Skip to main content

Vendor/product archive

microsoft / windows_server_2019 CVEs

Beta · best-effort

5,078 CVEs tagged to microsoft / windows_server_2019121 Critical, 3,577 High, 1,362 Medium, 18 Low, 0 Unrated.

CVE-2026-45642

Published Jun 9, 2026

Improper input validation in Microsoft Azure Attestation service and Device Health Attestation Service allows an authorized attacker to perform spoofing with a physical attack.

CVSS 3.9 · Low
evidence mentions
3
Buzz score
21.9

CVE-2026-45637

Published Jun 9, 2026

Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
3
Buzz score
21.9

CVE-2026-45635

Published Jun 9, 2026

Access of resource using incompatible type ('type confusion') in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network.

CVSS 8.1 · High
evidence mentions
4
Buzz score
25.6

CVE-2026-45603

Published Jun 9, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva…

CVSS 7.0 · High
evidence mentions
3
Buzz score
21.9

CVE-2026-45601

Published Jun 9, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva…

CVSS 7.0 · High
evidence mentions
3
Buzz score
21.9

CVE-2026-45598

Published Jun 9, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva…

CVSS 7.0 · High
evidence mentions
3
Buzz score
21.9

CVE-2026-45594

Published Jun 9, 2026

Exposure of sensitive information to an unauthorized actor in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
3
Buzz score
21.9

CVE-2026-45586

Published Jun 9, 2026

Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
13
Buzz score
46.4
Showing 326-350 of 5,078 CVEsPage 14 of 204