A vulnerability has been found in py-pdf pypdf up to 6.7.3 and classified as problematic. The affected element is an unknown function. This manipulation causes resource consumption.
This vulnerability is handled as CVE-2026-28351. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability was found in Microsoft Windows and classified as problematic. The impacted element is an unknown function of the component GDI. Such manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2026-27930. Local access is required to approach this attack. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability marked as critical has been reported in Microsoft Windows. Affected by this vulnerability is an unknown functionality of the component Desktop Window Manager. This manipulation causes use after free.
This vulnerability is registered as CVE-2026-27923. The attack needs to be launched locally. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability classified as problematic has been found in Microsoft Windows. This affects an unknown part of the component UPnP Device Host. Performing a manipulation results in use after free.
This vulnerability is reported as CVE-2026-27925. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability has been found in Microsoft Windows and classified as critical. The affected element is an unknown function of the component LUA File Virtualization Filter Driver. This manipulation causes time-of-check time-of-use.
This vulnerability is handled as CVE-2026-27929. It is possible to launch the attack on the local host. There is not any exploit available.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in Microsoft Windows. This impacts an unknown function in the library tdx.sys of the component TDI Translation Driver. The manipulation leads to race condition.
This vulnerability is listed as CVE-2026-27921. The attack must be carried out locally. There is no available exploit.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Microsoft Windows. Affected is an unknown function of the component Ancillary Function Driver for WinSock. The manipulation results in use after free.
This vulnerability is cataloged as CVE-2026-27922. The attack must be initiated from a local position. There is no exploit available.
The affected component should be upgraded.
A vulnerability was found in Microsoft Windows. It has been classified as critical. Impacted is an unknown function in the library wfplwfs.sys of the component WFP NDIS Lightweight Filter Driver. This manipulation causes use after free.
The identification of this vulnerability is CVE-2026-27917. The attack can only be executed locally. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Microsoft Windows. It has been rated as critical. The impacted element is an unknown function of the component UPnP Device Host. Performing a manipulation results in untrusted pointer dereference.
This vulnerability is identified as CVE-2026-27919. The attack is only possible with local access. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability categorized as critical has been discovered in Microsoft Windows. This affects an unknown function of the component UPnP Device Host. Executing a manipulation can lead to untrusted pointer dereference.
This vulnerability is tracked as CVE-2026-27920. The attack is restricted to local execution. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability has been found in Microsoft Windows and classified as critical. This vulnerability affects unknown code of the component UPnP Device Host. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2026-27915. Local access is required to approach this attack. No exploit exists.
The affected component should be upgraded.