CVE-2026-32153
Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32153
Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32153
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32091
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32093
Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32149
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows Biometric Service allows an unauthorized attacker to bypass a security feature with a physical attack. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32088
Use after free in Windows Speech Brokered Api allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32089
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows Speech Brokered Api allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32090
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32086
Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32087
Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an authorized attacker to disclose information locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32085
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows SSDP Service allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32082
Concurrent execution using shared resource with improper synchronization (‘race condition’) in Windows SSDP Service allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32083
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32084
Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally. More information : https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32078