CVE-2026-69398
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorize
CVSS
7.0
Alto
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 8 sept 2026 · Última mod.: 8 sept 2026 · CWE-362 · CWE-415
Sin historial EPSS suficiente todavía.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-799077.8 ALT—
———Acrobat Reader is affected by a Double Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.4hCVE-2026-588487.0 ALT—
———In multiple functions of alloc.c, there is a possible unauthorized read/write access due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.4hCVE-2026-819507.8 ALT—
———Double free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.6hCVE-2026-800808.8 ALT—
———Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.5hCVE-2026-778947.0 ALT—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privileges locally.5hCVE-2026-775048.8 ALT—
———Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.5h