Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13
Vulnerabilities
Page 42 of 182
CVE-2026-73021P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73021 [HIGH] CWE-20 CVE-2026-73021: Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate pri
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69589P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69589 [HIGH] CWE-122 CVE-2026-69589: Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate pri
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68885P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68885 [HIGH] CWE-122 CVE-2026-68885: Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privil
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69420P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69420 [HIGH] CWE-122 CVE-2026-69420: Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to elevate privilege
Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-72996P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-72996 [HIGH] CWE-20 CVE-2026-72996: Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate pri
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68890P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68890 [HIGH] CWE-122 CVE-2026-68890: Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privil
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-65787P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-65787 [HIGH] CWE-122 CVE-2026-65787: Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privil
Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-65814P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-65814 [HIGH] CWE-122 CVE-2026-65814: Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate p
Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62700P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62700 [HIGH] CWE-122 CVE-2026-62700: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges local
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62732P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62732 [HIGH] CWE-122 CVE-2026-62732: Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate pri
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62747P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62747 [HIGH] CWE-122 CVE-2026-62747: Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to el
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-65774P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-65774 [HIGH] CWE-122 CVE-2026-65774: Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges
Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-70345P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-70345 [HIGH] CWE-122 CVE-2026-70345: Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges
Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-61923P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-61923 [HIGH] CWE-122 CVE-2026-61923: Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to e
Heap-based buffer overflow in Windows Display Enhancement Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-65786P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-65786 [HIGH] CWE-122 CVE-2026-65786: Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privil
Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62710P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62710 [HIGH] CWE-122 CVE-2026-62710: Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to el
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62885P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62885 [HIGH] CWE-122 CVE-2026-62885: Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges loc
Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62752P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62752 [HIGH] CWE-122 CVE-2026-62752: Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges l
Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62754P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62754 [HIGH] CWE-122 CVE-2026-62754: Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges l
Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-61353P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-61353 [HIGH] CWE-122 CVE-2026-61353: Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate pri
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
nvd