Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
4933
Current result set after filter and search.
Exploited Flagged
4189
Rows with a non-empty exploitation signal.
Distinct CWE
162
Unique weakness classes in this view.
Modules
1528
Unique inferred driver or component labels.
Reset
Release Month
March 2026
18 CVE | last update 1 day(s) ago
Release 2026-03-10 Patch Tuesday Count 12
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-25172
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
CVE-2026-25179
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
wisiyeon with JUSTWIN
CVE-2026-23672
Windows Universal Disk Format File System Driver (UDFS)
Exploitation Unlikely
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Microsoft
CVE-2026-23673
Windows Resilient File System (ReFS)
Exploitation Unlikely
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Microsoft
CVE-2026-25175
Windows NTFS
Exploitation Less Likely
Windows NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Microsoft
CVE-2026-25180
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-03-10 No
Reported By
CVE-2026-25174
Windows Extensible File Allocation Table
Exploitation Unlikely
Windows Extensible File Allocation Table Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Microsoft
CVE-2026-24282
Push message Routing Service
Exploitation Less Likely
Push message Routing Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
CVE-2026-25181
GDI+
Exploitation Less Likely
GDI+ Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous working with TrendAI Zero Day Initiative
CVE-2026-25188
Windows Telephony Service
Exploitation Unlikely
Windows Telephony Service Elevation of Privilege Vulnerability
CVSS vector: AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
CVE-2026-24288
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Remote Code Execution Vulnerability
CVSS vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Nicolas Delhaye with Airbus
CVE-2026-24283
Multiple UNC Provider Kernel Driver
Exploitation Less Likely
Multiple UNC Provider Kernel Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
Release 2026-03-08 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26018
CoreDNS Loop Detection
No latest release note
CoreDNS Loop Detection Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2026-03-08 - -
Release 2026-03-05 Other / OOB Count 5
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-23651
Microsoft ACI Confidential Containers
Exploitation Less Likely
Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2026-03-05 No
Reported By
CVE-2026-21536
Microsoft Devices Pricing Program
Exploitation Unlikely
Microsoft Devices Pricing Program Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-05 No
Reported By
CVE-2026-26124
Microsoft ACI Confidential Containers
Exploitation Less Likely
Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2026-03-05 No
Reported By
CVE-2026-26125
Payment Orchestrator Service
N/A
Payment Orchestrator Service Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:P/RL:O/RC:C
2026-03-05 No -
CVE-2026-26122
Microsoft ACI Confidential Containers
Exploitation Less Likely
Microsoft ACI Confidential Containers Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-03-05 No
Reported By
Microsoft Offensive Research & Security Engineering
Release Month
February 2026
32 CVE | last update 1 day(s) ago
Release 2026-02-28 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-28364
In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables
No latest release note
In OCaml before 4.14.3 and 5.x before 5.4.1, a buffer over-read in Marshal deserialization (runtime/intern.c) enables remote code execution through a multi-phase attack chain. The vulnerability stems from missing bounds validation in the readblock() function, which performs unbounded memcpy() operations using attacker-controlled lengths from crafted Marshal data.
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
2026-02-28 - -
Release 2026-02-21 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-2443
Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap
No latest release note
Libsoup: out-of-bounds read in libsoup handle_partial_get() leading to heap information disclosure
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
2026-02-21 - -
Release 2026-02-19 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-21535
Microsoft Teams
Exploitation Unlikely
Microsoft Teams Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N/E:U/RL:O/RC:C
2026-02-19 No
Reported By
Release 2026-02-17 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26119
Windows Admin Center
Exploitation More Likely
Windows Admin Center Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-17 No
Reported By
Release 2026-02-10 Patch Tuesday Count 28
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-21519
Desktop Window Manager
Exploitation Detected
Desktop Window Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 Yes
Reported By
Microsoft Threat Intelligence Center (MSTIC) & Microsoft Security Response Center (MSRC)
CVE-2026-21250
Windows HTTP.sys
Exploitation Unlikely
Windows HTTP.sys Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Anonymous
Matthew Cox with Microsoft
CVE-2026-21232
Windows HTTP.sys
Exploitation Less Likely
Windows HTTP.sys Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Matthew Cox with Microsoft
CVE-2026-20841
Windows Notepad App
Exploitation Less Likely
Windows Notepad App Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21522
Microsoft ACI Confidential Containers
Exploitation Less Likely
Microsoft ACI Confidential Containers Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21517
Windows App for Mac Installer
Exploitation Less Likely
Windows App for Mac Installer Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21222
Windows Kernel
Exploitation Less Likely
Windows Kernel Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Microsoft Offensive Research & Security Engineering
CVE-2026-21525
Windows Remote Access Connection Manager
Exploitation Detected
Windows Remote Access Connection Manager Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2026-02-10 Yes
CVE-2026-21243
Windows Lightweight Directory Access Protocol (LDAP)
Exploitation Unlikely
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
MORSE (Microsoft Offensive Research and Security Engineering)
CVE-2026-21242
Windows Subsystem for Linux
Exploitation Less Likely
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-21235
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Marcin Wiazowski with TrendAI Zero Day Initiative
CVE-2026-21241
Windows Ancillary Function Driver for WinSock
Exploitation More Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21253
Mailslot File System
Exploitation More Likely
Mailslot File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Anonymous
CVE-2026-21251
Cluster Client Failover (CCF)
Exploitation Unlikely
Cluster Client Failover (CCF) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-21240
Windows HTTP.sys
Exploitation Less Likely
Windows HTTP.sys Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Matthew Cox with Microsoft
CVE-2026-21237
Windows Subsystem for Linux
Exploitation Less Likely
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
ChenJian with Sea Security Orca Team
CVE-2026-21231
Windows Kernel
Exploitation More Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
dreamy
CVE-2026-21234
Windows Connected Devices Platform Service
Exploitation Unlikely
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
CVE-2026-23655
Microsoft ACI Confidential Containers
Exploitation Less Likely
Microsoft ACI Confidential Containers Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Microsoft Offensive Research and Security Engineering with Microsoft
CVE-2026-21508
Windows Storage
Exploitation Less Likely
Windows Storage Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21238
Windows Ancillary Function Driver for WinSock
Exploitation More Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
CVE-2026-21533
Windows Remote Desktop Services
Exploitation Detected
Windows Remote Desktop Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
2026-02-10 Yes
CVE-2026-21247
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
cyanbamboo and b2ahex
CVE-2026-21229
Power BI
Exploitation Unlikely
Power BI Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Jack Misiura with The Missing Link
CVE-2026-20846
GDI+
Exploitation Less Likely
GDI+ Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
0ccbbf129444eb66344ccafb92b00df4
xina1i of Anity Lab
CVE-2026-21245
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Pedro Miguel Justo Teixeira
CVE-2026-21239
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
Anonymous
CVE-2026-21248
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-02-10 No
Reported By
cyanbamboo and b2ahex
Prev Page 6 / 99 | rows 251-300 of 4933 Next