Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13
Vulnerabilities
Page 46 of 182
CVE-2026-68827P3HIGHCVSS 8.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68827 [HIGH] CWE-122 CVE-2026-68827: Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate priv
Integer underflow (wrap or wraparound) in Windows GDI+ allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2024-38052P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.46512024-07-09
CVE-2024-38052 [HIGH] CWE-20 CVE-2024-38052: Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-26668P3HIGHCVSS 7.5≥ 10.0.19044.0, < 10.0.19044.57372025-04-08
CVE-2025-26668 [HIGH] CWE-122 CVE-2025-26668: Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorize
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-21246P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.69372026-02-10
CVE-2026-21246 [HIGH] CWE-122 CVE-2026-21246: Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50482P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50482 [HIGH] CWE-122 CVE-2026-50482: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd
CVE-2026-58640P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-58640 [HIGH] CWE-122 CVE-2026-58640: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd
CVE-2026-49184P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-49184 [HIGH] CWE-122 CVE-2026-49184: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-62810P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-62810 [HIGH] CWE-122 CVE-2026-62810: Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized att
Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69359P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69359 [HIGH] CWE-122 CVE-2026-69359: Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elev
Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69368P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69368 [HIGH] CWE-122 CVE-2026-69368: Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privil
Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69841P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69841 [HIGH] CWE-122 CVE-2026-69841: Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to
Heap-based buffer overflow in Windows Encrypting File System (EFS) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69731P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69731 [HIGH] CWE-122 CVE-2026-69731: Heap-based buffer overflow in HID class driver allows an authorized attacker to elevate privileges l
Heap-based buffer overflow in HID class driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69283P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69283 [HIGH] CWE-122 CVE-2026-69283: Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privile
Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69480P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69480 [HIGH] CWE-122 CVE-2026-69480: Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to e
Heap-based buffer overflow in Windows Partition Management Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69433P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69433 [HIGH] CWE-122 CVE-2026-69433: Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-72953P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-72953 [HIGH] CWE-122 CVE-2026-72953: Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69513P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69513 [HIGH] CWE-122 CVE-2026-69513: Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68848P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68848 [HIGH] CWE-122 CVE-2026-68848: Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elev
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-73024P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73024 [HIGH] CWE-122 CVE-2026-73024: Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attack
Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68844P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68844 [HIGH] CWE-122 CVE-2026-68844: Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to exe
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
nvd