microsoft / windows_10_21h2
1,061 known vulnerabilities in microsoft windows_10_21h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-61925 | Medium | 0.4% | 7.8 | Incorrect authorization in Windows Installer allows an authorized attacker to el… | |
| CVE-2026-49791 | Medium | 0.4% | 7.1 | Improper link resolution before file access ('link following') in Windows Routin… | |
| CVE-2026-62712 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Win32K allows an authorized attacker to el… | |
| CVE-2026-58613 | Medium | 0.4% | 7.8 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized at… | |
| CVE-2026-69585 | Medium | 0.4% | 7.8 | Incorrect type conversion or cast in Microsoft Windows Search Component allows a… | |
| CVE-2026-50469 | Medium | 0.4% | 7.8 | Improper link resolution before file access ('link following') in Windows Projec… | |
| CVE-2026-20809 | Medium | 0.4% | 7.8 | Time-of-check time-of-use (toctou) race condition in Windows Kernel Memory allow… | |
| CVE-2026-49798 | Medium | 0.4% | 9.3 | Use after free in Windows Kernel allows an unauthorized attacker to elevate priv… | |
| CVE-2026-54128 | Medium | 0.4% | 8.4 | Use after free in Windows DHCP Client allows an unauthorized attacker to execute… | |
| CVE-2026-50498 | Medium | 0.4% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-58530 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an una… | |
| CVE-2026-62698 | Medium | 0.4% | 7.8 | Numeric truncation error in Microsoft Digest Authentication allows an authorized… | |
| CVE-2026-50348 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50452 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-49789 | Medium | 0.4% | 7.3 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-50482 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-58640 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-45607 | Medium | 0.4% | 8.4 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute… | |
| CVE-2026-45658 | Medium | 0.4% | 7.8 | Improper access control in Windows BitLocker allows an authorized attacker to by… | |
| CVE-2023-35378 | Medium | 0.4% | 7.0 | Windows Projected File System Elevation of Privilege Vulnerability | |
| CVE-2026-80093 | Medium | 0.3% | 7.0 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized at… | |
| CVE-2026-71343 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an… | |
| CVE-2026-40404 | Medium | 0.3% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-69479 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69638 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69921 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Print Spooler Components allows an authori… | |
| CVE-2026-70289 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Win32 Kernel Subsystem allows an authorize… | |
| CVE-2026-49165 | Medium | 0.3% | 7.1 | Use of uninitialized resource in Microsoft Windows App Store allows an authorize… | |
| CVE-2026-50680 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to e… | |
| CVE-2026-49184 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-62797 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2026-42982 | Medium | 0.3% | 7.8 | Improper validation of consistency within input in Windows Secure Kernel Mode al… | |
| CVE-2026-49175 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows DNS allows an authorized attacker to eleva… | |
| CVE-2026-49783 | Medium | 0.3% | 7.8 | Improperly implemented security check for standard in Windows Secure Boot allows… | |
| CVE-2026-49792 | Medium | 0.3% | 7.8 | Numeric truncation error in Windows Resilient File System (ReFS) allows an autho… | |
| CVE-2026-49793 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an aut… | |
| CVE-2026-49795 | Medium | 0.3% | 8.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-49800 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPA… | |
| CVE-2026-50293 | Medium | 0.3% | 7.8 | Use after free in Windows Internal Task Bar allows an authorized attacker to ele… | |
| CVE-2026-50306 | Medium | 0.3% | 7.8 | Use after free in Windows TCP/IP allows an authorized attacker to elevate privil… | |
| CVE-2026-50309 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-50326 | Medium | 0.3% | 7.8 | Use after free in Windows Unified Consent System allows an authorized attacker t… | |
| CVE-2026-50329 | Medium | 0.3% | 7.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-50331 | Medium | 0.3% | 7.8 | Use after free in Windows Application Model allows an authorized attacker to ele… | |
| CVE-2026-50332 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to el… | |
| CVE-2026-50337 | Medium | 0.3% | 7.8 | Incorrect type conversion or cast in Windows Notification allows an authorized a… | |
| CVE-2026-50354 | Medium | 0.3% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-50363 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Push Notifications allows an authorized at… | |
| CVE-2026-50367 | Medium | 0.3% | 7.8 | Incorrect access of indexable resource ('range error') in Windows Sensor Data Se… | |
| CVE-2026-50382 | Medium | 0.3% | 8.8 | Untrusted pointer dereference in Windows DirectX allows an authorized attacker t… |