← microsoft

microsoft / windows_11_25h2

1,081 known vulnerabilities in microsoft windows_11_25h2.

CVEPriorityEPSSCVSSKEVWhat
CVE-2026-57092 Medium 0.9% 9.9 Use after free in Windows VMSwitch allows an authorized attacker to elevate priv…
CVE-2026-58626 Medium 0.9% 8.8 Use after free in Windows Remote Desktop Services allows an authorized attacker …
CVE-2026-69463 Medium 0.9% 9.8 Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to ex…
CVE-2026-69491 Medium 0.9% 9.8 Heap-based buffer overflow in Windows Microsoft DirectMusic allows an unauthoriz…
CVE-2026-73009 Medium 0.9% 9.8 Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unau…
CVE-2026-42908 Medium 0.9% 7.5 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in…
CVE-2026-45639 Medium 0.9% 7.5 Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in…
CVE-2026-83989 Medium 0.9% 7.5 Out-of-bounds read in Windows Services for NFS ONCRPC XDR Driver allows an unaut…
CVE-2026-40400 Medium 0.9% 8.0 Relative path traversal in Windows PowerShell allows an authorized attacker to e…
CVE-2026-20931 Medium 0.9% 8.0 External control of file name or path in Windows Telephony Service allows an aut…
CVE-2026-70563 Medium 0.8% 8.1 Improper link resolution before file access ('link following') in Windows Shell …
CVE-2026-70342 Medium 0.8% 8.1 Use after free in Windows Ancillary Function Driver for WinSock allows an unauth…
CVE-2026-50527 Medium 0.8% 7.5 Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to…
CVE-2026-50648 Medium 0.8% 7.5 Allocation of resources without limits or throttling in .NET Framework allows an…
CVE-2026-33827 Medium 0.8% 8.1 Concurrent execution using shared resource with improper synchronization ('race …
CVE-2026-62785 Medium 0.8% 8.8 Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protoc…
CVE-2026-49179 Medium 0.8% 8.8 Improper neutralization of special elements used in a command ('command injectio…
CVE-2026-50380 Medium 0.8% 9.6 Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to ex…
CVE-2026-50474 Medium 0.8% 8.8 Use after free in Remote Desktop Client allows an unauthorized attacker to execu…
CVE-2026-54990 Medium 0.8% 9.8 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attac…
CVE-2026-57090 Medium 0.8% 8.8 Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut…
CVE-2026-57094 Medium 0.8% 8.8 Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut…
CVE-2026-58594 Medium 0.8% 8.8 Integer overflow or wraparound in Windows RDP allows an unauthorized attacker to…
CVE-2026-69669 Medium 0.8% 8.8 Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to …
CVE-2026-68887 Medium 0.8% 7.5 Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthoriz…
CVE-2026-20919 Medium 0.8% 7.5 Concurrent execution using shared resource with improper synchronization ('race …
CVE-2026-20926 Medium 0.8% 7.5 Concurrent execution using shared resource with improper synchronization ('race …
CVE-2026-69518 Medium 0.8% 8.8 Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized atta…
CVE-2026-70203 Medium 0.8% 8.8 Heap-based buffer overflow in Windows Media Player allows an unauthorized attack…
CVE-2026-69860 Medium 0.8% 8.8 Heap-based buffer overflow in Windows Imaging Component allows an unauthorized a…
CVE-2026-70586 Medium 0.8% 8.8 Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to e…
CVE-2026-73006 Medium 0.8% 8.8 Stack-based buffer overflow in Microsoft Graphics Component allows an unauthoriz…
CVE-2026-49164 Medium 0.8% 8.1 Heap-based buffer overflow in Active Directory Domain Services allows an unautho…
CVE-2026-50439 Medium 0.8% 8.1 Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized…
CVE-2026-50487 Medium 0.8% 8.1 Use after free in Microsoft Windows DNS allows an unauthorized attacker to eleva…
CVE-2026-50694 Medium 0.8% 8.1 Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unau…
CVE-2026-57087 Medium 0.8% 8.8 Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unaut…
CVE-2026-50360 Medium 0.8% 8.8 Incorrect implementation of authentication algorithm in Windows SMB Server allow…
CVE-2026-68839 Medium 0.8% 9.8 Heap-based buffer overflow in Windows USB Mass Storage Class Driver allows an un…
CVE-2026-70587 Medium 0.8% 7.5 Improper null termination in Windows Remote Desktop Protocol allows an unauthori…
CVE-2026-71330 Medium 0.8% 7.5 Exposure of sensitive system information to an unauthorized control sphere in Wi…
CVE-2026-69503 Medium 0.8% 8.0 Stack-based buffer overflow in Windows USB Driver allows an authorized attacker …
CVE-2026-69505 Medium 0.8% 8.0 Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate priv…
CVE-2026-69875 Medium 0.8% 8.0 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elev…
CVE-2026-20848 Medium 0.8% 7.5 Concurrent execution using shared resource with improper synchronization ('race …
CVE-2026-20934 Medium 0.8% 7.5 Concurrent execution using shared resource with improper synchronization ('race …
CVE-2026-69461 Medium 0.8% 8.8 Stack-based buffer overflow in Windows NTFS allows an unauthorized attacker to e…
CVE-2026-50340 Medium 0.7% 8.5 Use after free in Windows Runtime allows an authorized attacker to elevate privi…
CVE-2026-50500 Medium 0.7% 7.5 Use after free in Windows Netlogon allows an authorized attacker to elevate priv…
CVE-2026-50505 Medium 0.7% 7.5 Use after free in Windows Message Queuing allows an authorized attacker to execu…
← Prev Page 3 of 22 Next →