Microsoft Windows 10 Version 21H2 vulnerabilities
2,906 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
2,906
CISA KEV
95
actively exploited
Public exploits
67
Exploited in wild
123
Severity breakdown
CRITICAL79HIGH2093MEDIUM721LOW13
Vulnerabilities
Page 70 of 146
CVE-2025-49689P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.60932025-07-08
CVE-2025-49689 [HIGH] CWE-125 CVE-2025-49689: Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevat
Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2024-49074P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.52472024-12-12
CVE-2024-49074 [HIGH] CWE-416 CVE-2024-49074: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-37978P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.21302022-10-11
CVE-2022-37978 [HIGH] CVE-2022-37978: Windows Active Directory Certificate Services Security Feature Bypass
Windows Active Directory Certificate Services Security Feature Bypass
nvd
CVE-2024-43509P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.50112024-10-08
CVE-2024-43509 [HIGH] CWE-416 CVE-2024-43509: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2025-21367P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.54872025-02-11
CVE-2025-21367 [HIGH] CWE-416 CVE-2025-21367: Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
nvd
CVE-2023-38141P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.34482023-09-12
CVE-2023-38141 [HIGH] CWE-367 CVE-2023-38141: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43516P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.51312024-10-08
CVE-2024-43516 [HIGH] CWE-822 CVE-2024-43516: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-38142P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.47802024-08-13
CVE-2024-38142 [HIGH] CWE-122 CVE-2024-38142: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-43514P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.50112024-10-08
CVE-2024-43514 [HIGH] CWE-415 CVE-2024-43514: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
nvd
CVE-2024-38252P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.48942024-09-10
CVE-2024-38252 [HIGH] CWE-416 CVE-2024-38252: Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
nvd
CVE-2023-36729P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36729 [HIGH] CWE-121 CVE-2023-36729: Named Pipe File System Elevation of Privilege Vulnerability
Named Pipe File System Elevation of Privilege Vulnerability
nvd
CVE-2023-36904P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.33242023-08-08
CVE-2023-36904 [HIGH] CWE-126 CVE-2023-36904: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-43640P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43640 [HIGH] CWE-415 CVE-2024-43640: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-21378P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.53712025-01-14
CVE-2025-21378 [HIGH] CWE-122 CVE-2025-21378: Windows CSC Service Elevation of Privilege Vulnerability
Windows CSC Service Elevation of Privilege Vulnerability
nvd
CVE-2024-43644P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43644 [HIGH] CWE-125 CVE-2024-43644: Windows Client-Side Caching Elevation of Privilege Vulnerability
Windows Client-Side Caching Elevation of Privilege Vulnerability
nvd
CVE-2024-43646P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43646 [HIGH] CWE-822 CVE-2024-43646: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2024-43631P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.51312024-11-12
CVE-2024-43631 [HIGH] CWE-822 CVE-2024-43631: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2023-36725P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36725 [HIGH] CWE-284 CVE-2023-36725: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43528P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.51312024-10-08
CVE-2024-43528 [HIGH] CWE-122 CVE-2024-43528: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
nvd
CVE-2026-25190P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.70582026-03-10
CVE-2026-25190 [HIGH] CWE-426 CVE-2026-25190: Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
nvd