cbcvebase.

Microsoft Windows 10 Version 21H2 vulnerabilities

3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13

Vulnerabilities

Page 18 of 182
CVE-2026-73023P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73023 [HIGH] CWE-122 CVE-2026-73023: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69291P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69291 [HIGH] CWE-122 CVE-2026-69291: Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacke Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69360P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69360 [HIGH] CWE-122 CVE-2026-69360: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69860P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69860 [HIGH] CWE-122 CVE-2026-69860: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69386P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69386 [HIGH] CWE-122 CVE-2026-69386: Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-77495P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-77495 [HIGH] CWE-122 CVE-2026-77495: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-77504P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-77504 [HIGH] CWE-415 CVE-2026-77504: Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69772P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69772 [HIGH] CWE-122 CVE-2026-69772: Heap-based buffer overflow in Windows Network File System allows an unauthorized attacker to execute Heap-based buffer overflow in Windows Network File System allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69495P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69495 [HIGH] CWE-122 CVE-2026-69495: Heap-based buffer overflow in Windows Event Logging Service allows an unauthorized attacker to execu Heap-based buffer overflow in Windows Event Logging Service allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69511P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69511 [HIGH] CWE-122 CVE-2026-69511: Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69434P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69434 [HIGH] CWE-122 CVE-2026-69434: Heap-based buffer overflow in Windows URL Moniker allows an unauthorized attacker to execute code ov Heap-based buffer overflow in Windows URL Moniker allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72933P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-72933 [HIGH] CWE-122 CVE-2026-72933: Heap-based buffer overflow in Microsoft WDAC OLE DB provider for SQL allows an unauthorized attacker Heap-based buffer overflow in Microsoft WDAC OLE DB provider for SQL allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69669P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69669 [HIGH] CWE-122 CVE-2026-69669: Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to execute code over a Heap-based buffer overflow in Windows Kernel allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-83992P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-83992 [HIGH] CWE-122 CVE-2026-83992: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-73013P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73013 [HIGH] CWE-122 CVE-2026-73013: Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-57094P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-57094 [HIGH] CWE-122 CVE-2026-57094: Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-50474P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50474 [HIGH] CWE-416 CVE-2026-50474: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-47653P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.74172026-06-09
CVE-2026-47653 [HIGH] CWE-416 CVE-2026-47653: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-42985P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.74172026-06-09
CVE-2026-42985 [HIGH] CWE-416 CVE-2026-42985: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-32157P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.71842026-04-14
CVE-2026-32157 [HIGH] CWE-416 CVE-2026-32157: Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a netwo Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
nvd
Microsoft Windows 10 Version 21H2 vulnerabilities | cvebase