Microsoft Windows 10 21H2 vulnerabilities
1,830 known vulnerabilities affecting microsoft/windows_10_21h2.
Total CVEs
1,830
CISA KEV
87
actively exploited
Public exploits
54
Exploited in wild
97
Severity breakdown
CRITICAL44HIGH1306MEDIUM473LOW7
Vulnerabilities
Page 89 of 92
CVE-2025-48813P4MEDIUMCVSS 4.7fixed in 10.0.19044.64562025-10-14
CVE-2025-48813 [MEDIUM] CWE-324 CVE-2025-48813: Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perfor
Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.
nvd
CVE-2026-20962P4MEDIUMCVSS 4.4fixed in 10.0.19044.68092026-01-13
CVE-2026-20962 [MEDIUM] CWE-908 CVE-2026-20962: Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized a
Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose information locally.
nvd
CVE-2026-27906P4MEDIUMCVSS 4.4fixed in 10.0.19044.71842026-04-14
CVE-2026-27906 [MEDIUM] CWE-20 CVE-2026-27906: Improper input validation in Windows Hello allows an authorized attacker to bypass a security featur
Improper input validation in Windows Hello allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-38027P4MEDIUMCVSS 6.5fixed in 10.0.19044.46512024-07-09
CVE-2024-38027 [MEDIUM] CWE-400 CVE-2024-38027: Windows Line Printer Daemon Service Denial of Service Vulnerability
Windows Line Printer Daemon Service Denial of Service Vulnerability
nvd
CVE-2026-32209P4MEDIUMCVSS 4.4fixed in 10.0.19044.72912026-05-12
CVE-2026-32209 [MEDIUM] CWE-284 CVE-2026-32209: Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass
Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-38234P4MEDIUMCVSS 6.5fixed in 10.0.19044.48942024-09-10
CVE-2024-38234 [MEDIUM] CWE-20 CVE-2024-38234: Windows Networking Denial of Service Vulnerability
Windows Networking Denial of Service Vulnerability
nvd
CVE-2024-43555P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43555 [MEDIUM] CWE-125 CVE-2024-43555: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43561P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43561 [MEDIUM] CWE-20 CVE-2024-43561: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43558P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43558 [MEDIUM] CWE-20 CVE-2024-43558: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43557P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43557 [MEDIUM] CWE-20 CVE-2024-43557: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43559P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43559 [MEDIUM] CWE-476 CVE-2024-43559: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43538P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43538 [MEDIUM] CWE-20 CVE-2024-43538: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43542P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43542 [MEDIUM] CWE-20 CVE-2024-43542: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43537P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43537 [MEDIUM] CWE-125 CVE-2024-43537: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2024-43540P4MEDIUMCVSS 6.5fixed in 10.0.19044.50112024-10-08
CVE-2024-43540 [MEDIUM] CWE-20 CVE-2024-43540: Windows Mobile Broadband Driver Denial of Service Vulnerability
Windows Mobile Broadband Driver Denial of Service Vulnerability
nvd
CVE-2023-36717P4MEDIUMCVSS 6.5fixed in 10.0.19041.35702023-10-10
CVE-2023-36717 [MEDIUM] CVE-2023-36717: Windows Virtual Trusted Platform Module Denial of Service Vulnerability
Windows Virtual Trusted Platform Module Denial of Service Vulnerability
nvd
CVE-2025-21347P4MEDIUMCVSS 6.0fixed in 10.0.19044.54872025-02-11
CVE-2025-21347 [MEDIUM] CWE-59 CVE-2025-21347: Windows Deployment Services Denial of Service Vulnerability
Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2023-38140P4MEDIUMCVSS 5.5fixed in 10.0.19044.34482023-09-12
CVE-2023-38140 [MEDIUM] CWE-908 CVE-2023-38140: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2023-36803P4MEDIUMCVSS 5.5fixed in 10.0.19044.34482023-09-12
CVE-2023-36803 [MEDIUM] CWE-126 CVE-2023-36803: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd
CVE-2024-26174P4MEDIUMCVSS 5.5fixed in 10.0.19044.41702024-03-12
CVE-2024-26174 [MEDIUM] CWE-125 CVE-2024-26174: Windows Kernel Information Disclosure Vulnerability
Windows Kernel Information Disclosure Vulnerability
nvd