Microsoft Windows 10 1809 vulnerabilities
2,099 known vulnerabilities affecting microsoft/windows_10_1809.
Total CVEs
2,099
CISA KEV
100
actively exploited
Public exploits
62
Exploited in wild
112
Severity breakdown
CRITICAL63HIGH1493MEDIUM535LOW8
Vulnerabilities
Page 76 of 105
CVE-2026-54132P3MEDIUMCVSS 6.8fixed in 10.0.17763.90202026-07-14
CVE-2026-54132 [MEDIUM] CWE-122 CVE-2026-54132: Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges w
Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.
nvd
CVE-2026-50668P3MEDIUMCVSS 6.8fixed in 10.0.17763.90202026-07-14
CVE-2026-50668 [MEDIUM] CWE-122 CVE-2026-50668: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges wit
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.
nvd
CVE-2026-42903P3MEDIUMCVSS 6.5fixed in 10.0.17763.88802026-06-09
CVE-2026-42903 [MEDIUM] CWE-476 CVE-2026-42903: Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a ne
Null pointer dereference in Windows Kerberos allows an authorized attacker to deny service over a network.
nvd
CVE-2026-26155P3MEDIUMCVSS 6.5fixed in 10.0.17763.86442026-04-14
CVE-2026-26155 [MEDIUM] CWE-126 CVE-2026-26155: Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
nvd
CVE-2026-49799P3MEDIUMCVSS 6.5fixed in 10.0.17763.90202026-07-14
CVE-2026-49799 [MEDIUM] CWE-400 CVE-2026-49799: Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allo
Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to deny service over a network.
nvd
CVE-2024-20661P3HIGHCVSS 7.5fixed in 10.0.17763.53292024-01-09
CVE-2024-20661 [HIGH] CWE-476 CVE-2024-20661: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36720P3HIGHCVSS 7.5fixed in 10.0.17763.49742023-10-10
CVE-2023-36720 [HIGH] CVE-2023-36720: Windows Mixed Reality Developer Tools Denial of Service Vulnerability
Windows Mixed Reality Developer Tools Denial of Service Vulnerability
nvd
CVE-2023-36431P3HIGHCVSS 7.5fixed in 10.0.17763.49742023-10-10
CVE-2023-36431 [HIGH] CWE-400 CVE-2023-36431: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36579P3HIGHCVSS 7.5fixed in 10.0.17763.49742023-10-10
CVE-2023-36579 [HIGH] CWE-400 CVE-2023-36579: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-36581P3HIGHCVSS 7.5fixed in 10.0.17763.49742023-10-10
CVE-2023-36581 [HIGH] CWE-126 CVE-2023-36581: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21276P3HIGHCVSS 7.5fixed in 10.0.17763.67752025-01-14
CVE-2025-21276 [HIGH] CWE-191 CVE-2025-21276: Windows MapUrlToZone Denial of Service Vulnerability
Windows MapUrlToZone Denial of Service Vulnerability
nvd
CVE-2025-21207P3HIGHCVSS 7.5fixed in 10.0.17763.67752025-01-14
CVE-2025-21207 [HIGH] CWE-400 CVE-2025-21207: Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability
Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability
nvd
CVE-2023-24942P3HIGHCVSS 7.5fixed in 10.0.17763.43772023-05-09
CVE-2023-24942 [HIGH] CWE-126 CVE-2023-24942: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-33173P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-33173 [HIGH] CWE-126 CVE-2023-33173: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-33172P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-33172 [HIGH] CWE-126 CVE-2023-33172: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-33168P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-33168 [HIGH] CWE-126 CVE-2023-33168: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-33167P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-33167 [HIGH] CWE-126 CVE-2023-33167: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-33166P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-33166 [HIGH] CWE-126 CVE-2023-33166: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-32034P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-32034 [HIGH] CWE-125 CVE-2023-32034: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd
CVE-2023-32035P3HIGHCVSS 7.5fixed in 10.0.17763.46452023-07-11
CVE-2023-32035 [HIGH] CWE-125 CVE-2023-32035: Remote Procedure Call Runtime Denial of Service Vulnerability
Remote Procedure Call Runtime Denial of Service Vulnerability
nvd