
CVE Watch
Every published CVE, mapped to engagement reality.
Crawled from cve.org every day. Each entry annotated with the QSearch coverage signal — how many of our agents, skills, and playbooks address the technique. Subscribe via RSS for SIEM pipe, or get the weekly digest by email.
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CWE-362Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CWE-843Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network
Stack-based buffer overflow in Windows DHCP Client allows an unauthorized attacker to execute code over a network.
CWE-121Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-416Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally
Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
CWE-190Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-122CWE-20Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally
Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.
CWE-287Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CWE-416Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-122CWE-125Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-416Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-416Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally
Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
CWE-190Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CWE-416Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CWE-416Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CWE-122Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CWE-122Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CWE-122Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an autho...
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CWE-362CWE-416Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
CWE-59Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network
Use after free in Windows Deployment Services allows an unauthorized attacker to execute code over a network.
CWE-416
Weekly digest
Get the curated CVE digest every Monday
One email a week, sent Monday morning CET. The CVEs published or modified in the last seven days, severity-ordered, with the QSearch coverage signal. Unsubscribe with one click — included in every send.
Pipe the CVE feed into your stack.
CVE Watch publishes RSS, Atom, and JSON feeds — wire them into your SIEM, Slack, Discord, or your RSS reader of choice. Or get the curated weekly digest by email.