cbcvebase.

Microsoft Windows 10 Version 21H2 vulnerabilities

3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2642MEDIUM872LOW13

Vulnerabilities

Page 115 of 182
CVE-2026-69574P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69574 [HIGH] CWE-416 CVE-2026-69574: Use after free in Windows Device Association Service allows an authorized attacker to elevate privil Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69279P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69279 [HIGH] CWE-416 CVE-2026-69279: Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69500P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69500 [HIGH] CWE-416 CVE-2026-69500: Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges loca Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69692P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69692 [HIGH] CWE-416 CVE-2026-69692: Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally. Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-77905P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-77905 [HIGH] CWE-416 CVE-2026-77905: Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privil Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68837P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68837 [HIGH] CWE-416 CVE-2026-68837: Use after free in Windows File History Service allows an authorized attacker to elevate privileges l Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68847P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68847 [HIGH] CWE-416 CVE-2026-68847: Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69866P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69866 [HIGH] CWE-416 CVE-2026-69866: Use after free in Windows Device Association Service allows an authorized attacker to elevate privil Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69573P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69573 [HIGH] CWE-416 CVE-2026-69573: Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attac Use after free in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69693P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69693 [HIGH] CWE-416 CVE-2026-69693: Use after free in Windows Device Association Broker service allows an authorized attacker to elevate Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69341P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69341 [HIGH] CWE-416 CVE-2026-69341: Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges loca Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69575P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69575 [HIGH] CWE-416 CVE-2026-69575: Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privile Use after free in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69516P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69516 [HIGH] CWE-416 CVE-2026-69516: Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to eleva Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-71340P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-71340 [HIGH] CWE-416 CVE-2026-71340: Use after free in Windows File History Service allows an authorized attacker to elevate privileges l Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69311P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69311 [HIGH] CWE-416 CVE-2026-69311: Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally. Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-70565P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-70565 [HIGH] CWE-416 CVE-2026-70565: Use after free in Windows AF_UNIX Socket Provider allows an authorized attacker to elevate privilege Use after free in Windows AF_UNIX Socket Provider allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69488P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69488 [HIGH] CWE-416 CVE-2026-69488: Use after free in Windows Device Association Service allows an authorized attacker to elevate privil Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69611P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69611 [HIGH] CWE-416 CVE-2026-69611: Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate p Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69817P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69817 [HIGH] CWE-416 CVE-2026-69817: Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges Use after free in Windows Bluetooth Port Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69610P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69610 [HIGH] CWE-126 CVE-2026-69610: Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally. Buffer over-read in Windows Win32K allows an authorized attacker to elevate privileges locally.
nvd
Microsoft Windows 10 Version 21H2 vulnerabilities | cvebase