cbcvebase.

Microsoft Windows 10 22H2 vulnerabilities

2,143 known vulnerabilities affecting microsoft/windows_10_22h2.

Total CVEs
2,143
CISA KEV
74
actively exploited
Public exploits
45
Exploited in wild
85
Severity breakdown
CRITICAL59HIGH1524MEDIUM551LOW9

Vulnerabilities

Page 66 of 108
CVE-2026-50302P3MEDIUMCVSS 6.5fixed in 10.0.19045.75482026-07-14
CVE-2026-50302 [MEDIUM] CWE-295 CVE-2026-50302: Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to Improper certificate validation in Windows Cryptographic Services allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2025-29809P3HIGHCVSS 7.1fixed in 10.0.19045.57372025-04-08
CVE-2025-29809 [HIGH] CWE-922 CVE-2025-29809: Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypas Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-21438P3HIGHCVSS 7.5fixed in 10.0.19045.42912024-03-12
CVE-2024-21438 [HIGH] CWE-369 CVE-2024-21438: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2023-36709P3HIGHCVSS 7.5fixed in 10.0.19045.35702023-10-10
CVE-2023-36709 [HIGH] CWE-476 CVE-2023-36709: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2024-38068P3HIGHCVSS 7.5fixed in 10.0.19045.46512024-07-09
CVE-2024-38068 [HIGH] CWE-400 CVE-2024-38068: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-20687P3HIGHCVSS 7.5fixed in 10.0.19045.39302024-01-09
CVE-2024-20687 [HIGH] CWE-125 CVE-2024-20687: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2025-21351P3HIGHCVSS 7.5fixed in 10.0.19045.54872025-02-11
CVE-2025-21351 [HIGH] CWE-400 CVE-2025-21351: Windows Active Directory Domain Services API Denial of Service Vulnerability Windows Active Directory Domain Services API Denial of Service Vulnerability
nvd
CVE-2024-49121P3HIGHCVSS 7.5fixed in 10.0.19045.52472024-12-12
CVE-2024-49121 [HIGH] CWE-476 CVE-2024-49121: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2023-36003P3HIGHCVSS 7.3fixed in 10.0.19045.38032023-12-12
CVE-2023-36003 [HIGH] CWE-426 CVE-2023-36003: XAML Diagnostics Elevation of Privilege Vulnerability XAML Diagnostics Elevation of Privilege Vulnerability
nvd
CVE-2024-43515P3HIGHCVSS 7.5fixed in 10.0.19045.50112024-10-08
CVE-2024-43515 [HIGH] CWE-400 CVE-2024-43515: Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability
nvd
CVE-2023-35325P3HIGHCVSS 7.5fixed in 10.0.19045.32082023-07-11
CVE-2023-35325 [HIGH] CWE-908 CVE-2023-35325: Windows Print Spooler Information Disclosure Vulnerability Windows Print Spooler Information Disclosure Vulnerability
nvd
CVE-2023-36907P3HIGHCVSS 7.5fixed in 10.0.19045.33242023-08-08
CVE-2023-36907 [HIGH] CWE-170 CVE-2023-36907: Windows Cryptographic Services Information Disclosure Vulnerability Windows Cryptographic Services Information Disclosure Vulnerability
nvd
CVE-2023-36913P3HIGHCVSS 7.5fixed in 10.0.19045.33242023-08-08
CVE-2023-36913 [HIGH] CWE-908 CVE-2023-36913: Microsoft Message Queuing Information Disclosure Vulnerability Microsoft Message Queuing Information Disclosure Vulnerability
nvd
CVE-2023-32008P3HIGHCVSS 7.8fixed in 10.0.19045.30872023-06-14
CVE-2023-32008 [HIGH] CWE-476 CVE-2023-32008: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
nvd
CVE-2023-32042P3HIGHCVSS 7.5fixed in 10.0.19045.32082023-07-11
CVE-2023-32042 [HIGH] CWE-908 CVE-2023-32042: OLE Automation Information Disclosure Vulnerability OLE Automation Information Disclosure Vulnerability
nvd
CVE-2023-21756P3HIGHCVSS 7.8fixed in 10.0.19045.32082023-07-11
CVE-2023-21756 [HIGH] CWE-416 CVE-2023-21756: Windows Win32k Elevation of Privilege Vulnerability Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2023-21804P3HIGHCVSS 7.8fixed in 10.0.19045.26042023-02-14
CVE-2023-21804 [HIGH] CWE-122 CVE-2023-21804: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-24910P3HIGHCVSS 7.8fixed in 10.0.19045.27282023-03-14
CVE-2023-24910 [HIGH] CWE-476 CVE-2023-24910: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-23412P3HIGHCVSS 7.8fixed in 10.0.19045.27282023-03-14
CVE-2023-23412 [HIGH] CWE-269 CVE-2023-23412: Windows Accounts Picture Elevation of Privilege Vulnerability Windows Accounts Picture Elevation of Privilege Vulnerability
nvd
CVE-2024-21443P3HIGHCVSS 7.3fixed in 10.0.19045.41702024-03-12
CVE-2024-21443 [HIGH] CWE-416 CVE-2024-21443: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
Microsoft Windows 10 22H2 vulnerabilities | cvebase