UPDATED SEP 30, 2026
CVE Radar: latest vulnerabilities, exploited CVEs and patches (page 15)
A daily, analyst-curated feed of new and actively exploited CVEs, with severity, exploitation status, affected versions and remediation steps for each.
-
CVE-2026-50343
Windows Install Service local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-50402
Windows NTFS numeric conversion local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-28912
MacOS local privilege escalation via logic issueHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-39875
MacOS permission flaw local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-64747
IOS and iPadOS buffer overflow allows kernel code executionHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-14266 HIGH 7.8
-
CVE-2026-54984
Windows 10 Version 1607 heap buffer overflow local code executionHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-62735
Windows HTTP.sys heap buffer overflow local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-62737
Windows 11 untrusted pointer dereference local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-66804
Windows 10 Version 22H2 cross-device service local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-69328
Windows 10 Version 1607 untrusted search path local privilege escalationHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-49881 HIGH 7.8
-
CVE-2026-43783
MacOS race condition lets low-privileged app gain rootHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-43786
MacOS entitlement check bypass lets local user gain root privilegesHIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-84568
MacOS path traversal remote code execution (root)HIGH 7.8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-87886
Acronis Backup local privilege escalation via insecure permissionsHIGH 7.8
- CISA KEV
- EXPLOITED
- PATCH AVAILABLE
-
CVE-2026-62911
Microsoft Exchange Server authentication bypass (capture-replay)HIGH 8
- PoC PUBLIC
- PATCH AVAILABLE
-
CVE-2026-50338
Azure Spring Apps improper authentication privilege escalationHIGH 8.2
- PoC PUBLIC
- PATCH AVAILABLE
- CVE-2026-53413 HIGH 8.3
-
CVE-2026-85048
Chrome use-after-free in Compositing allows renderer escape and code executionHIGH 8.3
- PoC PUBLIC
- PATCH AVAILABLE
No CVEs on this page match the filters.
20 CVEs · page 15 of 23
About CVE Radar
CVE Radar tracks newly published Common Vulnerabilities and Exposures (CVEs) from NVD, the CISA Known Exploited Vulnerabilities catalog and vendor security advisories. Each entry is reviewed by Diras Labs analysts and includes affected versions, exploitation status, remediation guidance and relevance to organizations in Saudi Arabia and the GCC.