cbcvebase.

Microsoft Windows 10 22H2 vulnerabilities

2,143 known vulnerabilities affecting microsoft/windows_10_22h2.

Total CVEs
2,143
CISA KEV
74
actively exploited
Public exploits
45
Exploited in wild
85
Severity breakdown
CRITICAL59HIGH1524MEDIUM551LOW9

Vulnerabilities

Page 60 of 108
CVE-2026-27921P3HIGHCVSS 7.0fixed in 10.0.19045.71842026-04-14
CVE-2026-27921 [HIGH] CWE-362 CVE-2026-27921: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50682P3HIGHCVSS 7.1fixed in 10.0.19045.75482026-07-14
CVE-2026-50682 [HIGH] CWE-125 CVE-2026-50682: Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network.
nvd
CVE-2026-41108P3HIGHCVSS 7.0fixed in 10.0.19045.74172026-06-09
CVE-2026-41108 [HIGH] CWE-122 CVE-2026-41108: Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privile Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-45653P3HIGHCVSS 7.0fixed in 10.0.19045.74172026-06-09
CVE-2026-45653 [HIGH] CWE-122 CVE-2026-45653: Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-26635P3MEDIUMCVSS 6.5fixed in 10.0.19045.57372025-04-08
CVE-2025-26635 [MEDIUM] CWE-1390 CVE-2025-26635: Weak authentication in Windows Hello allows an authorized attacker to bypass a security feature over Weak authentication in Windows Hello allows an authorized attacker to bypass a security feature over a network.
nvd
CVE-2023-36596P3HIGHCVSS 7.5fixed in 10.0.19041.35702023-10-10
CVE-2023-36596 [HIGH] CWE-822 CVE-2023-36596: Remote Procedure Call Information Disclosure Vulnerability Remote Procedure Call Information Disclosure Vulnerability
nvd
CVE-2023-36710P3HIGHCVSS 7.8fixed in 10.0.19045.35702023-10-10
CVE-2023-36710 [HIGH] CWE-197 CVE-2023-36710: Windows Media Foundation Core Remote Code Execution Vulnerability Windows Media Foundation Core Remote Code Execution Vulnerability
nvd
CVE-2023-36438P3HIGHCVSS 7.5fixed in 10.0.19045.35702023-10-10
CVE-2023-36438 [HIGH] CVE-2023-36438: Windows TCP/IP Information Disclosure Vulnerability Windows TCP/IP Information Disclosure Vulnerability
nvd
CVE-2023-36436P3HIGHCVSS 7.8fixed in 10.0.19041.35702023-10-10
CVE-2023-36436 [HIGH] CVE-2023-36436: Windows MSHTML Platform Remote Code Execution Vulnerability Windows MSHTML Platform Remote Code Execution Vulnerability
nvd
CVE-2023-36393P3HIGHCVSS 7.8fixed in 10.0.19045.36932023-11-14
CVE-2023-36393 [HIGH] CWE-426 CVE-2023-36393: Windows User Interface Application Core Remote Code Execution Vulnerability Windows User Interface Application Core Remote Code Execution Vulnerability
nvd
CVE-2023-36598P3HIGHCVSS 7.8fixed in 10.0.19041.35702023-10-10
CVE-2023-36598 [HIGH] CWE-122 CVE-2023-36598: Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2024-30073P3HIGHCVSS 7.8fixed in 10.0.19045.48942024-09-10
CVE-2024-30073 [HIGH] CWE-41 CVE-2024-30073: Windows Security Zone Mapping Security Feature Bypass Vulnerability Windows Security Zone Mapping Security Feature Bypass Vulnerability
nvd
CVE-2024-38066P3HIGHCVSS 7.8fixed in 10.0.19045.46512024-07-09
CVE-2024-38066 [HIGH] CWE-416 CVE-2024-38066: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2024-21442P3HIGHCVSS 7.8fixed in 10.0.19045.41702024-03-12
CVE-2024-21442 [HIGH] CWE-170 CVE-2024-21442: Windows USB Print Driver Elevation of Privilege Vulnerability Windows USB Print Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-21373P3HIGHCVSS 7.8fixed in 10.0.19045.54872025-02-11
CVE-2025-21373 [HIGH] CWE-59 CVE-2025-21373: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2024-26238P3HIGHCVSS 7.8fixed in 10.0.19045.44122024-05-14
CVE-2024-26238 [HIGH] CWE-59 CVE-2024-26238: Microsoft PLUGScheduler Scheduled Task Elevation of Privilege Vulnerability Microsoft PLUGScheduler Scheduled Task Elevation of Privilege Vulnerability
nvd
CVE-2024-38034P3HIGHCVSS 7.8fixed in 10.0.19045.46512024-07-09
CVE-2024-38034 [HIGH] CWE-190 CVE-2024-38034: Windows Filtering Platform Elevation of Privilege Vulnerability Windows Filtering Platform Elevation of Privilege Vulnerability
nvd
CVE-2023-23420P3HIGHCVSS 7.8fixed in 10.0.19045.27282023-03-14
CVE-2023-23420 [HIGH] CWE-416 CVE-2023-23420: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-28248P3HIGHCVSS 7.8fixed in 10.0.19045.28462023-04-11
CVE-2023-28248 [HIGH] CWE-190 CVE-2023-28248: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21436P3HIGHCVSS 7.8fixed in 10.0.19045.41702024-03-12
CVE-2024-21436 [HIGH] CWE-284 CVE-2024-21436: Windows Installer Elevation of Privilege Vulnerability Windows Installer Elevation of Privilege Vulnerability
nvd
Microsoft Windows 10 22H2 vulnerabilities | cvebase