Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
142
Current result set after filter and search.
Exploited Flagged
128
Rows with a non-empty exploitation signal.
Distinct CWE
9
Unique weakness classes in this view.
Modules
74
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-20: Improper Input Validation Clear filters
Release Month
April 2026
6 CVE | last update 1 day(s) ago
Release 2026-04-23 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-6409
the Protobuf PHP library during the parsing of untrusted input
No latest release note
Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input
No CVSS vector published
2026-04-23 - -
Release 2026-04-14 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26161
Windows Sensor Data Service
Exploitation Less Likely
Windows Sensor Data Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Andrew Ruddick with Microsoft Red Team
CVE-2026-32149
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No -
CVE-2026-33826
Windows Active Directory
Exploitation More Likely
Windows Active Directory Remote Code Execution Vulnerability
CVSS vector: AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
CVE-2026-26170
PowerShell
Exploitation Less Likely
PowerShell Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-26156
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
cyanbamboo and b2ahex
Release Month
March 2026
2 CVE | last update 1 day(s) ago
Release 2026-03-29 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-33936
python-ecdsa
No latest release note
python-ecdsa: Denial of Service via improper DER length validation in crafted private keys
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
2026-03-29 -
Release 2026-03-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-20967
System Center Operations Manager (SCOM)
Exploitation Less Likely
System Center Operations Manager (SCOM) Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Release Month
February 2026
2 CVE | last update 1 day(s) ago
Release 2026-02-10 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-21247
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
cyanbamboo and b2ahex
CVE-2026-21229
Power BI
Exploitation Unlikely
Power BI Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Jack Misiura with The Missing Link
Release Month
January 2026
1 CVE | last update 1 day(s) ago
Release 2026-01-13 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-20856
Windows Server Update Service (WSUS)
Exploitation Less Likely
Windows Server Update Service (WSUS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Release Month
December 2025
2 CVE | last update 1 day(s) ago
Release 2025-12-09 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-62571
Windows Installer
Exploitation Less Likely
Windows Installer Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
CVE-2025-62455
Microsoft Message Queuing (MSMQ)
Exploitation Less Likely
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
Release Month
October 2025
8 CVE | last update 1 day(s) ago
Release 2025-10-14 Patch Tuesday Count 7
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-59207
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
CVE-2025-58716
Windows Speech Runtime
Exploitation Unlikely
Windows Speech Runtime Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Anonymous
CVE-2025-59198
Windows Search Service
Exploitation Unlikely
Windows Search Service Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-10-14 No
CVE-2025-59190
Windows Search Service
Exploitation Unlikely
Windows Search Service Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-59187
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Anonymous
CVE-2025-55679
Windows Kernel
Exploitation Unlikely
Windows Kernel Information Disclosure Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-10-14 No
Reported By
CVE-2025-55692
Windows Error Reporting Service
Exploitation More Likely
Windows Error Reporting Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Denis Faiustov with GMO Cybersecurity by Ierae
Ruslan Sayfiev with GMO Cybersecurity by Ierae
Release 2025-10-01 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2022-31321
The foldername parameter in Bolt 5.1.7 was discovered to have incorrect input validation, allowing attackers to perform directory enumeration or cause a
No latest release note
The foldername parameter in Bolt 5.1.7 was discovered to have incorrect input validation, allowing attackers to perform directory enumeration or cause a Denial of Service (DoS) via a crafted input.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
2025-10-01 - -
Release Month
September 2025
1 CVE | last update 1 day(s) ago
Release 2025-09-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-53809
Windows Local Security Authority Subsystem Service (LSASS)
Exploitation Less Likely
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Release Month
August 2025
1 CVE | last update 1 day(s) ago
Release 2025-08-06 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-5455
Possible
No latest release note
Possible denial of service when passing malformed data in a URL to qDecodeDataUrl
No CVSS vector published
2025-08-06 - -
Release Month
July 2025
1 CVE | last update 1 day(s) ago
Release 2025-07-08 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-47982
Windows Storage VSP Driver
Exploitation Less Likely
Windows Storage VSP Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
OUYANG FEI
Release Month
May 2025
3 CVE | last update 1 day(s) ago
Release 2025-05-13 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-29955
Windows Hyper-V
Exploitation Unlikely
Windows Hyper-V Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-05-13 No
Reported By
MORSE with Microsoft
CVE-2025-32706
Windows Common Log File System Driver
Exploitation Detected
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
2025-05-13 Yes
Reported By
CrowdStrike Advanced Research Team
Benoit Sevens of Google Threat Intelligence Group
CVE-2025-29968
Active Directory Certificate Services (AD CS)
Exploitation Unlikely
Active Directory Certificate Services (AD CS) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-05-13 No
Reported By
Anonymous
Release Month
April 2025
8 CVE | last update 1 day(s) ago
Release 2025-04-30 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-30391
Microsoft Dynamics
N/A
Microsoft Dynamics Information Disclosure Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-30 No
Reported By
Anonymous
Release 2025-04-08 Patch Tuesday Count 7
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-29811
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Anonymous
CVE-2025-24058
Windows DWM Core Library
Exploitation Less Likely
Windows DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
CVE-2025-29821
Microsoft Dynamics Business Central
Exploitation Less Likely
Microsoft Dynamics Business Central Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Nicklas Broberg Larsson with Navigot AB
CVE-2025-24074
Microsoft DWM Core Library
Exploitation Less Likely
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
CVE-2025-24073
Microsoft DWM Core Library
Exploitation Less Likely
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
Microsoft Offensive Research & Security Engineering (MORSE) with Microsoft
CVE-2025-24062
Microsoft DWM Core Library
Exploitation Less Likely
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
CVE-2025-24060
Microsoft DWM Core Library
Exploitation Less Likely
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
YanZiShuang@BigCJTeam of cyberkl
Release Month
March 2025
1 CVE | last update 1 day(s) ago
Release 2025-03-20 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-29814
Microsoft Partner Center
N/A
Microsoft Partner Center Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:H/E:P/RL:O/RC:C
2025-03-20 No
Reported By
Anonymous
Release Month
February 2025
1 CVE | last update 1 day(s) ago
Release 2025-02-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21375
Kernel Streaming WOW Thunk Service Driver
Exploitation Less Likely
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-02-11 No
Reported By
Release Month
January 2025
5 CVE | last update 1 day(s) ago
Release 2025-01-14 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21284
Windows Virtual Trusted Platform Module
Exploitation Less Likely
Windows Virtual Trusted Platform Module Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-01-14 No
CVE-2025-21280
Windows Virtual Trusted Platform Module
Exploitation Less Likely
Windows Virtual Trusted Platform Module Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-01-14 No
CVE-2025-21235
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
CVE-2025-21234
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
CVE-2025-21230
Microsoft Message Queuing (MSMQ)
Exploitation Less Likely
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
Release Month
December 2024
2 CVE | last update 1 day(s) ago
Release 2024-12-10 Patch Tuesday Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-49087
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Information Disclosure Vulnerability
CVSS vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Zhihua Wen with CyberKunLun
CVE-2024-49073
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
CVSS vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Zhihua Wen with CyberKunLun
Release Month
October 2024
6 CVE | last update 1 day(s) ago
Release 2024-10-08 Patch Tuesday Count 6
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-43611
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Nirmala Nawale with Microsoft
CVE-2024-43593
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Nirmala Nawale with Microsoft
CVE-2024-43592
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Nirmala Nawale with Microsoft
CVE-2024-38265
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Dan Reynolds with MSRC Vulnerabilities & Mitigations
Anonymous
CVE-2024-38261
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Nirmala Nawale with Microsoft
Dan Reynolds with MSRC Vulnerabilities & Mitigations
Anonymous
CVE-2024-43561
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Denial of Service Vulnerability
CVSS vector: AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2024-10-08 No
Reported By
Adam Hassan with Microsoft Offensive Research & Security Engineering (MORSE)
Page 1 / 3 | rows 1-50 of 142 Next