Microsoft
Microsoft Windows 11 26h1: vulnerabilidades y CVE
Microsoft Windows 11 26h1 tiene 1532 vulnerabilidades publicadas, 1532 de ellas en los últimos 12 meses. 49 son críticas y 4 figuran en el catálogo de explotación activa de CISA.
CVE1532
Últimos 12 meses1532
Críticas49
Explotadas activamente4
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-81963 | Alta (7.8) | 0.39% | ⚠ Explotación activa | 8 sept 2026 | Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally. |
| CVE-2026-33824 | Crítica (9.8) | 1.6% | ⚠ Explotación activa | 14 abr 2026 | Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. |
| CVE-2026-68820 | Alta (7) | 0.33% | ⚠ Explotación activa | 11 ago 2026 | Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
| CVE-2026-32202 | Media (4.3) | 4.9% | ⚠ Explotación activa | 14 abr 2026 | Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network. |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-85921 | Alta (8.2) | 0.35% | — | 14 sept 2026 | Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83999 | Alta (7) | 0.28% | — | 8 sept 2026 | Improper link resolution before file access ('link following') in Windows Resilient File System (ReFS) Deduplication Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83997 | Alta (8.1) | 0.71% | — | 8 sept 2026 | Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network. |
| CVE-2026-83991 | Media (5.5) | 0.30% | — | 8 sept 2026 | Missing authentication for critical function in Windows Cloud Files Mini Filter Driver allows an authorized attacker to perform tampering locally. |
| CVE-2026-83990 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83988 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83987 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83986 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83985 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83983 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83982 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83981 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83980 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83979 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83978 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83977 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83976 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83975 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83974 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83973 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83972 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83971 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83970 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83969 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83968 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Use after free in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83967 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83955 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83954 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83952 | Alta (7.8) | 0.33% | — | 8 sept 2026 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally. |
| CVE-2026-83942 | Alta (7.8) | 0.30% | — | 8 sept 2026 | Missing authorization in Windows Kernel allows an authorized attacker to elevate privileges locally. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.