PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / SwitchvoxvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / Switchvox
← All CVEs
CVE WatchSep 8, 2026

CVE-2026-69316

Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.

CVSS

4.7

Medium

EPSS

0.3%

p23

KEV

Exploit Today

7

0-100

Published: Sep 8, 2026 · Last modified: Sep 8, 2026 · CWE-126

EPSS · 30d

Not enough EPSS history yet.

Technical description

Buffer over-read in Windows Overlay Filter allows an authorized attacker to disclose information locally.

Official references
Related CVEs
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-76653
A missing authentication vulnerability in the VPN configuration management has been identified in Archer MR600 (v2, v3 & v5) and TL-MR6400 v8 due to improper access control; a remote unauthenticated attacker may be able to access and modify VPN configuration information without valid credentials. Successful exploitation may allow a remote unauthenticated attacker to disclose and modify VPN configuration information.7h
CVE-2026-839515.5 MED
33.4%
10Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.2d
CVE-2026-839495.5 MED
33.4%
10Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.2d
CVE-2026-813995.5 MED
32.7%
10Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.2d
CVE-2026-785164.3 MED
42.0%
13Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.13h
CVE-2026-730296.5 MED
52.7%
16Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.2d