VENDOR

Microsoft vulnerabilities: CVEs, exploitation and patches (page 2)

Every Microsoft CVE reviewed by Diras Labs analysts, newest first, with exploitation status and fixes.

  1. CVE-2026-69408
    Windows 10 Version 1607 integer overflow in Media Foundation allows remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  2. CVE-2026-69431
    Windows Telnet Client heap-based buffer overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  3. CVE-2026-69463
    Windows NTFS heap overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  4. CVE-2026-69491
    Windows 10 Version 1607 heap buffer overflow in DirectMusic allows remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  5. CVE-2026-69493
    Windows 10 Event Logging out-of-bounds remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  6. CVE-2026-69496
    Windows Compressed Folder heap overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  7. CVE-2026-69525
    Windows Remote Desktop Services use-after-free remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  8. CVE-2026-69579
    Windows Message Queuing use-after-free remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  9. CVE-2026-69586
    Windows 10 Version 1607 integer overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  10. CVE-2026-69590
    Windows 10 Version 1607 RRAS remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  11. CVE-2026-69595
    Windows Server use-after-free in Services for NFS ONCRPC XDR remote code execution Microsoft Windows Server 2012 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  12. CVE-2026-69715
    Windows DirectShow out-of-bounds read remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  13. CVE-2026-69730
    Windows 10 Version 1607 DNS use-after-free remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  14. CVE-2026-69768
    Windows 10 Version 1607 heap buffer overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  15. CVE-2026-69769
    Windows HTTP Print Provider heap overflow lets remote attackers run code Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  16. CVE-2026-69819
    Windows 10 Version 1607 out-of-bounds write RPC Runtime remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  17. CVE-2026-69829
    Windows Shell heap overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  18. CVE-2026-69824
    Windows 10 Version 1607 integer underflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  19. CVE-2026-69845
    Windows DHCP Server heap buffer overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
  20. CVE-2026-69910
    Windows 10 Version 1607 stack-based buffer overflow remote code execution Microsoft Windows 10 Version 1607 ·
    • PATCH AVAILABLE
    CRITICAL 9.8
20 CVEs · page 2 of 5