Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 14 April 2026

RSS

761 vulnerabilities published on 14 April 2026

Severity:
Unisys WebPerfect Image Suite exposes sensitive data through unsecured endpoint
CVE-2026-39907
An unpatched endpoint in Unisys WebPerfect Image Suite allows attackers to potentially steal sensitive authentication credentials by forcing the server to connect to other computers. This can put your...
7.0
Unisys WebPerfect Image Suite: Exposes Machine Account Hashes to Remote Attackers
CVE-2026-39906
Versions 3.0.3960.22810 and 3.0.3960.22604 of Unisys WebPerfect Image Suite have a security weakness that allows hackers to access sensitive information about your network. This could potentially let ...
7.0
Libsixel: Animated GIF processing can crash applications
CVE-2026-33018
Certain versions of the libsixel library have a bug that can cause applications to crash when processing animated GIFs. This can happen if the application uses a feature that allows it to access the c...
7.0
Windows Win32K Graphics Component Privilege Escalation Vulnerability
CVE-2026-33104
An attacker on a local network can exploit a weakness in the Windows graphics component to gain elevated access to a system. This could allow the attacker to install malicious software or make unautho...
7.0
Windows WinSock Driver Privilege Escalation Vulnerability
CVE-2026-33100
An attacker with local access can exploit a weakness in the Windows WinSock Driver to gain elevated privileges. This means an unauthorized person with access to your system could potentially gain cont...
7.0
Windows Ancillary Function Driver for WinSock Privilege Escalation
CVE-2026-33099
A security issue exists in the Windows Ancillary Function Driver for WinSock. This issue allows an attacker with authorized access to execute malicious code with elevated privileges on a Windows syste...
7.0
Windows Server Update Service Privilege Elevation Vulnerability
CVE-2026-32224
A flaw in the Windows Server Update Service allows an attacker with authorized access to gain higher-level access to the system. This could allow them to perform actions they shouldn't be able to do. ...
7.0
Microsoft Brokering File System Privilege Escalation
CVE-2026-32219
An attacker with authorized access to Microsoft Brokering File System can potentially elevate their privileges on a local machine. This means they could gain more control over the system than they sho...
7.0
Windows Kernel Privilege Escalation Risk
CVE-2026-32195
A flaw in the Windows Kernel could allow an authorized user to gain elevated access to a computer. This means a malicious user with permission to use the computer could potentially take control of it....
7.0
Windows Local Privilege Escalation in Function Discovery Service
CVE-2026-32150
The Function Discovery Service in Windows has a flaw that allows a local attacker to gain elevated privileges. This means an attacker with limited access to a Windows system could gain more control ov...
7.0
Windows Function Discovery Service Privilege Escalation Vulnerability
CVE-2026-32093
An attacker with authorized access to a Windows system can potentially gain elevated privileges by exploiting a flaw in the Function Discovery Service. This could allow the attacker to access sensitiv...
7.0
Elevated Privileges Possible through Microsoft Function Discovery Service
CVE-2026-32087
An attacker with access to your network can exploit a weakness in the Function Discovery Service on Windows systems, potentially gaining elevated privileges. This means they could access sensitive dat...
7.0
Windows System Privilege Elevation through Malicious Code Execution
CVE-2026-32086
An older version of Windows is vulnerable to a security issue that could allow an attacker to gain more access to the system than they should have. This issue affects a specific component of Windows, ...
7.0
Windows SSDP Service Privilege Elevation Vulnerability
CVE-2026-32083
An attacker with local access to a Windows system can exploit a vulnerability in the SSDP Service, potentially allowing them to gain elevated privileges. This is a concern for organizations that rely ...
7.0
Windows SSDP Service Privilege Elevation Vulnerability
CVE-2026-32082
The Windows SSDP Service has a design flaw that can be exploited by an authorized attacker on the same system, potentially allowing them to gain elevated privileges. This means a malicious user with l...
7.0
Windows WalletService Privilege Elevation Vulnerability
CVE-2026-32080
An attacker with authorized access to Windows WalletService can potentially gain elevated privileges on a local machine. This means the attacker could access sensitive data or make changes to the syst...
7.0
Windows UPnP Device Host Privilege Escalation Vulnerability
CVE-2026-32075
An attacker with access to a Windows system can exploit a flaw in the UPnP Device Host to gain elevated privileges on the local machine. This could allow them to install malicious software or access s...
7.0
Windows Ancillary Function Driver for WinSock Privilege Escalation
CVE-2026-32073
An attacker with authorized access to a Windows system can potentially gain elevated privileges by exploiting a flaw in the Windows Ancillary Function Driver for WinSock. This could allow the attacker...
7.0
Windows Common Log File System Driver Privilege Elevation Flaw
CVE-2026-32070
An attacker with authorized access can exploit a weakness in the Windows Common Log File System Driver, allowing them to gain elevated privileges on a local system. This could potentially lead to unau...
7.0
Windows SSDP Service allows local privilege escalation
CVE-2026-32068
An unauthorized escalation of privileges is possible on Windows systems due to a flaw in the SSDP Service. This means an attacker with authorized access to a system could potentially gain more access ...
7.0
Windows LUAFV Privilege Elevation Vulnerability
CVE-2026-27929
An attacker can take control of your computer while you're using certain Windows features, potentially gaining access to sensitive information or making unauthorized changes. This is a serious issue, ...
7.0
Windows Cloud Files Mini Filter Driver Privilege Escalation
CVE-2026-27926
A flaw in the Windows Cloud Files Mini Filter Driver could allow an authorized user to gain more powerful access to a Windows system. This could happen if an attacker can take advantage of a mistake i...
7.0
Windows Ancillary Function Driver for WinSock Privilege Escalation
CVE-2026-27922
An attacker with local access can exploit a flaw in the Windows Ancillary Function Driver for WinSock to gain elevated privileges, potentially leading to unauthorized access and control over the syste...
7.0
Windows TCP/IP Privilege Escalation through Shared Resource Race Condition
CVE-2026-27921
A Windows vulnerability allows an attacker with local access to potentially gain administrator privileges, giving them more control over your computer. This happens when Windows doesn't properly manag...
7.0
Windows WFP Filter Driver Privilege Elevation Vulnerability
CVE-2026-27917
A software bug in Windows' WFP filter driver can allow an authorized user to gain elevated access to a system. This means an attacker with legitimate access to a computer can potentially gain even mor...
7.0