ARCHIVE
CVEs published in September 2026 (page 15)
Vulnerabilities added to CVE Radar in September 2026, newest first.
-
CVE-2026-50343
Windows Install Service local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-50402
Windows NTFS numeric conversion local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-28912
MacOS local privilege escalation via logic issueHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-39875
MacOS permission flaw local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-64747
IOS and iPadOS buffer overflow allows kernel code executionHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-14266 HIGH 7.8
-
CVE-2026-54984
Windows 10 Version 1607 heap buffer overflow local code executionHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-62735
Windows HTTP.sys heap buffer overflow local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-62737
Windows 11 untrusted pointer dereference local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-66804
Windows 10 Version 22H2 cross-device service local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-69328
Windows 10 Version 1607 untrusted search path local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-49881 HIGH 7.8
-
CVE-2026-43783
MacOS race condition lets low-privileged app gain rootHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-43786
MacOS entitlement check bypass lets local user gain root privilegesHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-84568
MacOS path traversal remote code execution (root)HIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-87886
Acronis Backup local privilege escalation via insecure permissionsHIGH 7.8
- CISA KEV
- EXPLOITED
- PATCH AVAILABLE
-
CVE-2026-62911
Microsoft Exchange Server authentication bypass (capture-replay)HIGH 8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-50338
Azure Spring Apps improper authentication privilege escalationHIGH 8.2
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-53413 HIGH 8.3
-
CVE-2026-85048
Chrome use-after-free in Compositing allows renderer escape and code executionHIGH 8.3
- PoC PUBLIC
- PATCH AVAILABLE
No CVEs on this page match the filters.
20 CVEs · page 15 of 23