Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
43
Current result set after filter and search.
Exploited Flagged
36
Rows with a non-empty exploitation signal.
Distinct CWE
6
Unique weakness classes in this view.
Modules
33
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-191: Integer Underflow (Wrap or Wraparound) Clear filters
Release Month
May 2026
2 CVE | last update 1 day(s) ago
Release 2026-05-12 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-40397
Windows Common Log File System Driver
Exploitation More Likely
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Reported By
Puneeth Kumar Katikela
Microsoft
Release 2026-05-07 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-33845
Gnutls: gnutls
No latest release note
Gnutls: gnutls: denial of service via dtls zero-length fragment
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2026-05-07 - -
Release Month
April 2026
3 CVE | last update 1 day(s) ago
Release 2026-04-29 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-33999
Xorg: xwayland: x.org x server
No latest release note
Xorg: xwayland: x.org x server: denial of service via integer underflow in xkb compatibility map handling
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
2026-04-29 - -
Release 2026-04-14 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-32149
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No -
CVE-2026-27907
Windows Storage Spaces Controller
Exploitation Less Likely
Windows Storage Spaces Controller Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Kang Minchae with Best of Best 14th Team JUSTWIN (Kim Dowon, Kang Minju, Kim Donggeon, Wi Siyeon, Yoon Junghyun)
Release Month
December 2025
1 CVE | last update 1 day(s) ago
Release 2025-12-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-62567
Windows Hyper-V
Exploitation Unlikely
Windows Hyper-V Denial of Service Vulnerability
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
Mitchell Turner with Prelude Research
https://x.com/33y0re Connor McGarr with https://www.preludesecurity.com Prelude Research
Release Month
October 2025
1 CVE | last update 1 day(s) ago
Release 2025-10-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-59242
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Release Month
August 2025
1 CVE | last update 1 day(s) ago
Release 2025-08-11 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-4948
Libsoup: integer underflow in soup_multipart_new_from_message() leading to
No latest release note
Libsoup: integer underflow in soup_multipart_new_from_message() leading to denial of service in libsoup
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-08-11 - -
Release Month
July 2025
2 CVE | last update 1 day(s) ago
Release 2025-07-08 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-47996
Windows MBT Transport Driver
Exploitation Unlikely
Windows MBT Transport Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-49744
Windows Graphics Component
Exploitation More Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No -
Release Month
May 2025
1 CVE | last update 1 day(s) ago
Release 2025-05-13 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-29974
Windows Kernel
Exploitation Unlikely
Windows Kernel Information Disclosure Vulnerability
CVSS vector: AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-05-13 No
Reported By
Anonymous
Release Month
February 2025
1 CVE | last update 1 day(s) ago
Release 2025-02-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21376
Windows Lightweight Directory Access Protocol (LDAP)
Exploitation More Likely
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-02-11 No
Reported By
Anonymous
Release Month
January 2025
1 CVE | last update 1 day(s) ago
Release 2025-01-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21276
Windows MapUrlToZone
Exploitation Less Likely
Windows MapUrlToZone Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
George Hughey with MSRC Vulnerabilities & Mitigations
Release Month
December 2024
2 CVE | last update 1 day(s) ago
Release 2024-12-10 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-49103
Windows Wireless Wide Area Network Service (WwanSvc)
Exploitation Less Likely
Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
CVSS vector: AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Zhihua Wen with CyberKunLun
CVE-2024-49077
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
CVSS vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Zhihua Wen with CyberKunLun
Release Month
August 2024
2 CVE | last update 1 day(s) ago
Release 2024-08-13 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38063
Windows TCP/IP
Exploitation More Likely
Windows TCP/IP Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Wei in Kunlun Lab with Cyber KunLun
Release 2024-08-05 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2022-3165
An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message resulting in a
No latest release note
An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message resulting in a denial of service.
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
2024-08-05 - -
Release Month
July 2024
2 CVE | last update 1 day(s) ago
Release 2024-07-09 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38050
Windows Workstation Service
Exploitation Less Likely
Windows Workstation Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-07-09 No
Reported By
A1gxer
afang5472
CVE-2024-38074
Windows Remote Desktop Licensing Service
Exploitation Less Likely
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-07-09 No
Release Month
June 2024
1 CVE | last update 1 day(s) ago
Release 2024-06-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-30070
DHCP Server Service
Exploitation Less Likely
DHCP Server Service Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
2024-06-11 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
Release Month
May 2024
2 CVE | last update 1 day(s) ago
Release 2024-05-14 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-30011
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2024-05-14 No
Reported By
ziming zhang with Ant Security Light-Year Lab
CVE-2024-30008
Windows DWM Core Library
Exploitation Less Likely
Windows DWM Core Library Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-05-14 No
Release Month
April 2024
1 CVE | last update 1 day(s) ago
Release 2024-04-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-26208
Microsoft Message Queuing (MSMQ)
Exploitation Less Likely
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-04-09 No
Reported By
wkai with Codesafe Team of Legendsec at QI-ANXIN Group
Release Month
January 2024
2 CVE | last update 1 day(s) ago
Release 2024-01-24 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-0565
Kernel: cifs filesystem decryption improper input validation
No latest release note
Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client
CVSS vector: AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
2024-01-24 - -
Release 2024-01-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-21309
Windows Kernel-Mode Driver
Exploitation Less Likely
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-01-09 No
Reported By
pwnht
Release Month
September 2023
1 CVE | last update 1 day(s) ago
Release 2023-09-12 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-38162
DHCP Server Service
Exploitation Less Likely
DHCP Server Service Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2023-09-12 No
Reported By
LIU An, WANG Zimeng State Grid Information & Telecommunication Co.,Ltd.
Release Month
August 2023
2 CVE | last update 1 day(s) ago
Release 2023-08-08 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-35387
Windows Bluetooth A2DP driver
Exploitation Less Likely
Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
CVSS vector: AV:A/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-08-08 No
Reported By
Lucas Leong (@_wmliang_) of Trend Micro Zero Day Initiative
CVE-2023-36909
Microsoft Message Queuing (MSMQ)
Exploitation Less Likely
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2023-08-08 No
Reported By
Release Month
June 2023
2 CVE | last update 1 day(s) ago
Release 2023-06-15 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-29349
Microsoft ODBC and OLE DB
Exploitation Less Likely
Microsoft ODBC and OLE DB Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-06-15 No
Reported By
Yisekai Ojisan
Release 2023-06-13 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-32014
Windows Pragmatic General Multicast (PGM)
Exploitation Less Likely
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-06-13 No
Reported By
Anonymous
Release Month
April 2023
5 CVE | last update 1 day(s) ago
Release 2023-04-11 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-28250
Windows Pragmatic General Multicast (PGM)
Exploitation Less Likely
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-04-11 No
CVE-2023-28247
Windows Network File System
Exploitation Less Likely
Windows Network File System Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2023-04-11 No
Reported By
Wei in Kunlun Lab with Cyber KunLun
CVE-2023-28293
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-04-11 No
Reported By
Mateusz Jurczyk of Google Project Zero
CVE-2023-28272
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-04-11 No
Reported By
Mateusz Jurczyk of Google Project Zero
CVE-2023-24887
Microsoft PostScript and PCL6 Class Printer Driver
Exploitation Less Likely
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-04-11 No
Reported By
kap0k
Release Month
March 2023
3 CVE | last update 1 day(s) ago
Release 2023-03-14 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-21708
Remote Procedure Call Runtime
Exploitation Less Likely
Remote Procedure Call Runtime Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-03-14 No -
CVE-2023-24911
Microsoft PostScript and PCL6 Class Printer Driver
Exploitation Less Likely
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C
2023-03-14 No
Reported By
Adel from MSRC's V&M
CVE-2023-24864
Microsoft PostScript and PCL6 Class Printer Driver
Exploitation Less Likely
Microsoft PostScript and PCL6 Class Printer Driver Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-03-14 No
Reported By
Adel from MSRC's V&M
Release Month
February 2023
1 CVE | last update 1 day(s) ago
Release 2023-02-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-21684
Microsoft PostScript and PCL6 Class Printer Driver
Exploitation Less Likely
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-02-14 No
Reported By
kap0k
Release Month
January 2023
2 CVE | last update 1 day(s) ago
Release 2023-01-10 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-21527
Windows iSCSI Service
Exploitation Less Likely
Windows iSCSI Service Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2023-01-10 No
Reported By
CVE-2023-21556
Windows Layer 2 Tunneling Protocol (L2TP)
Exploitation Less Likely
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2023-01-10 No
Reported By
Release Month
January 2021
2 CVE | last update 1 day(s) ago
Release 2021-01-30 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2020-36228
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing resulting in
No latest release note
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Certificate List Exact Assertion processing resulting in denial of service.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2021-01-30 - -
Release 2021-01-29 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2020-36221
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing resulting in
No latest release note
An integer underflow was discovered in OpenLDAP before 2.4.57 leading to slapd crashes in the Certificate Exact Assertion processing resulting in denial of service (schema_init.c serialNumberAndIssuerCheck).
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2021-01-29 - -