cbcvebase.

Microsoft Windows 10 Version 21H2 vulnerabilities

3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2641MEDIUM873LOW13

Vulnerabilities

Page 55 of 182
CVE-2025-24063P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.58542025-05-13
CVE-2025-24063 [HIGH] CWE-122 CVE-2025-24063: Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges loc Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-27490P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.57372025-04-08
CVE-2025-27490 [HIGH] CWE-122 CVE-2025-27490: Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate pri Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2022-24495P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.16452022-04-15
CVE-2022-24495 [HIGH] CVE-2022-24495: Windows Direct Show Remote Code Execution Vulnerability Windows Direct Show Remote Code Execution Vulnerability
nvd
CVE-2025-26688P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.57372025-04-08
CVE-2025-26688 [HIGH] CWE-121 CVE-2025-26688: Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
nvd
CVE-2023-35632P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.38032023-12-12
CVE-2023-35632 [HIGH] CWE-190 CVE-2023-35632: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2026-20810P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.68092026-01-13
CVE-2026-20810 [HIGH] CWE-590 CVE-2026-20810: Free of memory not on the heap in Windows Ancillary Function Driver for WinSock allows an authorized Free of memory not on the heap in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50471P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50471 [HIGH] CWE-122 CVE-2026-50471: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-50313P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50313 [HIGH] CWE-122 CVE-2026-50313: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-50448P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50448 [HIGH] CWE-122 CVE-2026-50448: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-49796P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-49796 [HIGH] CWE-122 CVE-2026-49796: Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-50461P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50461 [HIGH] CWE-122 CVE-2026-50461: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-49797P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-49797 [HIGH] CWE-122 CVE-2026-49797: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-50655P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50655 [HIGH] CWE-122 CVE-2026-50655: Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-50386P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.75482026-07-14
CVE-2026-50386 [HIGH] CWE-122 CVE-2026-50386: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-45636P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.74172026-06-09
CVE-2026-45636 [HIGH] CWE-20 CVE-2026-45636: Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-48574P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.74172026-06-09
CVE-2026-48574 [HIGH] CWE-122 CVE-2026-48574: Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-35421P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.72912026-05-12
CVE-2026-35421 [HIGH] CWE-122 CVE-2026-35421: Heap-based buffer overflow in Windows GDI allows an unauthorized attacker to execute code locally. Heap-based buffer overflow in Windows GDI allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-26156P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.71842026-04-14
CVE-2026-26156 [HIGH] CWE-20 CVE-2026-26156: Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locall Heap-based buffer overflow in Windows Hyper-V allows an unauthorized attacker to execute code locally.
nvd
CVE-2025-53155P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.62162025-08-12
CVE-2025-53155 [HIGH] CWE-122 CVE-2025-53155: Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges lo Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-64679P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.64562025-12-09
CVE-2025-64679 [HIGH] CWE-122 CVE-2025-64679: Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate priv Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
Microsoft Windows 10 Version 21H2 vulnerabilities | cvebase