CVE-2026-50341
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
CVSS
5.5
Medium
EPSS
0.4%
p34
KEV
—
Exploit Today
10
0-100
Published: Jul 14, 2026 · Last modified: Jul 20, 2026 · CWE-126
0.4%EPSS · 30 days0.4%
2026-08-252026-09-23
Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-862437.5 HIG—
——0Buffer over-read vulnerability in Apache Tomcat Native during the TLS handshake permits a malicious user to trigger a DoS via a JVM crash.
This issue affects Apache Tomcat Native: from 2.0.0 through 2.0.15, from 1.3.0 through 1.3.8. Earlier, unsupported versions may also be affected.
Users are recommended to upgrade to version 1.3.9 or 2.0.16, which fix the issue.2hCVE-2026-252947.4 HIG0.9%
——0Transient DOS while parsing frame during channel usage.1dCVE-2026-252847.3 HIG0.0%
——0Information Disclosure when a pointer is reused after being deallocated.1dCVE-2026-252757.5 HIG9.0%
——3Transient DOS when processing authentication frames with invalid FILS information element header lengths.1dCVE-2026-240817.4 HIG0.9%
——0Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled.1dCVE-2026-240757.8 HIG0.0%
——0Memory Corruption when multiple threads issue concurrent IOCTL requests to the device control handler due to improper synchronization and race conditions.1d