Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
443
Current result set after filter and search.
Exploited Flagged
399
Rows with a non-empty exploitation signal.
Distinct CWE
8
Unique weakness classes in this view.
Modules
185
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-416: Use After Free Clear filters
Release Month
April 2026
19 CVE | last update 1 day(s) ago
Release 2026-04-14 Patch Tuesday Count 18
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-32152
Desktop Window Manager
Exploitation More Likely
Desktop Window Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Joe Desimone with Elastic Security
CVE-2026-27924
Desktop Window Manager
Exploitation Less Likely
Desktop Window Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Varun Goel
CVE-2026-27923
Desktop Window Manager
Exploitation Less Likely
Desktop Window Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Varun Goel
CVE-2026-32163
Windows User Interface Core
Exploitation Unlikely
Windows User Interface Core Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-27911
Windows User Interface Core
Exploitation Unlikely
Windows User Interface Core Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-27921
Windows TDI Translation Driver (tdx.sys)
Exploitation More Likely
Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
CVE-2026-32090
Windows Speech Brokered Api
Exploitation Unlikely
Windows Speech Brokered Api Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-26174
Windows Server Update Service (WSUS)
Exploitation Less Likely
Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-32159
Windows Push Notifications
Exploitation Less Likely
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Yun Cong with Microsoft
CVE-2026-32158
Windows Push Notifications
Exploitation Unlikely
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Yun Cong with Microsoft
CVE-2026-26172
Windows Push Notifications
Exploitation Less Likely
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
CVE-2026-26167
Windows Push Notifications
Exploitation Less Likely
Windows Push Notifications Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
CVE-2026-27927
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-27926
Windows Cloud Files Mini Filter Driver
Exploitation Less Likely
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Joe Desimone with Elastic Security
CVE-2026-26173
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
CVE-2026-26168
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Angelboy (@scwuaptx) with DEVCORE
Thanatos Tian & @2st___ of Diffract & Zhiniang Peng with HUST
Frederica with Tencent Xuanwu Lab using the Atuin Automated Vulnerability Discovery System
CVE-2026-33104
Win32k
Exploitation Less Likely
Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Marcin Wiazowski working with TrendAI Zero Day Initiative
CVE-2026-32091
Microsoft Brokering File System
Exploitation Less Likely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Anonymous
Release 2026-04-12 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-34757
LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap
No latest release note
LIBPNG has a yse-after-free in png_set_PLTE, png_set_tRNS and png_set_hIST leading to corrupted chunk data and potential heap information disclosure
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
2026-04-12 - -
Release Month
March 2026
14 CVE | last update 1 day(s) ago
Release 2026-03-27 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-33526
Squid vulnerable to
No latest release note
Squid vulnerable to Denial of Service in ICP Request handling
No CVSS vector published
2026-03-27 - -
Release 2026-03-10 Patch Tuesday Count 13
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26132
Windows Kernel
Exploitation More Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No -
CVE-2026-24289
Windows Kernel
Exploitation More Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous working with TrendAI Zero Day Initiative
CVE-2026-25170
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
hazard
CVE-2026-25189
Windows DWM Core Library
Exploitation Less Likely
Windows DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Varun Goel
CVE-2026-24292
Windows Connected Devices Platform Service
Exploitation Less Likely
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
CVE-2026-25171
Windows Authentication
Exploitation Less Likely
Windows Authentication Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
CVE-2026-25178
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
wisiyeon with JUSTWIN
CVE-2026-24285
Win32k
Exploitation Less Likely
Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Marcin Wiazowski working with TrendAI Zero Day Initiative
CVE-2026-23669
RPC Runtime Library
Exploitation Less Likely
RPC Runtime Library Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
CVE-2026-25167
Microsoft Brokering File System
Exploitation Less Likely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
hazard
CVE-2026-23667
Broadcast DVR
Exploitation Unlikely
Broadcast DVR Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
CVE-2026-24295
Windows Device Association Service
Exploitation Less Likely
Windows Device Association Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No -
CVE-2026-23671
Windows Bluetooth RFCOM Protocol Driver
Exploitation Less Likely
Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
hazard
Release Month
February 2026
6 CVE | last update 1 day(s) ago
Release 2026-02-10 Patch Tuesday Count 6
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-21242
Windows Subsystem for Linux
Exploitation Less Likely
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-21235
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Marcin Wiazowski with TrendAI Zero Day Initiative
CVE-2026-21241
Windows Ancillary Function Driver for WinSock
Exploitation More Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21253
Mailslot File System
Exploitation More Likely
Mailslot File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Anonymous
CVE-2026-21251
Cluster Client Failover (CCF)
Exploitation Unlikely
Cluster Client Failover (CCF) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-21237
Windows Subsystem for Linux
Exploitation Less Likely
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
Release Month
January 2026
11 CVE | last update 1 day(s) ago
Release 2026-01-13 Patch Tuesday Count 11
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-20870
Windows Win32 Kernel Subsystem
Exploitation Less Likely
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
CVE-2026-20924
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20923
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20877
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20865
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20858
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:T/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20854
Windows Local Security Authority Subsystem Service (LSASS)
Exploitation Less Likely
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Howard McGreehan with MSRC V&M
CVE-2026-20859
Windows Kernel-Mode Driver
Exploitation Less Likely
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
hazard
CVE-2026-20822
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20844
Windows Clipboard Server
Exploitation Less Likely
Windows Clipboard Server Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20920
Win32k
Exploitation Unlikely
Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Varun Goel
Prev Page 2 / 9 | rows 51-100 of 443 Next