Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
85
Current result set after filter and search.
Exploited Flagged
84
Rows with a non-empty exploitation signal.
Distinct CWE
5
Unique weakness classes in this view.
Modules
37
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-126: Buffer Over-read Clear filters
Release Month
May 2026
1 CVE | last update 1 day(s) ago
Release 2026-05-12 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-34336
Windows DWM Core Library
Exploitation Unlikely
Windows DWM Core Library Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Release Month
April 2026
3 CVE | last update 1 day(s) ago
Release 2026-04-14 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26184
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-26169
Windows Kernel Memory
Exploitation More Likely
Windows Kernel Memory Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Faiustov Denis with GMO Cybersecurity by Ierae, Inc.
Masahiro Kawada with GMO Cybersecurity by Ierae, Inc.
CVE-2026-26155
Microsoft Local Security Authority Subsystem Service
Exploitation Less Likely
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Howard McGreehan with MSRC V&M
Release Month
February 2026
2 CVE | last update 1 day(s) ago
Release 2026-02-28 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-28364
In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables
No latest release note
In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables remote code execution through a multi-phase attack chain. The vulnerability stems from missing bounds validation in the readblock() function, which performs unbounded memcpy() operations using attacker-controlled lengths from crafted Marshal data.
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
2026-02-28 - -
Release 2026-02-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-20846
GDI+
Exploitation Less Likely
GDI+ Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
0ccbbf129444eb66344ccafb92b00df4
xina1i of Anity Lab
Release Month
December 2025
5 CVE | last update 1 day(s) ago
Release 2025-12-09 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-62467
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2025-62473
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-12-09 No
Reported By
Anonymous
CVE-2025-62464
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2025-62462
Windows Projected File System
Exploitation Unlikely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2025-62461
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
ChenJian with Sea Security Orca Team
Release Month
November 2025
1 CVE | last update 1 day(s) ago
Release 2025-11-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-60720
Windows Transport Driver Interface (TDI) Translation Driver
Exploitation Unlikely
Windows Transport Driver Interface (TDI) Translation Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
haowei yan(jingdong dawnslab)
Release Month
October 2025
2 CVE | last update 1 day(s) ago
Release 2025-10-14 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-55325
Windows Storage Management Provider
Exploitation Less Likely
Windows Storage Management Provider Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-10-14 No
Reported By
nerty_nerty(Ingyu Yang), Mukyoung Kwak, Seongheun Hong, Jaeseok Bae, Jiwon Jang, Seoyun Cho with Best of the Best 13th Team MSRC Gasan
insu with Theori
Anonymous
CVE-2025-59192
Storport.sys Driver
Exploitation Less Likely
Storport.sys Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Release Month
September 2025
4 CVE | last update 1 day(s) ago
Release 2025-09-09 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-53806
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Anonymous
CVE-2025-53798
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Anonymous
CVE-2025-53797
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Anonymous
CVE-2025-53796
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Anonymous
Release Month
July 2025
4 CVE | last update 1 day(s) ago
Release 2025-07-08 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-49659
Windows Transport Driver Interface (TDI) Translation Driver
Exploitation Less Likely
Windows Transport Driver Interface (TDI) Translation Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-49684
Windows Storage Port Driver
Exploitation Less Likely
Windows Storage Port Driver Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-47973
Microsoft Virtual Hard Disk
Exploitation Unlikely
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Seungjin Oh (@seungjin01) with 78ResearchLab
Donghyeon Oh
JONGHOI KIM
CVE-2025-47971
Microsoft Virtual Hard Disk
Exploitation Less Likely
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Donghyeon Oh
JONGHOI KIM
Release Month
June 2025
1 CVE | last update 1 day(s) ago
Release 2025-06-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-24068
Windows Storage Management Provider
Exploitation Less Likely
Windows Storage Management Provider Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-06-10 No
Reported By
nerty_nerty(Ingyu Yang), Mukyoung Kwak, Seongheun Hong, Jaeseok Bae, Jiwon Jang, Seoyun Cho with Best of the Best 13th Team MSRC Gasan
Dan Reynolds with MSRC Vulnerabilities & Mitigations
insu with Theori
Release Month
May 2025
1 CVE | last update 1 day(s) ago
Release 2025-05-13 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-29956
Windows SMB
Exploitation Unlikely
Windows SMB Information Disclosure Vulnerability
CVSS vector: AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:L/E:U/RL:O/RC:C
2025-05-13 No
Reported By
Genghis Karimov with Microsoft High Availability Storage Group
Release Month
April 2025
4 CVE | last update 1 day(s) ago
Release 2025-04-08 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-26676
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Anonymous
CVE-2025-26672
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Anonymous with Codesafe Team of Legendsec at QI-ANXIN Group
CVE-2025-26664
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Anonymous
CVE-2025-21203
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Anonymous
Release Month
March 2025
1 CVE | last update 1 day(s) ago
Release 2025-03-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-24992
Windows NTFS
Exploitation More Likely
Windows NTFS Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-03-11 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
January 2025
2 CVE | last update 1 day(s) ago
Release 2025-01-14 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21271
Windows Cloud Files Mini Filter Driver
Exploitation Less Likely
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
CVE-2025-21277
Microsoft Message Queuing (MSMQ)
Exploitation Less Likely
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
Release Month
December 2024
1 CVE | last update 1 day(s) ago
Release 2024-12-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-49088
Windows Common Log File System Driver
Exploitation More Likely
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
dkdfcd
Release Month
October 2024
3 CVE | last update 1 day(s) ago
Release 2024-10-08 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38265
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Dan Reynolds with MSRC Vulnerabilities & Mitigations
Anonymous
CVE-2024-38261
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Nirmala Nawale with Microsoft
Dan Reynolds with MSRC Vulnerabilities & Mitigations
Anonymous
CVE-2024-43500
Windows Resilient File System (ReFS)
Exploitation Less Likely
Windows Resilient File System (ReFS) Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-10-08 No -
Release Month
September 2024
2 CVE | last update 1 day(s) ago
Release 2024-09-10 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38250
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-09-10 No
Reported By
Cristi Dudescu
Malu Harten
CVE-2024-43475
Microsoft Windows Admin Center
Exploitation Less Likely
Microsoft Windows Admin Center Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:H/E:U/RL:O/RC:C
2024-09-10 No
Reported By
Release Month
August 2024
2 CVE | last update 1 day(s) ago
Release 2024-08-13 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38135
Windows Resilient File System (ReFS)
Exploitation Less Likely
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Dan Reynolds and Sam Pope with MSRC Vulnerabilities & Mitigations
CVE-2024-38127
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Thunder_J with lichoin
Fraunhofer FKIE CA&D
Release Month
July 2024
3 CVE | last update 1 day(s) ago
Release 2024-07-09 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38071
Windows Remote Desktop Licensing Service
Exploitation Less Likely
Windows Remote Desktop Licensing Service Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2024-07-09 No
CVE-2024-30079
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-07-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
CVE-2024-30071
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-07-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
June 2024
1 CVE | last update 1 day(s) ago
Release 2024-06-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-30069
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-06-11 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
May 2024
1 CVE | last update 1 day(s) ago
Release 2024-05-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-30039
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-05-14 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
April 2024
5 CVE | last update 1 day(s) ago
Release 2024-04-09 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-26243
Windows USB Print Driver
Exploitation Less Likely
Windows USB Print Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-04-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
CVE-2024-28902
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-04-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
CVE-2024-28901
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-04-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
CVE-2024-28900
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-04-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
CVE-2024-26255
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-04-09 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
March 2024
1 CVE | last update 1 day(s) ago
Release 2024-03-12 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-26176
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-03-12 No
Reported By
Mateusz Jurczyk with Google Project Zero
Page 1 / 2 | rows 1-50 of 85 Next