Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13
Vulnerabilities
Page 47 of 182
CVE-2026-69921P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69921 [HIGH] CWE-122 CVE-2026-69921: Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elev
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69389P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69389 [HIGH] CWE-122 CVE-2026-69389: Heap-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to e
Heap-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-70564P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-70564 [HIGH] CWE-122 CVE-2026-70564: Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elev
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68845P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68845 [HIGH] CWE-122 CVE-2026-68845: Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized a
Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-68877P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-68877 [HIGH] CWE-122 CVE-2026-68877: Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to exe
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
nvd
CVE-2026-69424P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69424 [HIGH] CWE-122 CVE-2026-69424: Heap-based buffer overflow in Windows Distributed File System (DFS) allows an authorized attacker to
Heap-based buffer overflow in Windows Distributed File System (DFS) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69426P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69426 [HIGH] CWE-122 CVE-2026-69426: Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to execute code loca
Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to execute code locally.
nvd
CVE-2026-69436P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69436 [HIGH] CWE-122 CVE-2026-69436: Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69277P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69277 [HIGH] CWE-121 CVE-2026-69277: Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authoriz
Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62739P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62739 [HIGH] CWE-122 CVE-2026-62739: Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l
Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-61355P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-61355 [HIGH] CWE-122 CVE-2026-61355: Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate p
Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62719P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62719 [HIGH] CWE-122 CVE-2026-62719: Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-61926P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-61926 [HIGH] CWE-122 CVE-2026-61926: Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62770P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62770 [HIGH] CWE-122 CVE-2026-62770: Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges loca
Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-66799P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-66799 [HIGH] CWE-122 CVE-2026-66799: Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges
Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-65790P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-65790 [HIGH] CWE-122 CVE-2026-65790: Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62717P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62717 [HIGH] CWE-122 CVE-2026-62717: Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privi
Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-62735P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-62735 [HIGH] CWE-122 CVE-2026-62735: Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges l
Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-58601P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-58601 [HIGH] CWE-122 CVE-2026-58601: Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker
Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50309P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50309 [HIGH] CWE-122 CVE-2026-50309: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd