Microsoft Windows 10 Version 21H2 vulnerabilities
3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.
Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2642MEDIUM872LOW13
Vulnerabilities
Page 79 of 182
CVE-2026-32165P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.71842026-04-14
CVE-2026-32165 [HIGH] CWE-362 CVE-2026-32165: Use after free in Windows User Interface Core allows an authorized attacker to elevate privileges lo
Use after free in Windows User Interface Core allows an authorized attacker to elevate privileges locally.
nvd
CVE-2022-24547P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.16452022-04-15
CVE-2022-24547 [HIGH] CVE-2022-24547: Windows Digital Media Receiver Elevation of Privilege Vulnerability
Windows Digital Media Receiver Elevation of Privilege Vulnerability
nvd
CVE-2024-30092P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.50112024-10-08
CVE-2024-30092 [HIGH] CWE-20 CVE-2024-30092: Windows Hyper-V Remote Code Execution Vulnerability
Windows Hyper-V Remote Code Execution Vulnerability
nvd
CVE-2026-73017P3HIGHCVSS 7.5≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-73017 [HIGH] CWE-122 CVE-2026-73017: Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code
Heap-based buffer overflow in Windows Graphics Kernel allows an authorized attacker to execute code locally.
nvd
CVE-2022-35751P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.18892023-05-31
CVE-2022-35751 [HIGH] CVE-2022-35751: Windows Hyper-V Elevation of Privilege Vulnerability
Windows Hyper-V Elevation of Privilege Vulnerability
nvd
CVE-2026-20853P3HIGHCVSS 7.4≥ 10.0.19044.0, < 10.0.19044.68092026-01-13
CVE-2026-20853 [HIGH] CWE-362 CVE-2026-20853: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2022-44675P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.23642022-12-13
CVE-2022-44675 [HIGH] CVE-2022-44675: Windows Bluetooth Driver Elevation of Privilege Vulnerability
Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2022-30147P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19043.17662022-06-15
CVE-2022-30147 [HIGH] CVE-2022-30147: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2022-34699P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.18892022-08-09
CVE-2022-34699 [HIGH] CWE-269 CVE-2022-34699: Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
nvd
CVE-2022-21994P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.15262022-02-09
CVE-2022-21994 [HIGH] CVE-2022-21994: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2022-24507P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.15862022-03-09
CVE-2022-24507 [HIGH] CVE-2022-24507: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2023-24912P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.28462023-04-11
CVE-2023-24912 [HIGH] CWE-122 CVE-2023-24912: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2022-21989P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.15262022-02-09
CVE-2022-21989 [HIGH] CVE-2022-21989: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-21417P3HIGHCVSS 8.8≥ 10.0.19043.0, < 10.0.19044.46512024-07-10
CVE-2024-21417 [HIGH] CWE-862 CVE-2024-21417: Windows Text Services Framework Elevation of Privilege Vulnerability
Windows Text Services Framework Elevation of Privilege Vulnerability
nvd
CVE-2025-48822P3HIGHCVSS 8.6≥ 10.0.19044.0, < 10.0.19044.60932025-07-08
CVE-2025-48822 [HIGH] CWE-125 CVE-2025-48822: Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
nvd
CVE-2022-35755P3HIGHCVSS 7.3≥ 10.0.19043.0, < 10.0.19044.18892023-05-31
CVE-2022-35755 [HIGH] CVE-2022-35755: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2025-24052P3HIGHCVSS 7.8≥ 10.0.19044.0, < 10.0.19044.64562025-10-14
CVE-2025-24052 [HIGH] CWE-121 CVE-2025-24052: Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update.
Fax modem hardware dependent on this specific driver will no longer work on Window
nvd
CVE-2023-36723P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19041.35702023-10-10
CVE-2023-36723 [HIGH] CWE-59 CVE-2023-36723: Windows Container Manager Service Elevation of Privilege Vulnerability
Windows Container Manager Service Elevation of Privilege Vulnerability
nvd
CVE-2022-35793P3HIGHCVSS 7.3≥ 10.0.19043.0, < 10.0.19044.18892022-08-09
CVE-2022-35793 [HIGH] CVE-2022-35793: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-26931P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19043.17062022-05-10
CVE-2022-26931 [HIGH] CVE-2022-26931: Windows Kerberos Elevation of Privilege Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
nvd