CVE-2026-50441 Microsoft
Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
CVSS 7.8
Update availability Security update available Affected: Windows 10 Version 1607 for 32-bit Systems · Windows 10 Version 1607 for x64-based Systems · +21 more
Updated October 8, 2026
CVE-2026-58528 Microsoft
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
CVSS 6.8
Update availability Security update available Affected: Windows 10 Version 1809 for 32-bit Systems · Windows 10 Version 1809 for x64-based Systems · +17 more
Updated October 8, 2026
CVE-2026-79655 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS 7.8
Update availability Patch status unknown Affected: azl3 sos 4.6.1-2 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94655 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-96292 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-96288 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-87117 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-61373 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94650 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94642 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94658 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94651 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-66859 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94644 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94657 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94633 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-90440 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-96289 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94653 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-86537 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-94639 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-96990 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 thrift 0.24.0-1 on Azure Linux 3.0
Updated October 7, 2026
CVE-2026-66055 Microsoft
Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TJSONProtocol accepts a single JSON string/number exceeding the configured size limit (multi-language)
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 kata-containers 4.1.0.kata0-1 on Azure Linux 3.0 · azl3 kata-containers-cc 3.15.0.aks0-21 on Azure Linux 3.0 · +2 more
Updated October 7, 2026
CVE-2026-94637 Microsoft
Review the authoritative advisory for the vulnerability description and applicability.
CVSS Not supplied
Update availability Patch status unknown Affected: azl3 kata-containers 4.1.0.kata0-1 on Azure Linux 3.0 · azl3 kata-containers-cc 3.15.0.aks0-21 on Azure Linux 3.0 · +2 more
Updated October 7, 2026