Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
127
Current result set after filter and search.
Exploited Flagged
107
Rows with a non-empty exploitation signal.
Distinct CWE
8
Unique weakness classes in this view.
Modules
81
Unique inferred driver or component labels.
Reset
Active filters CWE CWE-190: Integer Overflow or Wraparound Clear filters
Release Month
May 2026
4 CVE | last update 1 day(s) ago
Release 2026-05-12 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-34333
Windows Win32k
Exploitation Less Likely
Windows Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Reported By
wenqunwang with China Telecom Research Institute
CVE-2026-35415
Windows Storage Spaces Controller
Exploitation Less Likely
Windows Storage Spaces Controller Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Reported By
Jan Vojtesek with SentinelOne
CVE-2026-42896
Windows DWM Core Library
Exploitation Less Likely
Windows DWM Core Library Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Reported By
CVE-2026-34330
Win32k
Exploitation Unlikely
Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-05-12 No
Reported By
wenqunwang with China Telecom Research Institute
Release Month
April 2026
1 CVE | last update 1 day(s) ago
Release 2026-04-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26178
Windows Advanced Rasterization Platform
Exploitation Less Likely
Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-04-14 No
Reported By
Dongzhuo Zhao working with ADLab of Venustech
Release Month
March 2026
4 CVE | last update 1 day(s) ago
Release 2026-03-27 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-4775
Libtiff: libtiff: arbitrary code execution or
No latest release note
Libtiff: libtiff: arbitrary code execution or denial of service via signed integer overflow in tiff file processing
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
2026-03-27 - -
Release 2026-03-10 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2026-26111
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Microsoft
CVE-2026-25173
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
CVE-2026-25172
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2026-03-10 No
Reported By
Anonymous
Release Month
December 2025
1 CVE | last update 1 day(s) ago
Release 2025-12-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-62467
Windows Projected File System
Exploitation Less Likely
Windows Projected File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-12-09 No
Reported By
ChenJian with Sea Security Orca Team
Release Month
October 2025
3 CVE | last update 1 day(s) ago
Release 2025-10-14 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-58715
Windows Speech Runtime
Exploitation Unlikely
Windows Speech Runtime Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-10-14 No
Reported By
Anonymous
Release 2025-10-01 Other / OOB Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2017-9120
PHP 7.x through 7.1.5 allows remote attackers to cause a
No latest release note
PHP 7.x through 7.1.5 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a long string because of an Integer overflow in mysqli_real_escape_string.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
2025-10-01 - -
CVE-2017-6839
Integer overflow in modules/MSADPCM.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a
No latest release note
Integer overflow in modules/MSADPCM.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
2025-10-01 - -
Release Month
September 2025
5 CVE | last update 1 day(s) ago
Release 2025-09-09 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-54106
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Anonymous
CVE-2025-54110
Windows Kernel
Exploitation More Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-09-09 No
Reported By
CVE-2025-54091
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-09-09 No
CVE-2025-54895
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism
Exploitation Less Likely
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-09-09 No
Reported By
Release 2025-09-04 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-48964
ping in iputils before 20250602 allows a
No latest release note
ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP Echo Reply packet, because a zero timestamp can lead to large intermediate values that have an integer overflow when squared during statistics calculations. NOTE: this issue exists because of an incomplete fix for CVE-2025-47268 (that fix was only about timestamp calculations, and it did not account for a specific scenario where the original timestamp in the ICMP payload is zero).
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
2025-09-04 - -
Release Month
August 2025
2 CVE | last update 1 day(s) ago
Release 2025-08-14 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-7458
SQLite integer overflow in key info allocation may lead to
No latest release note
SQLite integer overflow in key info allocation may lead to information disclosure.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
2025-08-14 - -
Release 2025-08-12 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-50166
Windows Distributed Transaction Coordinator (MSDTC)
Exploitation Less Likely
Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
Release Month
July 2025
8 CVE | last update 1 day(s) ago
Release 2025-07-11 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-47712
Nbd: nbdkit: integer overflow triggers an assertion resulting in
No latest release note
Nbd: nbdkit: integer overflow triggers an assertion resulting in denial of service
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
2025-07-11 - -
Release 2025-07-08 Patch Tuesday Count 7
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-48002
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Information Disclosure Vulnerability
CVSS vector: AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Anonymous
CVE-2025-49742
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Marcin Wiazowski working with Trend Zero Day Initiative
CVE-2025-49689
Microsoft Virtual Hard Disk
Exploitation Less Likely
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-49683
Microsoft Virtual Hard Disk
Exploitation Unlikely
Microsoft Virtual Hard Disk Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-48816
HID Class Driver
Exploitation Unlikely
HID Class Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Anonymous
CVE-2025-47998
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Anonymous
CVE-2025-47987
Credential Security Support Provider Protocol (CredSSP)
Exploitation More Likely
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Release Month
June 2025
1 CVE | last update 1 day(s) ago
Release 2025-06-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-32718
Windows SMB Client
Exploitation Unlikely
Windows SMB Client Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-06-10 No
Reported By
Genghis Karimov with Microsoft High-Availability Storage Group
Release Month
April 2025
1 CVE | last update 1 day(s) ago
Release 2025-04-08 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-26639
Windows USB Print Driver
Exploitation Less Likely
Windows USB Print Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-04-08 No
Reported By
Release Month
March 2025
1 CVE | last update 1 day(s) ago
Release 2025-03-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-24985
Windows Fast FAT File System Driver
Exploitation Detected
Windows Fast FAT File System Driver Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
2025-03-11 Yes
Reported By
Anonymous
Release Month
February 2025
1 CVE | last update 1 day(s) ago
Release 2025-02-11 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21369
Microsoft Digest Authentication
Exploitation Less Likely
Microsoft Digest Authentication Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-02-11 No
Reported By
Release Month
January 2025
4 CVE | last update 1 day(s) ago
Release 2025-01-14 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-21244
Windows Telephony Service
Exploitation Less Likely
Windows Telephony Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
Anonymous
CVE-2025-21243
Windows Telephony Service
Exploitation Less Likely
Windows Telephony Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
Anonymous
CVE-2025-21382
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No -
CVE-2025-21338
GDI+
Exploitation Less Likely
GDI+ Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-01-14 No
Reported By
Li Shuang and willJ with vulnerability research institute
Release Month
December 2024
4 CVE | last update 1 day(s) ago
Release 2024-12-10 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-49089
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Anonymous
CVE-2024-49085
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Anonymous
CVE-2024-49078
Windows Mobile Broadband Driver
Exploitation Less Likely
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
CVSS vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Zhihua Wen with CyberKunLun
CVE-2024-49112
Windows Lightweight Directory Access Protocol (LDAP)
Exploitation Less Likely
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-12-10 No
Reported By
Release Month
November 2024
4 CVE | last update 1 day(s) ago
Release 2024-11-12 Patch Tuesday Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-43635
Windows Telephony Service
Exploitation Less Likely
Windows Telephony Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-11-12 No
Reported By
Anonymous
CVE-2024-43628
Windows Telephony Service
Exploitation Less Likely
Windows Telephony Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-11-12 No
Reported By
Anonymous
CVE-2024-43641
Windows Registry
Exploitation Less Likely
Windows Registry Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-11-12 No
Reported By
Mateusz Jurczyk with Google Project Zero
CVE-2024-43623
Windows NT OS Kernel
Exploitation More Likely
Windows NT OS Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-11-12 No
Reported By
Anonymous
Release Month
September 2024
2 CVE | last update 1 day(s) ago
Release 2024-09-11 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2022-33065
Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header in src/mat4.c in Libsndfile allows an attacker to cause
No latest release note
Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header in src/mat4.c in Libsndfile allows an attacker to cause Denial of Service or other unspecified impacts.
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
2024-09-11 - -
Release 2024-09-10 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-43495
Windows libarchive
Exploitation Less Likely
Windows libarchive Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-09-10 No
Reported By
wh1tc & Zhiniang Peng
HAO LI with Venustech ADLab
Release Month
August 2024
3 CVE | last update 1 day(s) ago
Release 2024-08-13 Patch Tuesday Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38128
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Anonymous
CVE-2024-38215
Windows Cloud Files Mini Filter Driver
Exploitation Less Likely
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Ezrakiez with MatrixCup
CVE-2024-38144
Kernel Streaming WOW Thunk Service Driver
Exploitation More Likely
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-08-13 No
Reported By
Angelboy (@scwuaptx) with DEVCORE
anonymous with MatrixCup
JeongOh Kyea of Theori working with SSD Secure Disclosure
Release Month
July 2024
1 CVE | last update 1 day(s) ago
Release 2024-07-09 Patch Tuesday Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-38080
Windows Hyper-V
Exploitation Detected
Windows Hyper-V Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2024-07-09 Yes
Reported By
Anonymous
Page 1 / 3 | rows 1-50 of 127 Next