NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2026-27914 Improper access control in Microsoft Management Console allows an authorized attacker to elevate privileges locally. 2026-04-14 7.8 LOCAL HIGH NVD
CVE-2026-27913 Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally. 2026-04-14 7.7 LOCAL HIGH NVD
CVE-2026-27912 Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network. 2026-04-14 8.0 ADJACENT_NETWORK HIGH NVD
CVE-2026-27911 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows User Interface Core allows an authorized attack... 2026-04-14 7.8 LOCAL HIGH NVD
CVE-2026-27910 Improper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileges locally. 2026-04-14 7.8 LOCAL HIGH NVD
CVE-2026-27909 Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. 2026-04-14 7.8 LOCAL HIGH NVD
CVE-2026-27908 Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally. 2026-04-14 7.0 LOCAL HIGH NVD
CVE-2026-27907 Integer underflow (wrap or wraparound) in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally. 2026-04-14 7.8 LOCAL HIGH NVD
CVE-2026-27906 Improper input validation in Windows Hello allows an authorized attacker to bypass a security feature locally. 2026-04-14 4.4 LOCAL MEDIUM NVD
CVE-2026-27303 Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code... 2026-04-14 9.6 NETWORK CRITICAL NVD
CVE-2026-27288 Adobe Experience Manager versions 6.5.24, FP11.7 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could e... 2026-04-14 5.4 NETWORK MEDIUM NVD
CVE-2026-27258 DNG SDK versions 1.7.1 2502 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An atta... 2026-04-14 5.5 LOCAL MEDIUM NVD
CVE-2026-27246 Adobe Connect versions 2025.3, 12.10 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this ... 2026-04-14 9.3 NETWORK CRITICAL NVD
CVE-2026-27245 Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convi... 2026-04-14 9.3 NETWORK CRITICAL NVD
CVE-2026-27243 Adobe Connect versions 2025.3, 12.10 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convi... 2026-04-14 9.3 NETWORK CRITICAL NVD