Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 14 April 2026

RSS

761 vulnerabilities published on 14 April 2026

Severity:
Elevated Privileges Possible with Desktop Window Manager Exploit
CVE-2026-32154
An attacker with authorized access to a system can potentially exploit a flaw in the Desktop Window Manager to gain elevated privileges on the local machine. This could allow the attacker to perform a...
7.8
Unauthorized Privilege Elevation in Windows Speech
CVE-2026-32153
A bug in Windows Speech can allow an authorized user to gain more access to a system than they should have. This could potentially allow them to make changes to system settings or access sensitive dat...
7.8
Windows Desktop Manager Can Be Used to Gain Elevated Privileges
CVE-2026-32152
An attacker with permission to run programs on a Windows system can exploit a vulnerability in the Desktop Window Manager to gain elevated privileges, potentially allowing them to access sensitive dat...
7.8
Windows Speech Brokered API Privilege Elevation Vulnerability
CVE-2026-32090
An attacker with authorized access can exploit a flaw in the Windows Speech Brokered API to gain elevated privileges on a local system. This could lead to unauthorized access to sensitive data or syst...
7.8
Windows Speech Brokered API Privilege Escalation Vulnerability
CVE-2026-32089
An unauthorized escalation of privileges can occur when using the Windows Speech Brokered API. An attacker with valid credentials can potentially gain higher-level access to a system. To mitigate this...
7.8
Windows Projected File System Privilege Escalation Risk
CVE-2026-32078
An attacker with authorized access can exploit a weakness in Windows Projected File System to gain elevated privileges on a local machine. This could allow the attacker to perform actions normally res...
7.8
Windows UPnP Device Host Privilege Elevation Vulnerability
CVE-2026-32077
A vulnerability in Windows Universal Plug and Play (UPnP) Device Host could allow an authorized user to gain higher-level access to a computer. This could potentially allow the attacker to perform act...
7.8
Windows Storage Spaces can allow unauthorized access to sensitive data
CVE-2026-32076
If used by a malicious user, Windows Storage Spaces can allow an attacker to access sensitive data they shouldn't be able to see. This is a concern if you're using Storage Spaces on your Windows serve...
7.8
Windows Projected File System Privilege Escalation Risk
CVE-2026-32074
An attacker with authorized access to a Windows system can potentially exploit a weakness in the Projected File System to gain elevated privileges on the local machine. This could allow the attacker t...
7.8
Windows Projected File System Privilege Elevation Vulnerability
CVE-2026-32069
An attacker with authorized access to Windows Projected File System can potentially exploit a memory corruption issue to gain elevated local privileges, allowing them to access sensitive data or perfo...
7.8
Windows Projected File System Privilege Elevation Local
CVE-2026-27927
An attacker with authorized access can exploit a security flaw in Windows Projected File System, allowing them to gain elevated privileges on their local device. This can lead to unauthorized access a...
7.8
Windows Desktop Window Manager Local Privilege Escalation
CVE-2026-27924
A flaw in Windows Desktop Window Manager could allow an authorized user to gain elevated access to a system, potentially allowing them to access sensitive data or take control of the system. This issu...
7.8
Desktop Window Manager Privilege Escalation Vulnerability
CVE-2026-27923
An authorized attacker can exploit a weakness in the Desktop Window Manager on Windows systems, allowing them to gain higher-level access and potentially take control of the entire system. This is a c...
7.8
Windows UPnP Device Host Privilege Elevation Vulnerability
CVE-2026-27920
The Windows Universal Plug and Play (UPnP) feature contains a vulnerability that can allow an authorized attacker to gain elevated privileges on a local machine. This means an attacker could potential...
7.8
Windows UPnP Device Host Privilege Escalation Vulnerability
CVE-2026-27919
An attacker with local access to a Windows system can use a specific sequence of actions to gain elevated privileges on the system. This could potentially allow the attacker to install malicious softw...
7.8
Windows Shell Privilege Elevation Vulnerability
CVE-2026-27918
A flaw in the Windows Shell's handling of certain tasks can allow an authorized user to gain more access to the system than they should have. This issue affects Windows systems and could be exploited ...
7.8
Windows UPnP Device Host Privilege Escalation Vulnerability
CVE-2026-27916
A flaw in the Windows UPnP Device Host can allow an authorized user to gain elevated permissions on a Windows system. This could potentially allow the attacker to access or modify sensitive system set...
7.8
Windows UPnP Device Host Privilege Elevation Vulnerability
CVE-2026-27915
An attacker with authorized access to a Windows system can exploit a vulnerability in the Universal Plug and Play (UPnP) Device Host service, allowing them to gain elevated privileges on the system. T...
7.8
Microsoft Management Console Privilege Elevation Local Access Risk
CVE-2026-27914
An authorized user with access to the Microsoft Management Console can potentially gain higher-level permissions on their local system, allowing them to make unauthorized changes. This could lead to d...
7.8
Windows User Interface Core Privilege Escalation Risk
CVE-2026-27911
An attacker with authorized access to a Windows system can potentially exploit a flaw in the Windows User Interface Core to gain elevated privileges, which could allow them to make unauthorized change...
7.8
Windows Installer Privilege Elevation Vulnerability
CVE-2026-27910
A flaw in Windows Installer allows a malicious user to gain higher privileges on the local machine, potentially allowing them to access sensitive data or make unauthorized changes. This could happen o...
7.8
Windows Search Component Privilege Elevation Vulnerability
CVE-2026-27909
The Windows Search Component has a vulnerability that can allow an authorized user to gain elevated privileges on a local machine. This means an attacker with legitimate access to the system could pot...
7.8
Windows Storage Spaces Privilege Escalation via Integer Underflow
CVE-2026-27907
A flaw in Windows Storage Spaces Controller can allow an authorized user on the same computer to gain elevated privileges. This could potentially allow them to access sensitive data or make system cha...
7.8
Windows Projected File System Privilege Elevation Risk
CVE-2026-26184
An attacker with authorized access to Windows Projected File System can potentially exploit a vulnerability to gain elevated privileges on a local system. This could allow them to perform actions they...
7.8
Windows RPC API Privilege Escalation Vulnerability
CVE-2026-26183
An attacker with local access can potentially gain elevated privileges on a Windows system, allowing them to perform actions they shouldn't be able to do. This vulnerability affects various Windows ve...
7.8