UPDATED SEP 30, 2026
CVE Radar: latest vulnerabilities, exploited CVEs and patches (page 14)
A daily, analyst-curated feed of new and actively exploited CVEs, with severity, exploitation status, affected versions and remediation steps for each.
- CVE-2026-19598 CRITICAL 9.8
- CVE-2026-15748 CRITICAL 9.8
- CVE-2026-78006 CRITICAL 9.8
- CVE-2026-78159 CRITICAL 9.8
-
CVE-2026-54107
Windows 10 Version 1607 race condition lets local users elevate privilegesHIGH 7
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-43813
IOS and iPadOS code signing bypass allows malicious apps to runHIGH 7.1
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-64725
IOS and iPadOS out-of-bounds write can let a local app crash the deviceHIGH 7.1
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-19650
GitLab GraphQL GET-request mutation execution vulnerabilityHIGH 7.1
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-69451
Windows 10 Version 1607 use-after-free in WMI allows privilege escalationHIGH 7.1
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-19760 HIGH 7.2
- CVE-2026-18978 HIGH 7.2
- CVE-2026-83561 HIGH 7.2
-
CVE-2026-78906
Chrome ANGLE race condition remote code executionHIGH 7.5
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-85045
Chrome V8 race condition allows remote code executionHIGH 7.5
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2015-5287
Automatic Bug Reporting Tool symlink local privilege escalationHIGH 7.8
- CISA KEV
- EXPLOITED
- PoC PUBLIC
- CVE-2026-46680 HIGH 7.8
-
CVE-2026-53362
Linux Kernel IPv6 frag handling local privilege escalationHIGH 7.8
- CISA KEV
- EXPLOITED
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-49176
Windows 10/Server privilege escalation in WalletService (local)HIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-54992
Windows 10 Version 1607 heap-based buffer overflow local code executionHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-58635
Windows 10 Version 1809 Narrator Braille command injection local privilege elevationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
No CVEs on this page match the filters.
20 CVEs · page 14 of 23
About CVE Radar
CVE Radar tracks newly published Common Vulnerabilities and Exposures (CVEs) from NVD, the CISA Known Exploited Vulnerabilities catalog and vendor security advisories. Each entry is reviewed by Diras Labs analysts and includes affected versions, exploitation status, remediation guidance and relevance to organizations in Saudi Arabia and the GCC.