Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
443
Current result set after filter and search.
Exploited Flagged
399
Rows with a non-empty exploitation signal.
Distinct CWE
8
Unique weakness classes in this view.
Modules
185
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-416: Use After Free Clear filters
Release Month
January 2026
10 CVE | last update 1 day(s) ago
Release 2026-01-13 Patch Tuesday Count 10
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-20842
Microsoft DWM Core Library
Exploitation Less Likely
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Varun Goel
CVE-2026-21219
Inbox COM Objects (Global Memory)
Exploitation Unlikely
Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2026-20871
Desktop Window Manager
Exploitation More Likely
Desktop Window Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous working with Trend Zero Day Initiative
CVE-2026-20918
Windows Management Services
Exploitation Unlikely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
CVE-2026-20874
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20873
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20867
Windows Management Services
Exploitation Unlikely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-20861
Windows Management Services
Exploitation Less Likely
Windows Management Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Anonymous
CVE-2026-21221
Capability Access Management Service (camsvc)
Exploitation Unlikely
Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
CVE-2026-20830
Capability Access Management Service (camsvc)
Exploitation Unlikely
Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-01-13 No
Reported By
Release Month
December 2025
5 CVE | last update 1 day(s) ago
Release 2025-12-09 Patch Tuesday Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-62472
Windows Remote Access Connection Manager
Exploitation More Likely
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
anonymous
CVE-2025-62565
Windows File Explorer
Exploitation Less Likely
Windows File Explorer Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
Anonymous
CVE-2025-62221
Windows Cloud Files Mini Filter Driver
Exploitation Detected
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 Yes
Reported By
Microsoft Threat Intelligence Center (MSTIC) & Microsoft Security Response Center (MSRC)
CVE-2025-62569
Microsoft Brokering File System
Exploitation Less Likely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
hazard
CVE-2025-62573
DirectX Graphics Kernel
Exploitation Less Likely
DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
cyanbamboo and b2ahex
Release Month
November 2025
7 CVE | last update 1 day(s) ago
Release 2025-11-27 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2018-19827
In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a
No latest release note
In LibSass 3.5.5, a use-after-free vulnerability exists in the SharedPtr class in SharedPtr.cpp (or SharedPtr.hpp) that may cause a denial of service (application crash) or possibly have unspecified other impact.
No CVSS vector published
2025-11-27 - -
Release 2025-11-11 Patch Tuesday Count 6
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-60717
Windows Broadcast DVR User Service
Exploitation Less Likely
Windows Broadcast DVR User Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
CVE-2025-59515
Windows Broadcast DVR User Service
Exploitation Less Likely
Windows Broadcast DVR User Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-62213
Windows Ancillary Function Driver for WinSock
Exploitation More Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
CVE-2025-60707
Multimedia Class Scheduler Service (MMCSS) Driver
Exploitation Less Likely
Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
hazard
CVE-2025-60716
DirectX Graphics Kernel
Exploitation Less Likely
DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
cyanbamboo and b2ahex
CVE-2025-60723
DirectX Graphics Kernel
Exploitation Less Likely
DirectX Graphics Kernel Denial of Service Vulnerability
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-11-11 No
Reported By
cyanbamboo and b2ahex
Release Month
October 2025
28 CVE | last update 1 day(s) ago
Release 2025-10-14 Patch Tuesday Count 28
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-53768
Xbox IStorageService
Exploitation Unlikely
Xbox IStorageService Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
R4nger with CyberKunLun & Zhiniang Peng with HUST
CVE-2025-59210
Windows Resilient File System (ReFS) Deduplication Service
Exploitation Unlikely
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Hwiwon Lee (hwiwonl), SEC-agent team
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
CVE-2025-59206
Windows Resilient File System (ReFS) Deduplication Service
Exploitation Unlikely
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Taewoo (Tae_ω02)
CVE-2025-59202
Windows Remote Desktop Services
Exploitation Less Likely
Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
CVE-2025-55691
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55690
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55689
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55688
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55686
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55685
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55684
Windows PrintWorkflowUserSvc
Exploitation Less Likely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Jongseong Kim (nevul37), SEC-agent team with ENKI WhiteHat
Hwiwon Lee (hwiwonl), SEC-agent team
CVE-2025-55331
Windows PrintWorkflowUserSvc
Exploitation Unlikely
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Taewoo (Tae_ω02)
CVE-2025-55335
Windows NTFS
Exploitation Less Likely
Windows NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Bruno Botelho
CVE-2025-55693
Windows Kernel
Exploitation More Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Anonymous
CVE-2025-53150
Windows Digital Media
Exploitation Less Likely
Windows Digital Media Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
CVE-2025-50175
Windows Digital Media
Exploitation Unlikely
Windows Digital Media Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
vipinkumar
CVE-2025-50174
Windows Device Association Broker Service
Exploitation Less Likely
Windows Device Association Broker Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
CVE-2025-55326
Windows Connected Devices Platform Service (Cdpsvc)
Exploitation Less Likely
Windows Connected Devices Platform Service (Cdpsvc) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
CVE-2025-58719
Windows Connected Devices Platform Service
Exploitation Unlikely
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-10-14 No
CVE-2025-59290
Windows Bluetooth Service
Exploitation Less Likely
Windows Bluetooth Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2025-58728
Windows Bluetooth Service
Exploitation Less Likely
Windows Bluetooth Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2025-58737
Remote Desktop Protocol
Exploitation Unlikely
Remote Desktop Protocol Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2025-58718
Remote Desktop Client
Exploitation Less Likely
Remote Desktop Client Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
CVE-2025-49708
Microsoft Graphics Component
Exploitation Less Likely
Microsoft Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
cyanbamboo and b2ahex
CVE-2025-59189
Microsoft Brokering File System
Exploitation Unlikely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
hazard
CVE-2025-48004
Microsoft Brokering File System
Exploitation More Likely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
hazard
Bryan Gonzalez, Ocelot Team @ Metabase Q
CVE-2025-58738
Inbox COM Objects (Global Memory)
Exploitation Unlikely
Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2025-58736
Inbox COM Objects (Global Memory)
Exploitation Unlikely
Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
Prev Page 3 / 9 | rows 101-150 of 443 Next