VulnSea

windows_server_2019_server_core_installation vulnerabilities

CVEs whose affected-version data names the windows_server_2019_server_core_installation package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

636 CVEsRSS

CVE-2026-50370High· 8.8
2mo ago

DHCP Server Service Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.50%via CVEORG
CVE-2026-50363High· 7.8
2mo ago

Windows Push Notifications Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50343High· 7.8PoC
2mo ago

Microsoft Install Service Elevation of Privilege Vulnerability

Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

▾ MidnightMicrosoft · Windows 10 Version 1809EPSS 0.30%via CVEORG
CVE-2026-50341Medium· 5.5
2mo ago

Windows NTFS Information Disclosure Vulnerability

Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.40%via CVEORG
CVE-2026-50337High· 7.8
2mo ago

Windows Notification Elevation of Privilege Vulnerability

Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50331High· 7.8
2mo ago

Windows Application Model Core API Elevation of Privilege Vulnerability

Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50329High· 7.8
2mo ago

Microsoft DWM Core Library Elevation of Privilege Vulnerability

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.33%via CVEORG
CVE-2026-50328High· 7.5
2mo ago

Windows Server Update Service (WSUS) Tampering Vulnerability

Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 1.2%via CVEORG
CVE-2026-50313High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.47%via CVEORG
CVE-2026-50309High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50307High· 7.0
2mo ago

Windows TCP/IP Elevation of Privilege Vulnerability

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.28%via CVEORG
CVE-2026-50306High· 7.8
2mo ago

Windows TCP/IP Elevation of Privilege Vulnerability

Use after free in Windows TCP/IP allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50430Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.48%via CVEORG
CVE-2026-50390High· 7.0
2mo ago

Windows Kernel Elevation of Privilege Vulnerability

Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.28%via CVEORG
CVE-2026-50377Medium· 5.5
2mo ago

Windows Kernel Elevation of Privilege Vulnerability

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.41%via CVEORG
CVE-2026-50357High· 7.8
2mo ago

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.33%via CVEORG
CVE-2026-50348High· 7.0
2mo ago

Windows Runtime Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.36%via CVEORG
CVE-2026-50347High· 7.8
2mo ago

Windows Data.dll Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.47%via CVEORG
CVE-2026-50339Medium· 5.5
2mo ago

Windows Push Notification Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Push Notifications allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.48%via CVEORG
CVE-2026-50335High· 7.8
2mo ago

Windows Operating Systems Elevation of Privilege Vulnerability

Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.30%via CVEORG
CVE-2026-50330High· 7.5
2mo ago

Windows Remote Desktop Client Elevation of Privilege Vulnerability

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 1.3%via CVEORG
CVE-2026-50312Medium· 4.7
2mo ago

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

▾ SunlitMicrosoft · Windows 10 Version 1607EPSS 0.35%via CVEORG
CVE-2026-50310Medium· 4.7
2mo ago

Windows Human Interface Device Information Disclosure Vulnerability

Integer overflow or wraparound in Windows Devices Human Interface allows an authorized attacker to disclose information locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.31%via CVEORG
CVE-2026-50460High· 8.1
2mo ago

Windows Runtime Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.54%via CVEORG
CVE-2026-50452High· 7.0
2mo ago

Windows Runtime Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.36%via CVEORG
CVE-2026-50449High· 7.0
2mo ago

Windows Runtime Elevation of Privilege Vulnerability

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.26%via CVEORG
CVE-2026-50410High· 7.0
2mo ago

Windows Runtime Elevation of Privilege Vulnerability

Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.26%via CVEORG
CVE-2026-50388High· 7.8
2mo ago

Windows NTFS Remote Code Execution Vulnerability

Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.

▾ TwilightMicrosoft · Windows 10 Version 1607EPSS 0.47%via CVEORG
CVE-2026-50375Medium· 6.3
2mo ago

DirectX Graphics Kernel Elevation of Privilege Vulnerability

Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.

▾ SunlitMicrosoft · Windows 10 Version 1809EPSS 0.29%via CVEORG
CVE-2026-50373High· 7.8
2mo ago

Windows Search Service Elevation of Privilege Vulnerability

Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

▾ TwilightMicrosoft · Windows 10 Version 1809EPSS 0.30%via CVEORG
windows_server_2019_server_core_installation vulnerabilities (CVEs) — page 10 · VulnSea