cbcvebase.

Microsoft Windows 10 1809 vulnerabilities

2,099 known vulnerabilities affecting microsoft/windows_10_1809.

Total CVEs
2,099
CISA KEV
100
actively exploited
Public exploits
62
Exploited in wild
112
Severity breakdown
CRITICAL63HIGH1493MEDIUM535LOW8

Vulnerabilities

Page 93 of 105
CVE-2026-50455P4MEDIUMCVSS 5.5fixed in 10.0.17763.90202026-07-14
CVE-2026-50455 [MEDIUM] CWE-908 CVE-2026-50455: Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to Use of uninitialized resource in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
nvd
CVE-2026-58638P4MEDIUMCVSS 5.5fixed in 10.0.17763.90202026-07-14
CVE-2026-58638 [MEDIUM] CWE-325 CVE-2026-58638: Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2026-32214P4MEDIUMCVSS 5.5fixed in 10.0.17763.86442026-04-14
CVE-2026-32214 [MEDIUM] CWE-284 CVE-2026-32214: Improper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to discl Improper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
nvd
CVE-2023-28226P4MEDIUMCVSS 5.3fixed in 10.0.17763.42522023-04-11
CVE-2023-28226 [MEDIUM] CWE-347 CVE-2023-28226: Windows Enroll Engine Security Feature Bypass Vulnerability Windows Enroll Engine Security Feature Bypass Vulnerability
nvd
CVE-2026-45655P4MEDIUMCVSS 5.3fixed in 10.0.17763.88802026-06-09
CVE-2026-45655 [MEDIUM] CWE-693 CVE-2026-45655: Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a securi Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
nvd
CVE-2026-24297P4MEDIUMCVSS 4.8fixed in 10.0.17763.85112026-03-10
CVE-2026-24297 [MEDIUM] CWE-362 CVE-2026-24297: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kerberos allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2023-35377P4MEDIUMCVSS 6.5fixed in 10.0.17763.47372023-08-08
CVE-2023-35377 [MEDIUM] CWE-20 CVE-2023-35377: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-35376P4MEDIUMCVSS 6.5fixed in 10.0.17763.47372023-08-08
CVE-2023-35376 [MEDIUM] CWE-20 CVE-2023-35376: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2023-28266P4MEDIUMCVSS 5.5fixed in 10.0.17763.42522023-04-11
CVE-2023-28266 [MEDIUM] CWE-126 CVE-2023-28266: Windows Common Log File System Driver Information Disclosure Vulnerability Windows Common Log File System Driver Information Disclosure Vulnerability
nvd
CVE-2023-36909P4MEDIUMCVSS 6.5fixed in 10.0.17763.47372023-08-08
CVE-2023-36909 [MEDIUM] CWE-191 CVE-2023-36909: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21226P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21226 [MEDIUM] CWE-125 CVE-2025-21226: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21260P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21260 [MEDIUM] CWE-125 CVE-2025-21260: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21256P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21256 [MEDIUM] CWE-122 CVE-2025-21256: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21249P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21249 [MEDIUM] CWE-125 CVE-2025-21249: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21228P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21228 [MEDIUM] CWE-125 CVE-2025-21228: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21258P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21258 [MEDIUM] CWE-125 CVE-2025-21258: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21232P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21232 [MEDIUM] CWE-125 CVE-2025-21232: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21255P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21255 [MEDIUM] CWE-125 CVE-2025-21255: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21324P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21324 [MEDIUM] CWE-125 CVE-2025-21324: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21227P4MEDIUMCVSS 6.6fixed in 10.0.17763.67752025-01-14
CVE-2025-21227 [MEDIUM] CWE-125 CVE-2025-21227: Windows Digital Media Elevation of Privilege Vulnerability Windows Digital Media Elevation of Privilege Vulnerability
nvd