Skip to main content

Vendor/product archive

microsoft / windows_server_2022 CVEs

Beta · best-effort

3,389 CVEs tagged to microsoft / windows_server_202282 Critical, 2,413 High, 882 Medium, 12 Low, 0 Unrated.

CVE-2026-58531

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an authorized attacker to elevate privileges over a network.

CVSS 7.5 · High
evidence mentions
6
Buzz score
35.5

CVE-2026-58530

Published Jul 14, 2026

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-58528

Published Jul 14, 2026

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

CVSS 6.8 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-57096

Published Jul 14, 2026

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-57095

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows Win32K allows an unauthorized attacker to elevate privileges locally.

CVSS 6.2 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-57094

Published Jul 14, 2026

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

CVSS 8.8 · High
evidence mentions
7
Buzz score
38.3

CVE-2026-57091

Published Jul 14, 2026

Stack-based buffer overflow in Windows File History Service allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
6
Buzz score
35.5

CVE-2026-57089

Published Jul 14, 2026

Use after free in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to execute code over a network.

CVSS 7.5 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-56649

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Network File System allows an unauthorized attacker to execute code over a n…

CVSS 5.9 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-56648

Published Jul 14, 2026

Time-of-check time-of-use (toctou) race condition in Windows Network File System allows an authorized attacker to elevate privileges over a network.

CVSS 7.5 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-56647

Published Jul 14, 2026

Integer overflow or wraparound in Windows Remote Access Service Infrastructure allows an authorized attacker to elevate privileges over a network.

CVSS 8.8 · High
evidence mentions
5
Buzz score
32.4
Showing 226-250 of 3,389 CVEsPage 10 of 136