacker to execute code locally.0.3%높음7.4
CVE-2026-81383Use of incorrectly-resolved name or reference in Visual Studio Code allows an unauthorized attacker to disclos…0.7%높음7.4
CVE-2026-78461Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an…1.0%높음7.4
CVE-2026-62906Improper neutralization of special elements in data query logic in Microsoft Discovery Studio allows an unauth…0.7%높음7.4
CVE-2026-69477Heap-based buffer overflow in Microsoft Office Access allows an authorized attacker to execute code locally.0.4%높음7.3
CVE-2026-81349Improper neutralization of special elements used in an os command ('os command injection') in Azure HDInsights…0.7%높음7.2
CVE-2026-69396Use after free in Windows NDIS allows an authorized attacker to elevate privileges over a network.0.5%높음7.1
CVE-2026-68835Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileges over a …0.5%높음7.1
CVE-2026-69761Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges over a network.0.5%높음7.1
CVE-2026-69340Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges over a network.0.5%높음7.1
CVE-2026-69451Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges over …0.7%높음7.1
CVE-2026-69597Use after free in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.0.6%높음7.1
CVE-2026-69688Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to elevate pr…0.6%높음7.1
CVE-2026-69314Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privilege…0.5%높음7.1
CVE-2026-69706Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.0.4%높음7.1
CVE-2026-69602Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges over a netw…0.6%높음7.1
CVE-2026-69482Creation of temporary file in directory with insecure permissions in Windows Error Reporting allows an authori…0.3%높음7.1
CVE-2026-68889Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over …0.4%높음7.1
CVE-2026-69305Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over …0.6%높음7.1
CVE-2026-69296Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges over …0.5%높음7.1
CVE-2026-69364Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print S…0.5%높음7.1
CVE-2026-69338Use after free in Remote Desktop Gateway Service allows an authorized attacker to elevate privileges over a ne…0.5%높음7.1
CVE-2026-68893Use after free in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate privileges…0.5%높음7.1
CVE-2026-69366Use after free in Windows Kernel allows an authorized attacker to elevate privileges over a network.0.6%높음7.1
CVE-2026-69757Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges over a network.0.7%높음7.1
CVE-2026-69536Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network…0.4%높음7.1
CVE-2026-69272Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over …0.4%높음7.1
CVE-2026-69460Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges o…0.5%높음7.1
CVE-2026-69313Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over …0.5%높음7.1
CVE-2026-69775Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges over a network.0.5%높음7.1
CVE-2026-66305Use of client-side authentication in Skype for Business allows an authorized attacker to perform spoofing over…0.3%높음7.1
CVE-2026-69357Use after free in Windows NDIS allows an authorized attacker to elevate privileges over a network.0.4%높음7.1
CVE-2026-68846Use after free in Windows Kernel allows an authorized attacker to elevate privileges over a network.0.6%높음7.1
CVE-2026-69358Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code over a ne…0.5%높음7.1
CVE-2026-69336Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over …0.5%높음7.1
CVE-2026-69384Null pointer dereference in Virtual Hard Disk (VHD) Miniport Driver allows an unauthorized attacker to deny se…0.4%높음7.1
CVE-2026-69553Missing authorization in Windows Hyper-V allows an authorized attacker to elevate privileges over a network.0.5%높음7.1
CVE-2026-69274Use after free in Windows Win32K allows an authorized attacker to elevate privileges over a network.0.4%높음7.1
CVE-2026-69337Double free in Windows Registry allows an authorized attacker to elevate privileges over a network.0.7%높음7.1
CVE-2026-69791Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69275Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privilege…0.2%높음7.0
CVE-2026-69383External control of file name or path in Windows Shell allows an authorized attacker to elevate privileges loc…0.2%높음7.0
CVE-2026-69470Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate pr…0.3%높음7.0
CVE-2026-69818Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69817Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69816Use after free in Windows Accounts Control allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69814Use after free in Windows Credential Providers allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69806Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate pr…1.8%높음7.0
CVE-2026-69472Use after free in Windows Devices Human Interface allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-62694Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69549Out-of-bounds read in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privile…0.3%높음7.0
CVE-2026-69473Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-50349Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancilla…0.2%높음7.0
CVE-2026-69299Use after free in Microsoft COM for Windows allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69385Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP …0.2%높음7.0
CVE-2026-73022Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges l…0.2%높음7.0
CVE-2026-69388Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-72930Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to execute cod…0.3%높음7.0
CVE-2026-69891Use after free in Windows Media allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69279Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges l…0.3%높음7.0
CVE-2026-69362Use after free in Windows Error Reporting allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-78457Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69564Heap-based buffer overflow in Windows Online Certificate Status Protocol (OCSP) allows an authorized attacker …0.3%높음7.0
CVE-2026-69563Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to…0.2%높음7.0
CVE-2026-69300Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-70573Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges lo…0.3%높음7.0
CVE-2026-69694Deserialization of untrusted data in Windows IP Address Management (IPAM) Service allows an authorized attacke…1.7%높음7.0
CVE-2026-69708Use after free in Windows Web Platform Storage allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-70283Incorrect authorization in Windows Win32K allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-71332Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to elevate pri…0.3%높음7.0
CVE-2026-83940Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.2%높음7.0
CVE-2026-69468Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate…0.3%높음7.0
CVE-2026-69889Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-72963Use after free in Windows Modern Execution Server allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69911Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69560Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-70568Heap-based buffer overflow in Windows Defender Firewall Service allows an authorized attacker to elevate privi…0.3%높음7.0
CVE-2026-81389Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.0.4%높음7.0
CVE-2026-72952Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to execute code locally.0.3%높음7.0
CVE-2026-69573Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to ele…0.3%높음7.0
CVE-2026-69466Time-of-check time-of-use (toctou) race condition in Windows Kernel allows an authorized attacker to elevate p…0.2%높음7.0
CVE-2026-78464Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker…0.2%높음7.0
CVE-2026-69498Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69866Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69500Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69581Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.2%높음7.0
CVE-2026-69859Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an a…0.2%높음7.0
CVE-2026-80093Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges l…0.3%높음7.0
CVE-2026-69578Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-71353Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privi…0.2%높음7.0
CVE-2026-71333Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges…0.3%높음7.0
CVE-2026-69575Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locall…0.3%높음7.0
CVE-2026-71351Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privi…0.3%높음7.0
CVE-2026-69574Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-71342Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges…0.3%높음7.0
CVE-2026-71340Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-70565Use after free in Windows AF_UNIX Socket Provider allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69448Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetoo…0.2%높음7.0
CVE-2026-69292Double free in Remote Desktop Gateway Service allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69896Use after free in Windows Error Reporting allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68897Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges local…0.2%높음7.0
CVE-2026-69488Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69600Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69310Use after free in Windows DNS allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69606Use after free in Windows Shell allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69605Use after free in Microsoft Install Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69613Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69440Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker…0.2%높음7.0
CVE-2026-69611Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges …0.3%높음7.0
CVE-2026-69610Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69441Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Install…0.2%높음7.0
CVE-2026-69430Use after free in Windows Embedded Mode Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68884Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69621Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69311Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69319Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Vid…0.2%높음7.0
CVE-2026-69617Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges…0.3%높음7.0
CVE-2026-69630Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69331Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges…0.2%높음7.0
CVE-2026-69422Use after free in Windows USB Video Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69501Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privilege…0.2%높음7.0
CVE-2026-70562Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69333Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68847Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate pr…0.2%높음7.0
CVE-2026-69492Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate pri…0.3%높음7.0
CVE-2026-70585Use after free in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to execute code loc…0.3%높음7.0
CVE-2026-69648Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69645Use after free in Windows Message Queuing allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68840Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Dri…0.2%높음7.0
CVE-2026-69341Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69410Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68837Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69654Use after free in Windows Accounts Control allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69652Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69682Use after free in Windows Host Guardian Service allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69692Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-85360Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-69413Use after free in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privi…0.3%높음7.0
CVE-2026-69398Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetoo…0.2%높음7.0
CVE-2026-68825Use after free in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69309Double free in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-68824Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connect…0.2%높음7.0
CVE-2026-69401Use after free in Audio Video Control Transport Protocol allows an authorized attacker to elevate privileges l…0.2%높음7.0
CVE-2026-69404Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP …0.2%높음7.0
CVE-2026-69287Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69711Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69281Use after free in Windows License Manager allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69517Use after free in Windows Wireless Networking allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69735Use after free in Windows Broadcast DVR User Service allows an authorized attacker to elevate privileges local…0.3%높음7.0
CVE-2026-69516Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privile…0.2%높음7.0
CVE-2026-69280Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-70567Double free in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally…0.3%높음7.0
CVE-2026-69834Use after free in Windows ALPC allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69838Use after free in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally…0.3%높음7.0
CVE-2026-69394Heap-based buffer overflow in Windows Audio Service allows an authorized attacker to elevate privileges locall…0.3%높음7.0
CVE-2026-69693Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privilege…0.3%높음7.0
CVE-2026-69779Time-of-check time-of-use (toctou) race condition in Windows Win32K allows an authorized attacker to elevate p…0.2%높음7.0
CVE-2026-83999Improper link resolution before file access ('link following') in Windows Resilient File System (ReFS) Dedupli…0.2%높음7.0
CVE-2026-70578Heap-based buffer overflow in Windows Credential Guard allows an authorized attacker to elevate privileges loc…0.3%높음7.0
CVE-2026-70577Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges l…0.3%높음7.0
CVE-2026-69540Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-72926Use after free in Windows Internet Connection Sharing (ICS) allows an authorized attacker to elevate privilege…0.3%높음7.0
CVE-2026-69379Improper link resolution before file access ('link following') in Windows NTFS allows an authorized attacker t…0.3%높음7.0
CVE-2026-77485Use after free in SQL Server allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-73005Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-73003Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges l…0.2%높음7.0
CVE-2026-77905Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges local…0.2%높음7.0
CVE-2026-69335Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-77899Use after free in Windows Security Center allows an authorized attacker to elevate privileges locally.0.2%높음7.0
CVE-2026-77897Relative path traversal in Power Automate allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-69567Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.0.3%높음7.0
CVE-2026-77894Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Install…0.2%높음7.0
CVE-2026-69566Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical att…0.4%보통6.8
CVE-2026-65812Insertion of sensitive information into sent data in Microsoft Teams for Android allows an authorized attacker…0.5%보통6.8
CVE-2026-77892No cwe for this issue in Windows Boot Manager allows an unauthorized attacker to elevate privileges with a phy…0.3%보통6.8
CVE-2026-71329Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical att…0.3%보통6.8
CVE-2026-69415Missing authentication for critical function in Windows DHCP Server allows an authorized attacker to elevate p…0.7%보통6.8
CVE-2026-68833Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical att…0.3%보통6.8
CVE-2026-71350Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a phy…0.4%보통6.8
CVE-2026-72999Out-of-bounds read in Windows USB Hub Driver allows an unauthorized attacker to elevate privileges with a phys…0.3%보통6.8
CVE-2026-71349Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a phy…0.4%보통6.8
CVE-2026-72985Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges…0.3%보통6.8
CVE-2026-71348Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a phy…0.4%보통6.8
CVE-2026-69490Out-of-bounds read in Windows USB Mass Storage Class Driver allows an unauthorized attacker to elevate privile…0.4%보통6.8
CVE-2026-78451Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to e…0.4%보통6.8
CVE-2026-69449Heap-based buffer overflow in Windows BitLocker allows an authorized attacker to execute code locally.0.4%보통6.7
CVE-2026-69373Integer overflow or wraparound in Windows Overlay Filter allows an authorized attacker to elevate privileges l…0.3%보통6.7
CVE-2026-72927Heap-based buffer overflow in Winsock allows an authorized attacker to elevate privileges locally.0.3%보통6.7
CVE-2026-72948Relative path traversal in Windows DNS allows an authorized attacker to elevate privileges locally.0.4%보통6.7
CVE-2026-69350Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges local…0.3%보통6.7
CVE-2026-72935Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.0.3%보통6.7
CVE-2026-71339Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.0.3%보통6.7
CVE-2026-69469Integer overflow or wraparound in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacke…0.4%보통6.6
CVE-2026-80087Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to disclose information over a …0.7%보통6.5
CVE-2026-69497Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to den…1.1%보통6.5
CVE-2026-69297Storing passwords in a recoverable format in Windows DHCP Server allows an authorized attacker to disclose inf…0.6%보통6.5
CVE-2026-69267Insufficient granularity of access control in Windows Connected User Experiences and Telemetry allows an autho…0.3%보통6.5
CVE-2026-69562Out-of-bounds read in SQL Server allows an unauthorized attacker to disclose information over a network.0.9%보통6.5
CVE-2026-80079Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.9%보통6.5
CVE-2026-69781Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to d…0.5%보통6.5
CVE-2026-68898Out-of-bounds read in Windows iSCSI allows an unauthorized attacker to deny service over a network.0.6%보통6.5
CVE-2026-78520Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.0.7%보통6.5
CVE-2026-69719Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a netwo…0.9%보통6.5
CVE-2026-80090Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.7%보통6.5
CVE-2026-69626Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.9%보통6.5
CVE-2026-69624Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized att…0.7%보통6.5
CVE-2026-69636Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office Share…1.0%보통6.5
CVE-2026-69642Improper neutralization of input during web page generation ('cross-site scripting') in Skype for Business all…0.3%보통6.5
CVE-2026-68784Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-68781Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-68780Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-66308Out-of-bounds read in Skype for Business allows an authorized attacker to deny service over a network.0.6%보통6.5
CVE-2026-68779Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.6%보통6.5
CVE-2026-69734Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose informatio…0.9%보통6.5
CVE-2026-68778Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-66306Generation of error message containing sensitive information in Skype for Business allows an unauthorized atta…0.5%보통6.5
CVE-2026-68777Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-68776Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a netwo…0.6%보통6.5
CVE-2026-67648Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a netwo…0.6%보통6.5
CVE-2026-67645Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.6%보통6.5
CVE-2026-67641Integer overflow or wraparound in SQL Server allows an authorized attacker to deny service over a network.0.6%보통6.5
CVE-2026-67633Out-of-bounds read in SQL Server allows an authorized attacker to deny service over a network.0.8%보통6.5
CVE-2026-67630Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-67629Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-67393Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-67624Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.6%보통6.5
CVE-2026-67389Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-67390Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.1.0%보통6.5
CVE-2026-67386Use of uninitialized resource in SQL Server allows an authorized attacker to disclose information over a netwo…0.7%보통6.5
CVE-2026-67383Generation of error message containing sensitive information in SQL Server allows an authorized attacker to di…1.0%보통6.5
CVE-2026-67369Out-of-bounds read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-66816Insufficient logging in SQL Server allows an authorized attacker to bypass a security feature over a network.0.7%보통6.5
CVE-2026-66303Null pointer dereference in Skype for Business allows an authorized attacker to deny service over a network.0.8%보통6.5
CVE-2026-64918Insufficiently protected credentials in Microsoft Office allows an unauthorized attacker to perform spoofing o…0.5%보통6.5
CVE-2026-62801Improper limitation of a pathname to a restricted directory ('path traversal') in Windows PowerShell allows an…0.5%보통6.5
CVE-2026-63523Improper neutralization of input during web page generation ('cross-site scripting') in Skype for Business all…0.7%보통6.5
CVE-2026-62762Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service ove…0.8%보통6.5
CVE-2026-58649Origin validation error in .NET allows an unauthorized attacker to disclose information over a network.0.3%보통6.5
CVE-2026-72942Out-of-bounds read in Windows Spaceport.sys allows an unauthorized attacker to disclose information over a net…0.9%보통6.5
CVE-2026-72938Access of resource using incompatible type ('type confusion') in Microsoft Office PowerPoint allows an unautho…0.9%보통6.5
CVE-2026-73029Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-77896Integer overflow or wraparound in Remote Desktop Client allows an unauthorized attacker to deny service over a…0.7%보통6.5
CVE-2026-72977Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over…1.0%보통6.5
CVE-2026-78453Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized atta…0.9%보통6.5
CVE-2026-72975Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over…0.7%보통6.5
CVE-2026-72974Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a netw…0.9%보통6.5
CVE-2026-78515Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a ne…0.9%보통6.5
CVE-2026-72956Untrusted pointer dereference in Microsoft Office PowerPoint allows an unauthorized attacker to disclose infor…0.9%보통6.5
CVE-2026-78522Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.7%보통6.5
CVE-2026-78503Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.9%보통6.5
CVE-2026-78502Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.7%보통6.5
CVE-2026-80089Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.9%보통6.5
CVE-2026-80088Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.9%보통6.5
CVE-2026-80086Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over…0.7%보통6.5
CVE-2026-80084Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a …0.7%보통6.5
CVE-2026-80082Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-80078Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-80076Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-80073Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a …0.9%보통6.5
CVE-2026-81381Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker …0.6%보통6.5
CVE-2026-81377Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an…0.8%보통6.5
CVE-2026-80091Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information over…0.7%보통6.5
CVE-2026-72939Null pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to …1.1%보통6.5
CVE-2026-70019Windows hard link in Windows Compressed Folder allows an unauthorized attacker to disclose information over a …1.1%보통6.5
CVE-2026-69361Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to perform spoof…0.8%보통6.5
CVE-2026-69374Allocation of resources without limits or throttling in Windows SMB Server allows an authorized attacker to de…1.1%보통6.5
CVE-2026-69375Authorization bypass through user-controlled key in Microsoft Exchange Server allows an authorized attacker to…0.6%보통6.5
CVE-2026-78441Out-of-bounds read in Windows OLE DB allows an unauthorized attacker to disclose information over a network.0.7%보통6.5
CVE-2026-69395Use of externally-controlled format string in Active Directory Certificate Services (AD CS) allows an authoriz…0.9%보통6.5
CVE-2026-77911Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a net…0.7%보통6.5
CVE-2026-69409Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker to disclose…1.0%보통6.5
CVE-2026-69839Uncaught exception in Windows iSCSI Target Service allows an authorized attacker to deny service over a networ…1.1%보통6.5
CVE-2026-70582Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Managem…0.2%보통6.4
CVE-2026-69878Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code locally.0.3%보통6.4
CVE-2026-77887Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally.0.2%보통6.4
CVE-2026-72947Integer underflow (wrap or wraparound) in Windows File History Service allows an authorized attacker to elevat…0.3%보통6.4
CVE-2026-77891Out-of-bounds read in Windows DHCP Server allows an authorized attacker to execute code locally.0.2%보통6.4
CVE-2026-71338Double free in Windows Failover Cluster allows an authorized attacker to elevate privileges locally.0.3%보통6.4
CVE-2026-78523Use after free in Windows DNS allows an unauthorized attacker to deny service over a network.1.0%보통5.9
CVE-2026-69803Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a netwo…0.8%보통5.9
CVE-2026-69929Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a netwo…0.8%보통5.9
CVE-2026-69930Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a netwo…0.8%보통5.9
CVE-2026-72978Allocation of resources without limits or throttling in Active Directory Federation Services (AD FS) allows an…0.8%보통5.9
CVE-2026-70124Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a netwo…0.8%보통5.9
CVE-2026-69382Use of a broken or risky cryptographic algorithm in Microsoft Exchange Server allows an unauthorized attacker …0.4%보통5.9
CVE-2026-69304Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attack…0.8%보통5.9
CVE-2026-70091Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS all…0.7%보통5.9
CVE-2026-69559Origin validation error in Microsoft Teams for Android allows an authorized attacker to disclose information o…0.3%보통5.8
CVE-2026-68874Out-of-bounds read in Windows Program Compatibility Assistant Service allows an authorized attacker to disclos…0.8%보통5.7
CVE-2026-69405Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to den…0.6%보통5.7
CVE-2026-69591Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information over a network.0.9%보통5.7
CVE-2026-69572Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclose information over a network.0.9%보통5.7
CVE-2026-69416Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network…0.6%보통5.7
CVE-2026-69637Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent netwo…0.6%보통5.7
CVE-2026-69317Out-of-bounds read in Remote Desktop Client allows an authorized attacker to disclose information over a netwo…0.8%보통5.7
CVE-2026-69679Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent netwo…0.6%보통5.7
CVE-2026-69507Insertion of sensitive information into externally-accessible file or directory in Microsoft Windows Search Co…0.8%보통5.7
CVE-2026-69372Out-of-bounds read in Windows Network File System allows an authorized attacker to deny service over a network…0.8%보통5.7
CVE-2026-69552Generation of error message containing sensitive information in Windows Print Spooler Components allows an aut…0.9%보통5.7
CVE-2026-69393Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information over a netwo…0.8%보통5.7
CVE-2026-69723Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authori…1.0%보통5.7
CVE-2026-69569Untrusted pointer dereference in Windows Print Spooler Components allows an authorized attacker to deny servic…0.9%보통5.7
CVE-2026-69349Use of uninitialized resource in Windows Management Instrumentation allows an authorized attacker to disclose …0.8%보통5.7
CVE-2026-69832Exposure of sensitive system information to an unauthorized control sphere in Windows Win32K allows an authori…0.4%보통5.6
CVE-2026-69286Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to disclose …0.4%보통5.5
CVE-2026-69339Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allo…0.5%보통5.5
CVE-2026-72937Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69808Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69504Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69770Use of uninitialized resource in Windows Spaceport.sys allows an authorized attacker to disclose information l…0.4%보통5.5
CVE-2026-69294Generation of error message containing sensitive information in Microsoft COM for Windows allows an authorized…0.3%보통5.5
CVE-2026-69406Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authori…0.5%보통5.5
CVE-2026-69403Missing authorization in Windows SMB Server allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-68830Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Devic…0.3%보통5.5
CVE-2026-68831Files or directories accessible to external parties in Windows Defender Firewall Service allows an authorized …0.3%보통5.5
CVE-2026-69672Use of uninitialized resource in Windows DNS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69674Missing authentication for critical function in Windows Modern Device Management (MDM) allows an authorized at…0.3%보통5.5
CVE-2026-70290Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose info…0.4%보통5.5
CVE-2026-68843Use after free in Microsoft Office Word allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-68842Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allo…0.4%보통5.5
CVE-2026-68851Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-83949Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-81395Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.5%보통5.5
CVE-2026-81394Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an…0.4%보통5.5
CVE-2026-81393Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-81392Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.5%보통5.5
CVE-2026-81391Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose informatio…0.4%보통5.5
CVE-2026-72964Missing authentication for critical function in Windows Internet Connection Sharing (ICS) allows an authorized…0.3%보통5.5
CVE-2026-71341Out-of-bounds read in Windows Partition Management Driver allows an authorized attacker to disclose informatio…0.4%보통5.5
CVE-2026-72966Missing authorization in Windows Remote Access Connection Manager allows an authorized attacker to perform tam…0.3%보통5.5
CVE-2026-69353Out-of-bounds read in Windows Text Shaping allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-83501Out-of-bounds read in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to dis…0.3%보통5.5
CVE-2026-69351Exposure of private personal information to an unauthorized actor in Windows Universal Plug and Play (UPnP) De…0.5%보통5.5
CVE-2026-69288Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-69343Out-of-bounds read in Windows Overlay Filter allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69308Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-78454Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69344Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information l…0.4%보통5.5
CVE-2026-69345Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-78513Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information loca…0.5%보통5.5
CVE-2026-69367Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-73004Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tam…0.2%보통5.5
CVE-2026-81399Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-73008Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an autho…0.5%보통5.5
CVE-2026-77488Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information loc…0.3%보통5.5
CVE-2026-69369Out-of-bounds read in Windows DNS allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-81958Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose informatio…0.4%보통5.5
CVE-2026-77491Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-77492Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-69376Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-83951Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69684Generation of error message containing sensitive information in Windows Error Reporting allows an authorized a…0.5%보통5.5
CVE-2026-69390Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-68852Use of uninitialized resource in Microsoft Account allows an authorized attacker to disclose information local…0.3%보통5.5
CVE-2026-68873Insertion of sensitive information into log file in Windows Program Compatibility Assistant Service allows an …0.5%보통5.5
CVE-2026-69618Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69321Missing authentication for critical function in Windows Power Dependency Coordinator allows an authorized atta…0.3%보통5.5
CVE-2026-69862Out-of-bounds read in Windows Wireless Wide Area Network Service allows an authorized attacker to disclose inf…0.5%보통5.5
CVE-2026-68881Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.3%보통5.5
CVE-2026-68886Use after free in Windows Network Connection Broker allows an authorized attacker to disclose information loca…0.5%보통5.5
CVE-2026-69616Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to disclose information lo…0.4%보통5.5
CVE-2026-69609Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-85875Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69741Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-70145Out-of-bounds read in Microsoft Windows Search Component allows an authorized attacker to disclose information…0.4%보통5.5
CVE-2026-68895Numeric truncation error in Internet Storage Name Service allows an authorized attacker to disclose informatio…0.3%보통5.5
CVE-2026-69794Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information…0.4%보통5.5
CVE-2026-69315Exposure of sensitive system information to an unauthorized control sphere in Windows License Manager allows a…0.5%보통5.5
CVE-2026-69457Out-of-bounds read in Windows USB Driver allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-83991Missing authentication for critical function in Windows Cloud Files Mini Filter Driver allows an authorized at…0.3%보통5.5
CVE-2026-69453Missing authorization in Microsoft Windows Search Component allows an authorized attacker to perform tampering…0.3%보통5.5
CVE-2026-69318Out-of-bounds read in Windows Imaging Component allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69303Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose information local…0.4%보통5.5
CVE-2026-69568Out-of-bounds read in Windows Storage Spaces Controller allows an authorized attacker to disclose information …0.4%보통5.5
CVE-2026-69554Missing authentication for critical function in Microsoft Windows Search Component allows an authorized attack…0.3%보통5.5
CVE-2026-69531Unintended proxy or intermediary ('confused deputy') in Microsoft Windows Speech allows an authorized attacker…0.3%보통5.5
CVE-2026-72945Use of uninitialized resource in Windows Task Scheduler allows an authorized attacker to disclose information …0.4%보통5.5
CVE-2026-69527Out-of-bounds read in Windows USB Mass Storage Class Driver allows an authorized attacker to disclose informat…0.4%보통5.5
CVE-2026-81390Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-78506Improper null termination in Microsoft Office Word allows an unauthorized attacker to disclose information loc…0.5%보통5.5
CVE-2026-81387Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an…0.4%보통5.5
CVE-2026-81401Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized…0.5%보통5.5
CVE-2026-81400Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-69627Out-of-bounds read in Windows Remote Desktop Licensing Service allows an authorized attacker to disclose infor…0.4%보통5.5
CVE-2026-69402Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Share…0.4%보통5.4
CVE-2026-69417Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Share…0.4%보통5.4
CVE-2026-69690Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Share…0.4%보통5.4
CVE-2026-78446Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a n…0.6%보통5.3
CVE-2026-70575Null pointer dereference in Windows Schannel allows an authorized attacker to deny service over a network.0.8%보통5.3
CVE-2026-81380Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visu…0.6%보통5.3
CVE-2026-72976Out-of-bounds read in Microsoft Office Word allows an authorized attacker to disclose information locally.0.4%보통5.0
CVE-2026-68785Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.0.8%보통4.9
CVE-2026-69615Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Share…0.4%보통4.8
CVE-2026-69474Use after free in Windows Overlay Filter allows an authorized attacker to disclose information over a network.0.7%보통4.8
CVE-2026-69483Out-of-bounds read in Windows Image Acquisition allows an authorized attacker to disclose information locally.0.3%보통4.7
CVE-2026-68891Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.2%보통4.7
CVE-2026-69895Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.0.3%보통4.7
CVE-2026-69771Improper link resolution before file access ('link following') in Windows Container Manager Service allows an …0.3%보통4.7
CVE-2026-68849Out-of-bounds read in Windows Bluetooth Port Driver allows an authorized attacker to disclose information loca…0.2%보통4.7
CVE-2026-72931Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows…0.3%보통4.7
CVE-2026-69316Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.0.3%보통4.7
CVE-2026-69792Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K …0.2%보통4.7
CVE-2026-69853Use of uninitialized resource in Windows Win32K allows an authorized attacker to disclose information locally.0.3%보통4.7
CVE-2026-69425Improper link resolution before file access ('link following') in Windows NTFS allows an authorized attacker t…0.3%보통4.7
CVE-2026-69548Heap-based buffer overflow in Windows RNDIS allows an unauthorized attacker to disclose information with a phy…0.5%보통4.6
CVE-2026-78508Out-of-bounds read in Windows CD-ROM Driver allows an unauthorized attacker to disclose information with a phy…0.4%보통4.6
CVE-2026-78452Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose inf…0.5%보통4.6
CVE-2026-69381Out-of-bounds read in Windows Storage Port Driver allows an unauthorized attacker to disclose information with…0.4%보통4.6
CVE-2026-69713Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass …0.3%보통4.4
CVE-2026-72980Uncontrolled search path element in Windows Hello allows an authorized attacker to bypass a security feature l…0.3%보통4.4
CVE-2026-78516Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical at…0.5%보통4.3
CVE-2026-73019Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a sec…0.7%보통4.3
CVE-2026-78455Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.0.5%보통4.3
CVE-2026-69904Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose in…0.6%낮음3.5

권고 본문 (발췌)

원문을 그대로 옮긴 발췌이며 요약·해석하지 않았습니다.

개요 (총 13 종) o 등급 : 긴급 (Critical) 10 종 , 중요 (Important) 3 종 o 발표일 : 2026.09.08.(화) o 업데이트 내용 제품군 중요도 영향 Windows 11 긴급 권한 상승 Windows Server 2025 긴급 권한 상승 Windows Server 2022 긴급 권한 상승 Windows Server 2019 긴급 권한 상승 Windows Server 2016 긴급 권한 상승 Microsoft Office 긴급 원격 코드 실행 Microsoft SharePoint 중요 원격 코드 실행 Microsoft Exchange Server 중요 원격 코드 실행 Microsoft SQL Server 긴급 원격 코드 실행 Microsoft .NET 중요 권한 상승 Microsoft Visual Studio 긴급 보안 기능 우회 Microsoft Dynamics 365 긴급 원격 코드 실행 Microsoft Azure 긴급 권한 상승 [참고 사이트] [1] (한글) https://msrc.microsoft.com/update-guide/ko-kr/ [2] (영문) https://msrc.microsoft.com/update-guide/en-us/ [3] https://msrc.microsoft.com/update-guide/releaseNote/2026-Sep o 취약점 요약 정보 (총 996개) 제품 카테고리 CVE 번호 CVE 제목 SQL Server CVE-2026-47297 Microsoft SQL Server 원격 코드 실행 취약성 Windows Ancillary Function Driver for WinSock CVE-2026-50349 WinSock용 Windows 보조 기능 드라이버 권한 상승 취약성 Microsoft Exchange Server CVE-2026-55007 Microsoft Exchange Server 원격 코드 실행 취약성 Windows VHD miniport driver CVE-2026-56172 Windows VHD 미니포트 드라이버 권한 상승 취약성 Windows Server CVE-2026-56177 Windows Server 권한 상승 취약성 Microsoft Trace Data Helper CVE-2026-56198 Microsoft Trace Data Helper Elevation of Privilege Vulnerability Windows RDP Client CVE-2026-57098 Microsoft Remote Desktop 앱(Windows용) 정보 유출 취약성 ASP.NET Core CVE-2026-57099 ASP.NET Core 서비스 거부 취약성 Microsoft Windows Codecs Library CVE-2026-58599 HEVC 비디오 확장 원격 코드 실행 취약성 Microsoft Windows Codecs Library CVE-2026-58600 HEVC Video Extensions 권한 상승 취약성 XBox Gaming Services CVE-2026-58611 XBox 게임 서비스 권한 상승 취약성 .NET CVE-2026-58649 .NET 정보 유출 취약성 Windows Installer CVE-2026-62694 Windows Installer 권한 상승 취약성 Windows Push Notifications CVE-2026-62697 Windows 푸시 알림 권한 상승 취약성 Microsoft Windows Media Foundation CVE-2026-62706 Windows 미디어 파운데이션 원격 코드 실행 취약성 Microsoft Windows Media Foundation CVE-2026-62744 Windows 미디어 파운데이션 원격 코드 실행 취약성 Windows Netlogon CVE-2026-62759 Windows Netlogon 스푸핑 취약성 Active Directory Domain Services CVE-2026-62762 Windows Active Directory Domain Services 서비스 거부 취약성 Windows PowerShell CVE-2026-62801 Microsoft PowerShell 보안 기능 바이패스 취약성 Microsoft Office Word CVE-2026-62804 Microsoft Word 원격 코드 실행 취약성 Active Directory Certificate Services (AD CS) CVE-2026-62810 Active Directory Certificate Services (AD CS) 권한 상승 취약성 Active Directory Domain Services CVE-2026-62813 Windows Active Directory 도메인 서비스 원격 코드 실행 취약성 Azure Arc CVE-2026-62895 Azure …— KISA 보호나라 원문

전문은 보호나라 원문에서 확인하세요.