microsoft / windows_11_23h2
761 known vulnerabilities in microsoft windows_11_23h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-62698 | Medium | 0.4% | 7.8 | Numeric truncation error in Microsoft Digest Authentication allows an authorized… | |
| CVE-2026-58640 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-45607 | Medium | 0.4% | 8.4 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute… | |
| CVE-2026-45658 | Medium | 0.4% | 7.8 | Improper access control in Windows BitLocker allows an authorized attacker to by… | |
| CVE-2026-47652 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to e… | |
| CVE-2026-80093 | Medium | 0.3% | 7.0 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized at… | |
| CVE-2026-71343 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an… | |
| CVE-2026-40404 | Medium | 0.3% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-69479 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69638 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69921 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Print Spooler Components allows an authori… | |
| CVE-2026-70289 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Win32 Kernel Subsystem allows an authorize… | |
| CVE-2026-61359 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to e… | |
| CVE-2026-62797 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2026-62811 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to … | |
| CVE-2026-42982 | Medium | 0.3% | 7.8 | Improper validation of consistency within input in Windows Secure Kernel Mode al… | |
| CVE-2026-58601 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an … | |
| CVE-2026-62788 | Medium | 0.3% | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-69476 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-77500 | Medium | 0.3% | 7.8 | Release of invalid pointer or reference in Windows Device Association Service al… | |
| CVE-2026-42828 | Medium | 0.3% | 7.8 | Buffer over-read in Windows Projected File System Filter Driver allows an author… | |
| CVE-2026-42837 | Medium | 0.3% | 7.8 | Out-of-bounds read in Windows Projected File System Filter Driver allows an auth… | |
| CVE-2026-42916 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows NT OS Kernel allows an authorized atta… | |
| CVE-2026-69467 | Medium | 0.3% | 7.8 | Stack-based buffer overflow in Microsoft Graphics Component allows an authorized… | |
| CVE-2026-20844 | Medium | 0.3% | 7.4 | Use after free in Windows Clipboard Server allows an unauthorized attacker to el… | |
| CVE-2024-21355 | Medium | 0.3% | 7.0 | Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability | |
| CVE-2026-70307 | Medium | 0.3% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-45656 | Medium | 0.3% | 7.8 | Protection mechanism failure in Windows UEFI allows an authorized attacker to by… | |
| CVE-2026-69820 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Hello allows an authorized attacker to ele… | |
| CVE-2026-20853 | Medium | 0.3% | 7.4 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-69513 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Error Reporting allows an authorized attac… | |
| CVE-2026-69846 | Medium | 0.3% | 8.2 | Integer overflow or wraparound in Windows Secure Kernel Mode allows an authorize… | |
| CVE-2026-69906 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Secure Kernel Mode allows an authorized at… | |
| CVE-2026-56172 | Medium | 0.3% | 7.8 | Use after free in Windows VHD miniport driver allows an authorized attacker to e… | |
| CVE-2026-56177 | Medium | 0.3% | 7.8 | Use after free in Windows Server allows an authorized attacker to elevate privil… | |
| CVE-2026-59127 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Installer allows an authorized attacke… | |
| CVE-2026-61353 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Telephony Service allows an authorized att… | |
| CVE-2026-61355 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Sensor Data Service allows an authorized a… | |
| CVE-2026-61923 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Display Enhancement Service allows an auth… | |
| CVE-2026-61926 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows USB Driver allows an authorized attacker t… | |
| CVE-2026-61932 | Medium | 0.3% | 7.8 | Access of resource using incompatible type ('type confusion') in Windows DWM Cor… | |
| CVE-2026-61934 | Medium | 0.3% | 7.8 | Use after free in Windows Bind Filter Driver allows an authorized attacker to el… | |
| CVE-2026-61937 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker… | |
| CVE-2026-62692 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Desktop Services allows an authoriz… | |
| CVE-2026-62695 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to e… | |
| CVE-2026-62697 | Medium | 0.3% | 7.8 | Use after free in Windows Push Notifications allows an authorized attacker to el… | |
| CVE-2026-62700 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2026-62701 | Medium | 0.3% | 7.8 | Use after free in Windows Telephony Service allows an authorized attacker to ele… | |
| CVE-2026-62707 | Medium | 0.3% | 7.8 | Use after free in Windows Modern Device Management (MDM) allows an authorized at… | |
| CVE-2026-62710 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Device Association Service allows an autho… |