microsoft / windows_10_22h2
1,066 known vulnerabilities in microsoft windows_10_22h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2021-34527 | Act now | 99.8% | 8.8 | ● | A remote code execution vulnerability exists when the Windows Print Spooler serv… |
| CVE-2023-36884 | Act now | 98.9% | 7.5 | ● | Windows Search Remote Code Execution Vulnerability |
| CVE-2024-21412 | Act now | 95.4% | 8.1 | ● | Internet Shortcut Files Security Feature Bypass Vulnerability |
| CVE-2026-33824 | Act now | 72.7% | 9.8 | ● | Double free in Windows IKE Extension allows an unauthorized attacker to execute … |
| CVE-2024-30088 | Act now | 68.2% | 7.0 | ● | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2026-32202 | Act now | 63.7% | 4.3 | ● | Protection mechanism failure in Windows Shell allows an unauthorized attacker to… |
| CVE-2024-21338 | Act now | 59.8% | 7.8 | ● | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2024-43461 | Act now | 54.5% | 8.8 | ● | Windows MSHTML Platform Spoofing Vulnerability |
| CVE-2025-26633 | Act now | 30.4% | 7.0 | ● | Improper neutralization in Microsoft Management Console allows an unauthorized a… |
| CVE-2024-21351 | Act now | 30.3% | 7.6 | ● | Windows SmartScreen Security Feature Bypass Vulnerability |
| CVE-2022-41128 | Act now | 24.6% | 8.8 | ● | Windows Scripting Languages Remote Code Execution Vulnerability |
| CVE-2024-49039 | Act now | 14.2% | 8.8 | ● | Windows Task Scheduler Elevation of Privilege Vulnerability |
| CVE-2023-23376 | Act now | 10.9% | 7.8 | ● | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2024-38217 | Act now | 10.0% | 5.4 | ● | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2024-38014 | Act now | 6.3% | 7.8 | ● | Windows Installer Elevation of Privilege Vulnerability |
| CVE-2026-68820 | Act now | 6.2% | 7.0 | ● | Use after free in Windows Ancillary Function Driver for WinSock allows an author… |
| CVE-2023-21823 | Act now | 5.6% | 7.8 | ● | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2026-20805 | Act now | 5.2% | 5.5 | ● | Exposure of sensitive information to an unauthorized actor in Desktop Windows Ma… |
| CVE-2022-41125 | Act now | 3.0% | 7.8 | ● | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability |
| CVE-2022-41049 | Act now | 2.5% | 5.4 | ● | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2022-41073 | Act now | 2.3% | 7.8 | ● | Windows Print Spooler Elevation of Privilege Vulnerability |
| CVE-2022-41091 | Act now | 1.8% | 5.4 | ● | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2026-85880 | Act now | 0.6% | 7.8 | ● | Heap-based buffer overflow in Windows ALPC allows an authorized attacker to elev… |
| CVE-2023-36899 | High | 76.7% | 8.8 | ASP.NET Elevation of Privilege Vulnerability | |
| CVE-2026-49160 | High | 53.8% | 7.5 | Uncontrolled resource consumption in HTTP/2 allows an unauthorized attacker to d… | |
| CVE-2023-21818 | Medium | 43.2% | 7.5 | Windows Secure Channel Denial of Service Vulnerability | |
| CVE-2023-21819 | Medium | 30.8% | 7.5 | Windows Secure Channel Denial of Service Vulnerability | |
| CVE-2023-21690 | Medium | 27.5% | 9.8 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execut… | |
| CVE-2024-21357 | Medium | 26.9% | 8.1 | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability | |
| CVE-2023-21689 | Medium | 26.5% | 9.8 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execut… | |
| CVE-2026-47291 | Medium | 22.8% | 9.8 | Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attack… | |
| CVE-2023-21692 | Medium | 21.2% | 9.8 | Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execut… | |
| CVE-2026-20872 | Medium | 20.1% | 6.5 | External control of file name or path in Windows NTLM allows an unauthorized att… | |
| CVE-2026-20925 | Medium | 18.2% | 6.5 | External control of file name or path in Windows NTLM allows an unauthorized att… | |
| CVE-2024-21371 | Medium | 10.9% | 7.0 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2023-36900 | Medium | 10.6% | 7.8 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | |
| CVE-2023-35359 | Medium | 9.9% | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2026-20860 | Medium | 8.4% | 7.8 | Access of resource using incompatible type ('type confusion') in Windows Ancilla… | |
| CVE-2026-42980 | Medium | 6.9% | 7.8 | Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authori… | |
| CVE-2024-38244 | Medium | 6.2% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2024-38241 | Medium | 6.0% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2023-35382 | Medium | 5.6% | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2023-35386 | Medium | 5.5% | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | |
| CVE-2026-20817 | Medium | 5.5% | 7.8 | Improper handling of insufficient permissions or privileges in Windows Error Rep… | |
| CVE-2026-66804 | Medium | 5.3% | 7.8 | Improper access control in Windows Cross Device Service allows an authorized att… | |
| CVE-2026-20840 | Medium | 4.7% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2024-38257 | Medium | 4.5% | 7.5 | Microsoft AllJoyn API Information Disclosure Vulnerability | |
| CVE-2026-20871 | Medium | 4.2% | 7.8 | Use after free in Desktop Windows Manager allows an authorized attacker to eleva… | |
| CVE-2026-61358 | Medium | 3.7% | 7.8 | Improper link resolution before file access ('link following') in Windows Access… | |
| CVE-2026-45586 | Medium | 3.6% | 7.8 | Improper link resolution before file access ('link following') in Windows Collab… |
Page 1 of 22
Next →