microsoft / windows_11_24h2
1,111 known vulnerabilities in microsoft windows_11_24h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-48583 | Medium | 0.3% | 7.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-65810 | Medium | 0.3% | 7.8 | Relative path traversal in .NET Framework allows an unauthorized attacker to ele… | |
| CVE-2026-48571 | Medium | 0.3% | 7.0 | Use after free in Windows App Installer allows an authorized attacker to elevate… | |
| CVE-2026-49162 | Medium | 0.3% | 7.0 | Use after free in Microsoft Brokering File System allows an authorized attacker … | |
| CVE-2026-50296 | Medium | 0.3% | 7.0 | Use after free in Graphics Kernel allows an authorized attacker to elevate privi… | |
| CVE-2026-50323 | Medium | 0.3% | 7.0 | Use after free in Windows Runtime allows an authorized attacker to elevate privi… | |
| CVE-2026-50372 | Medium | 0.3% | 7.0 | Buffer over-read in Windows Redirected Drive Buffering allows an authorized atta… | |
| CVE-2026-50392 | Medium | 0.3% | 7.0 | Use after free in Windows Secure Kernel Mode allows an authorized attacker to el… | |
| CVE-2026-50397 | Medium | 0.3% | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-50410 | Medium | 0.3% | 7.0 | Use after free in Windows Runtime allows an authorized attacker to elevate privi… | |
| CVE-2026-50449 | Medium | 0.3% | 7.0 | Use after free in Windows Runtime allows an authorized attacker to elevate privi… | |
| CVE-2026-56173 | Medium | 0.3% | 7.0 | Use after free in Windows WebView allows an authorized attacker to elevate privi… | |
| CVE-2026-56183 | Medium | 0.3% | 7.0 | Use after free in Windows MIDI Service Module allows an authorized attacker to e… | |
| CVE-2026-58544 | Medium | 0.3% | 7.0 | Use after free in Windows Management Services allows an authorized attacker to e… | |
| CVE-2026-58619 | Medium | 0.3% | 7.0 | Use after free in Windows Sensor Data Service allows an authorized attacker to e… | |
| CVE-2026-58629 | Medium | 0.3% | 7.0 | Use after free in Windows DirectX allows an authorized attacker to elevate privi… | |
| CVE-2026-58637 | Medium | 0.3% | 7.0 | Use after free in Windows Client-Side Caching (CSC) Service allows an authorized… | |
| CVE-2026-68884 | Medium | 0.3% | 7.0 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to el… | |
| CVE-2026-69310 | Medium | 0.3% | 7.0 | Use after free in Windows DNS allows an authorized attacker to elevate privilege… | |
| CVE-2026-69379 | Medium | 0.3% | 7.0 | Improper link resolution before file access ('link following') in Windows NTFS a… | |
| CVE-2026-69473 | Medium | 0.3% | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-71340 | Medium | 0.3% | 7.0 | Use after free in Windows File History Service allows an authorized attacker to … | |
| CVE-2026-70573 | Medium | 0.3% | 7.0 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-44810 | Medium | 0.3% | 8.4 | Improper authentication in Windows Cryptographic Services allows an unauthorized… | |
| CVE-2026-69874 | Medium | 0.3% | 8.2 | Untrusted pointer dereference in Windows ALPC allows an authorized attacker to e… | |
| CVE-2026-65671 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Access API allows an authorized att… | |
| CVE-2026-65672 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Access API allows an authorized att… | |
| CVE-2026-65774 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Installer allows an authorized attacker to… | |
| CVE-2026-50305 | Medium | 0.3% | 7.8 | Use after free in Microsoft Brokering File System allows an authorized attacker … | |
| CVE-2026-50361 | Medium | 0.3% | 7.8 | Double free in Microsoft Brokering File System allows an authorized attacker to … | |
| CVE-2026-50385 | Medium | 0.3% | 8.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50427 | Medium | 0.3% | 7.8 | Use after free in Content Delivery Manager allows an authorized attacker to elev… | |
| CVE-2026-50457 | Medium | 0.3% | 7.8 | Use after free in Windows Runtime allows an authorized attacker to elevate privi… | |
| CVE-2026-50458 | Medium | 0.3% | 7.8 | Use after free in Microsoft Brokering File System allows an authorized attacker … | |
| CVE-2026-50677 | Medium | 0.3% | 7.8 | Use after free in Windows Media allows an authorized attacker to elevate privile… | |
| CVE-2026-50689 | Medium | 0.3% | 7.8 | Use after free in Windows Clipboard Server allows an authorized attacker to elev… | |
| CVE-2026-54125 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62759 | Medium | 0.3% | 7.5 | Authentication bypass by spoofing in Windows Netlogon allows an unauthorized att… | |
| CVE-2026-65814 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Storage Port Driver allows an authorized a… | |
| CVE-2026-69574 | Medium | 0.3% | 7.0 | Use after free in Windows Device Association Service allows an authorized attack… | |
| CVE-2026-42984 | Medium | 0.3% | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-45653 | Medium | 0.3% | 7.0 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to el… | |
| CVE-2026-62739 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to … | |
| CVE-2026-62771 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an a… | |
| CVE-2026-62894 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows DWM Core Library allows an authorized atta… | |
| CVE-2026-69890 | Medium | 0.2% | 7.5 | Use after free in Windows Virtual Trusted Platform Module allows an authorized a… | |
| CVE-2026-73017 | Medium | 0.2% | 7.5 | Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attac… | |
| CVE-2026-42978 | Medium | 0.2% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50472 | Medium | 0.2% | 7.0 | Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to ele… | |
| CVE-2026-59125 | Medium | 0.2% | 7.0 | Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized a… |