microsoft / windows_11_24h2
1,111 known vulnerabilities in microsoft windows_11_24h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-49798 | Medium | 0.4% | 9.3 | Use after free in Windows Kernel allows an unauthorized attacker to elevate priv… | |
| CVE-2026-54128 | Medium | 0.4% | 8.4 | Use after free in Windows DHCP Client allows an unauthorized attacker to execute… | |
| CVE-2026-50498 | Medium | 0.4% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-50501 | Medium | 0.4% | 7.8 | Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an un… | |
| CVE-2026-58530 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an una… | |
| CVE-2026-58542 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows Media allows an unauthorized attacker to e… | |
| CVE-2026-62688 | Medium | 0.4% | 7.8 | Heap-based buffer overflow in Windows MIDI Service Module allows an authorized a… | |
| CVE-2026-62698 | Medium | 0.4% | 7.8 | Numeric truncation error in Microsoft Digest Authentication allows an authorized… | |
| CVE-2026-50348 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50452 | Medium | 0.4% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-49789 | Medium | 0.4% | 7.3 | Stack-based buffer overflow in Windows NTFS allows an authorized attacker to ele… | |
| CVE-2026-50482 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-58640 | Medium | 0.4% | 7.3 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-45607 | Medium | 0.4% | 8.4 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute… | |
| CVE-2026-45658 | Medium | 0.4% | 7.8 | Improper access control in Windows BitLocker allows an authorized attacker to by… | |
| CVE-2026-47652 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to e… | |
| CVE-2026-80093 | Medium | 0.3% | 7.0 | Use after free in Windows Cloud Files Mini Filter Driver allows an authorized at… | |
| CVE-2026-71343 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Remote Access Connection Manager allows an… | |
| CVE-2026-40404 | Medium | 0.3% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-69479 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69638 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-69921 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Print Spooler Components allows an authori… | |
| CVE-2026-70289 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Win32 Kernel Subsystem allows an authorize… | |
| CVE-2026-49165 | Medium | 0.3% | 7.1 | Use of uninitialized resource in Microsoft Windows App Store allows an authorize… | |
| CVE-2026-50680 | Medium | 0.3% | 8.2 | Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to e… | |
| CVE-2026-49184 | Medium | 0.3% | 8.4 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex… | |
| CVE-2026-61359 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Storage allows an authorized attacker to e… | |
| CVE-2026-62797 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev… | |
| CVE-2026-62811 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to … | |
| CVE-2026-42982 | Medium | 0.3% | 7.8 | Improper validation of consistency within input in Windows Secure Kernel Mode al… | |
| CVE-2026-49166 | Medium | 0.3% | 7.8 | Use after free in Microsoft Printer Drivers allows an authorized attacker to ele… | |
| CVE-2026-49175 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows DNS allows an authorized attacker to eleva… | |
| CVE-2026-49783 | Medium | 0.3% | 7.8 | Improperly implemented security check for standard in Windows Secure Boot allows… | |
| CVE-2026-49792 | Medium | 0.3% | 7.8 | Numeric truncation error in Windows Resilient File System (ReFS) allows an autho… | |
| CVE-2026-49793 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an aut… | |
| CVE-2026-49795 | Medium | 0.3% | 8.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-49800 | Medium | 0.3% | 7.8 | Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPA… | |
| CVE-2026-50293 | Medium | 0.3% | 7.8 | Use after free in Windows Internal Task Bar allows an authorized attacker to ele… | |
| CVE-2026-50306 | Medium | 0.3% | 7.8 | Use after free in Windows TCP/IP allows an authorized attacker to elevate privil… | |
| CVE-2026-50309 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows NTFS allows an authorized attacker to exec… | |
| CVE-2026-50315 | Medium | 0.3% | 7.8 | Null pointer dereference in Windows Image Acquisition allows an authorized attac… | |
| CVE-2026-50326 | Medium | 0.3% | 7.8 | Use after free in Windows Unified Consent System allows an authorized attacker t… | |
| CVE-2026-50327 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Media allows an authorized attacker to exe… | |
| CVE-2026-50329 | Medium | 0.3% | 7.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-50331 | Medium | 0.3% | 7.8 | Use after free in Windows Application Model allows an authorized attacker to ele… | |
| CVE-2026-50332 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Kernel allows an authorized attacker to el… | |
| CVE-2026-50336 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Media allows an authorized attacker to ele… | |
| CVE-2026-50337 | Medium | 0.3% | 7.8 | Incorrect type conversion or cast in Windows Notification allows an authorized a… | |
| CVE-2026-50353 | Medium | 0.3% | 7.8 | Use after free in Windows DirectX allows an authorized attacker to elevate privi… | |
| CVE-2026-50354 | Medium | 0.3% | 7.1 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… |