cbcvebase.

Microsoft Windows 10 Version 21H2 vulnerabilities

3,631 known vulnerabilities affecting microsoft/windows_10_version_21h2.

Total CVEs
3,631
CISA KEV
98
actively exploited
Public exploits
68
Exploited in wild
126
Severity breakdown
CRITICAL104HIGH2642MEDIUM872LOW13

Vulnerabilities

Page 88 of 182
CVE-2026-69460P3HIGHCVSS 7.1≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69460 [HIGH] CWE-416 CVE-2026-69460: Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate pr Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2026-69364P3HIGHCVSS 7.1≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69364 [HIGH] CWE-362 CVE-2026-69364: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2026-70573P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-70573 [HIGH] CWE-20 CVE-2026-70573: Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate pri Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-70578P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-70578 [HIGH] CWE-122 CVE-2026-70578: Heap-based buffer overflow in Windows Credential Guard allows an authorized attacker to elevate priv Heap-based buffer overflow in Windows Credential Guard allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-69468P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.77252026-09-08
CVE-2026-69468 [HIGH] CWE-122 CVE-2026-69468: Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50472P3HIGHCVSS 7.0≥ 10.0.19044.0, < 10.0.19044.76632026-08-11
CVE-2026-50472 [HIGH] CWE-122 CVE-2026-50472: Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges loca Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-20666MEDIUMCVSS 6.6Exploited≥ 10.0.19043.0, < 10.0.19044.39302024-01-09
CVE-2024-20666 [MEDIUM] CWE-20 BitLocker Security Feature Bypass Vulnerability BitLocker Security Feature Bypass Vulnerability BitLocker Security Feature Bypass Vulnerability
cvelistv5
CVE-2023-35387P3HIGHCVSS 8.8≥ 10.0.19044.0, < 10.0.19044.33242023-08-08
CVE-2023-35387 [HIGH] CWE-191 CVE-2023-35387: Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability
nvd
CVE-2024-21371P3HIGHCVSS 7.0≥ 10.0.19043.0, < 10.0.19044.40462024-02-13
CVE-2024-21371 [HIGH] CWE-367 CVE-2024-21371: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2022-26926P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19043.17062022-05-10
CVE-2022-26926 [HIGH] CWE-284 CVE-2022-26926: Windows Address Book Remote Code Execution Vulnerability Windows Address Book Remote Code Execution Vulnerability
nvd
CVE-2022-26903P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19043.16452022-04-15
CVE-2022-26903 [HIGH] CVE-2022-26903: Windows Graphics Component Remote Code Execution Vulnerability Windows Graphics Component Remote Code Execution Vulnerability
nvd
CVE-2022-21888P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.14662022-01-11
CVE-2022-21888 [HIGH] CVE-2022-21888: Windows Modern Execution Server Remote Code Execution Vulnerability Windows Modern Execution Server Remote Code Execution Vulnerability
nvd
CVE-2022-30206P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.18262022-07-12
CVE-2022-30206 [HIGH] CVE-2022-30206: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-37955P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.20062022-09-13
CVE-2022-37955 [HIGH] CVE-2022-37955: Windows Group Policy Elevation of Privilege Vulnerability Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2021-43234P3HIGHCVSS 7.8≥ 10.0.0, < 10.0.19044.14152021-12-15
CVE-2021-43234 [HIGH] CVE-2021-43234: Windows Fax Service Remote Code Execution Vulnerability Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2022-21913P3HIGHCVSS 7.5≥ 10.0.19043.0, < 10.0.19044.14662022-01-11
CVE-2022-21913 [HIGH] CVE-2022-21913: Local Security Authority (Domain Policy) Remote Protocol Security Feature Bypass Local Security Authority (Domain Policy) Remote Protocol Security Feature Bypass
nvd
CVE-2022-24494P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19044.16452022-04-15
CVE-2022-24494 [HIGH] CVE-2022-24494: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2022-23284P3HIGHCVSS 7.2≥ 10.0.19043.0, < 10.0.19044.15862022-03-09
CVE-2022-23284 [HIGH] CVE-2022-23284: Windows Print Spooler Elevation of Privilege Vulnerability Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-21838P3HIGHCVSS 7.8≥ 10.0.19043.0, < 10.0.19043.14662022-01-11
CVE-2022-21838 [HIGH] CWE-59 CVE-2022-21838: Windows Cleanup Manager Elevation of Privilege Vulnerability Windows Cleanup Manager Elevation of Privilege Vulnerability
nvd
CVE-2022-26913P3HIGHCVSS 7.4≥ 10.0.19043.0, < 10.0.19043.17062022-05-10
CVE-2022-26913 [HIGH] CVE-2022-26913: Windows Authentication Information Disclosure Vulnerability Windows Authentication Information Disclosure Vulnerability
nvd
Microsoft Windows 10 Version 21H2 vulnerabilities | cvebase