microsoft / windows_11_24h2
1,111 known vulnerabilities in microsoft windows_11_24h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-68848 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Print Spooler Components allows an authori… | |
| CVE-2026-68875 | Medium | 0.2% | 7.8 | Buffer over-read in Windows NTFS allows an authorized attacker to execute code l… | |
| CVE-2026-69265 | Medium | 0.2% | 7.8 | Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv… | |
| CVE-2026-69270 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allo… | |
| CVE-2026-69293 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-70345 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Installer allows an authorized attacker to… | |
| CVE-2026-71334 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attack… | |
| CVE-2026-72988 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-72993 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-72994 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-72995 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73000 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73002 | Medium | 0.2% | 7.8 | Integer overflow or wraparound in Windows Biometric Service allows an authorized… | |
| CVE-2026-73007 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73011 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73015 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73020 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-73024 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows … | |
| CVE-2026-73026 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-77904 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an … | |
| CVE-2026-78447 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-78448 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83952 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an aut… | |
| CVE-2026-83955 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83969 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83974 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83976 | Medium | 0.2% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-61349 | Medium | 0.2% | 7.8 | Use after free in Windows Work Folder Service allows an authorized attacker to e… | |
| CVE-2026-81354 | Medium | 0.2% | 8.2 | Heap-based buffer overflow in Windows Hello allows an authorized attacker to ele… | |
| CVE-2026-69501 | Medium | 0.2% | 7.0 | Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized… | |
| CVE-2026-49805 | Medium | 0.2% | 7.0 | Improper access control in Windows Win32K allows an authorized attacker to eleva… | |
| CVE-2026-50297 | Medium | 0.2% | 7.0 | Improper access control in Windows Win32K allows an authorized attacker to eleva… | |
| CVE-2026-50325 | Medium | 0.2% | 7.0 | Improper access control in Windows Win32K allows an authorized attacker to eleva… | |
| CVE-2026-68847 | Medium | 0.2% | 7.0 | Use after free in Windows Connected User Experiences and Telemetry allows an aut… | |
| CVE-2026-69864 | Medium | 0.2% | 7.8 | Use after free in Windows Hello allows an authorized attacker to elevate privile… | |
| CVE-2026-21221 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-34335 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-42911 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-45640 | Medium | 0.2% | 7.0 | Use after free in Windows Bluetooth Port Driver allows an authorized attacker to… | |
| CVE-2026-56179 | Medium | 0.2% | 8.3 | Origin validation error in Windows Network Address Translation (NAT) allows an u… | |
| CVE-2026-85360 | Medium | 0.2% | 7.0 | Use after free in Windows Kernel allows an authorized attacker to elevate privil… | |
| CVE-2026-80083 | Medium | 0.2% | 8.8 | Untrusted pointer dereference in Windows Hyper-V allows an authorized attacker t… | |
| CVE-2026-55144 | Medium | 0.2% | 7.1 | Missing cryptographic step in Windows CryptoAPI allows an authorized attacker to… | |
| CVE-2026-65776 | Medium | 0.2% | 7.0 | Use after free in Windows Win32K allows an authorized attacker to elevate privil… | |
| CVE-2026-33101 | Medium | 0.2% | 7.8 | Use after free in Windows Print Spooler Components allows an authorized attacker… | |
| CVE-2026-83996 | Medium | 0.2% | 8.8 | Heap-based buffer overflow in Windows Error Reporting allows an authorized attac… | |
| CVE-2026-70283 | Medium | 0.2% | 7.0 | Incorrect authorization in Windows Win32K allows an authorized attacker to eleva… | |
| CVE-2026-47648 | Medium | 0.2% | 7.0 | Untrusted search path in Windows Storage allows an authorized attacker to elevat… | |
| CVE-2026-47304 | Medium | 0.2% | 8.1 | Improper verification of cryptographic signature in .NET allows an unauthorized … | |
| CVE-2026-42976 | Medium | 0.2% | 7.8 | Missing authentication for critical function in Windows RPC API allows an author… |