Skip to main content

Vendor/product archive

microsoft / windows_server_2019 CVEs

Beta · best-effort

5,078 CVEs tagged to microsoft / windows_server_2019121 Critical, 3,577 High, 1,362 Medium, 18 Low, 0 Unrated.

CVE-2026-50294

Published Jul 14, 2026

Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an unauthorized attacker to disclose information locally.

CVSS 6.2 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-49807

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows DirectX allows an unauthorized attacker to disclose information locally.

CVSS 6.2 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-49804

Published Jul 14, 2026

Heap-based buffer overflow in Windows USB Video Driver allows an unauthorized attacker to elevate privileges with a physical attack.

CVSS 6.6 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-49803

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows AppX Deployment Service allows an authorized attacker to elevate privileges…

CVSS 7.0 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-49800

Published Jul 14, 2026

Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-49799

Published Jul 14, 2026

Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to deny service over a network.

CVSS 6.5 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-49794

Published Jul 14, 2026

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

CVSS 4.6 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-49793

Published Jul 14, 2026

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-49792

Published Jul 14, 2026

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-49791

Published Jul 14, 2026

Improper link resolution before file access ('link following') in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

CVSS 7.1 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-49788

Published Jul 14, 2026

Allocation of resources without limits or throttling in HTTP/2 allows an unauthorized attacker to deny service over a network.

CVSS 7.5 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-49787

Published Jul 14, 2026

Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.

CVSS 7.5 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-49784

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges loca…

CVSS 7.0 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-49783

Published Jul 14, 2026

Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1
Showing 251-275 of 5,078 CVEsPage 11 of 204