CVE-2026-69286 Microsoft
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to disclose information locally.
CVSS 5.5
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-69321 Microsoft
Missing authentication for critical function in Windows Power Dependency Coordinator allows an authorized attacker to perform tampering locally.
CVSS 5.5
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-69406 Microsoft
Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authorized attacker to disclose information locally.
CVSS 5.5
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-69416 Microsoft
Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.
CVSS 5.7
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +14 more
Updated September 15, 2026
CVE-2026-69486 Microsoft
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVSS 8.8
Update availability Patch status unknown Affected: Microsoft Edge (Chromium-based)
Updated September 15, 2026
CVE-2026-69559 Microsoft
Origin validation error in Microsoft Teams for Android allows an authorized attacker to disclose information over a network.
CVSS 5.8
Update availability Patch status unknown Affected: Microsoft Teams for Android
Updated September 15, 2026
CVE-2026-69608 Microsoft
Integer overflow or wraparound in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-69619 Microsoft
Out-of-bounds read in Windows exFAT File System allows an authorized attacker to elevate privileges over a network.
CVSS 8.0
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-69714 Microsoft
Stack-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges over a network.
CVSS 8.0
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 15, 2026
CVE-2026-80075 Microsoft
Heap-based buffer overflow in Windows Work Folders allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +26 more
Updated September 15, 2026
CVE-2026-80097 Microsoft
Improper authentication in Microsoft Authenticator allows an unauthorized attacker to elevate privileges locally.
CVSS 8.6
Update availability Patch status unknown Affected: Microsoft Authenticator for Android
Updated September 15, 2026
CVE-2026-85893 Microsoft
Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges over a network.
CVSS 8.8
Update availability Patch status unknown Affected: Microsoft Edge (Chromium-based)
Updated September 15, 2026
CVE-2026-0799 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 8.7
Update availability Security update available Affected: azl3 libpcap 1.10.6-1 on Azure Linux 3.0 · azl3 nmap 7.95-4 on Azure Linux 3.0
Updated September 15, 2026
CVE-2026-80229 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Security update available Affected: azl3 rust 1.75.0-30 on Azure Linux 3.0
Updated September 15, 2026
CVE-2026-58051 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 6.5
Update availability Patch status unknown Affected: azl3 libssh 0.10.6-8 on Azure Linux 3.0 · azl3 libssh2 1.11.1-3 on Azure Linux 3.0 · +2 more
Updated September 15, 2026
CVE-2026-66034 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Patch status unknown Affected: azl3 libssh2 1.11.1-4 on Azure Linux 3.0 · azl3 rust 1.75.0-30 on Azure Linux 3.0
Updated September 15, 2026
CVE-2026-14680 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 8.8
Update availability Security update available Affected: azl3 postgresql 16.14-1 on Azure Linux 3.0 · azl3 postgresql 16.15-1 on Azure Linux 3.0
Updated September 15, 2026
CVE-2026-62721 Microsoft
Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +28 more
Updated September 14, 2026
CVE-2026-54874 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Security update available Affected: azl3 cloud-hypervisor 51.1.101-2 on Azure Linux 3.0 · azl3 edk2 20240524git3e722403cd16-18 on Azure Linux 3.0 · +6 more
Updated September 13, 2026
CVE-2026-63072 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Security update available Affected: azl3 cloud-hypervisor 51.1.101-2 on Azure Linux 3.0 · azl3 edk2 20240524git3e722403cd16-18 on Azure Linux 3.0 · +7 more
Updated September 13, 2026
CVE-2026-63076 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Security update available Affected: azl3 cloud-hypervisor 51.1.101-2 on Azure Linux 3.0 · azl3 edk2 20240524git3e722403cd16-18 on Azure Linux 3.0 · +7 more
Updated September 13, 2026
CVE-2026-63075 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.5
Update availability Security update available Affected: azl3 cloud-hypervisor 51.1.101-2 on Azure Linux 3.0 · azl3 kata-containers 3.32.0.kata0-2 on Azure Linux 3.0 · +4 more
Updated September 13, 2026
CVE-2026-77176 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 8.1
Update availability Security update available Affected: azl3 kata-containers 3.32.0.kata0-2 on Azure Linux 3.0 · azl3 kata-containers 3.32.0.kata0-5 on Azure Linux 3.0
Updated September 13, 2026
CVE-2026-58050 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.0
Update availability Security update available Affected: azl3 rust 1.96.1-1 on Azure Linux 3.0
Updated September 12, 2026