Skip to main content

Vendor/product archive

microsoft / windows_server_2019 CVEs

Beta · best-effort

5,078 CVEs tagged to microsoft / windows_server_2019121 Critical, 3,577 High, 1,362 Medium, 18 Low, 0 Unrated.

CVE-2026-50357

Published Jul 14, 2026

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-50352

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-50348

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

CVSS 7.0 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50343

Published Jul 14, 2026

Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
6
Buzz score
35.5

CVE-2026-50339

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-50337

Published Jul 14, 2026

Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50334

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-50324

Published Jul 14, 2026

Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.

CVSS 5.9 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-50321

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50310

Published Jul 14, 2026

Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.

CVSS 4.7 · Medium
evidence mentions
5
Buzz score
32.4
Showing 176-200 of 5,078 CVEsPage 8 of 204