Microsoft Windows 10 Version 22H2 vulnerabilities
2,407 known vulnerabilities affecting microsoft/windows_10_version_22h2.
Total CVEs
2,407
CISA KEV
79
actively exploited
Public exploits
52
Exploited in wild
96
Severity breakdown
CRITICAL63HIGH1710MEDIUM623LOW11
Vulnerabilities
Page 33 of 121
CVE-2026-54983P3HIGHCVSS 7.5≥ 10.0.19045.0, < 10.0.19045.75482026-07-14
CVE-2026-54983 [HIGH] CWE-121 CVE-2026-54983: Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized a
Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
nvd
CVE-2024-38241P3HIGHCVSS 7.8≥ 10.0.19045.0, < 10.0.19045.48942024-09-10
CVE-2024-38241 [HIGH] CWE-20 CVE-2024-38241: Kernel Streaming Service Driver Elevation of Privilege Vulnerability
Kernel Streaming Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2026-50445P3HIGHCVSS 7.5≥ 10.0.19045.0, < 10.0.19045.75482026-07-14
CVE-2026-50445 [HIGH] CWE-126 CVE-2026-50445: Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a netwo
Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2025-60704P3HIGHCVSS 7.5≥ 10.0.19045.0, < 10.0.19045.65752025-11-11
CVE-2025-60704 [HIGH] CWE-325 CVE-2025-60704: Missing cryptographic step in Windows Kerberos allows an unauthorized attacker to elevate privileges
Missing cryptographic step in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network.
nvd
CVE-2024-26182P3HIGHCVSS 7.8≥ 10.0.19045.0, < 10.0.19045.41702024-03-12
CVE-2024-26182 [HIGH] CWE-416 CVE-2024-26182: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43623P3HIGHCVSS 7.8≥ 10.0.19045.0, < 10.0.19045.51312024-11-12
CVE-2024-43623 [HIGH] CWE-190 CVE-2024-43623: Windows NT OS Kernel Elevation of Privilege Vulnerability
Windows NT OS Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-26211P3HIGHCVSS 7.8≥ 10.0.19045.0, < 10.0.19045.44122024-04-09
CVE-2024-26211 [HIGH] CWE-122 CVE-2024-26211: Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
nvd
CVE-2024-49105P3HIGHCVSS 8.4≥ 10.0.19045.0, < 10.0.19045.52472024-12-12
CVE-2024-49105 [HIGH] CWE-284 CVE-2024-49105: Remote Desktop Client Remote Code Execution Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2025-49723P3HIGHCVSS 8.8≥ 10.0.19045.0, < 10.0.19045.60932025-07-08
CVE-2025-49723 [HIGH] CWE-862 CVE-2025-49723: Missing authorization in Windows StateRepository API allows an authorized attacker to perform tamper
Missing authorization in Windows StateRepository API allows an authorized attacker to perform tampering locally.
nvd
CVE-2023-21546P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21546 [HIGH] CWE-591 CVE-2023-21546: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2023-21679P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21679 [HIGH] CWE-416 CVE-2023-21679: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2023-21555P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21555 [HIGH] CWE-367 CVE-2023-21555: Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
nvd
CVE-2023-21548P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21548 [HIGH] CWE-591 CVE-2023-21548: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2023-21535P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21535 [HIGH] CWE-591 CVE-2023-21535: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-44676P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.23642022-12-13
CVE-2022-44676 [HIGH] CWE-362 CVE-2022-44676: Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
nvd
CVE-2022-41039P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.22512022-11-09
CVE-2022-41039 [HIGH] CWE-362 CVE-2022-41039: Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
nvd
CVE-2026-50429P3HIGHCVSS 8.2≥ 10.0.19045.0, < 10.0.19045.75482026-07-14
CVE-2026-50429 [HIGH] CWE-125 CVE-2026-50429: Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a
Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2023-23405P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.27282023-03-14
CVE-2023-23405 [HIGH] CWE-190 CVE-2023-23405: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-24908P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.27282023-03-14
CVE-2023-24908 [HIGH] CWE-190 CVE-2023-24908: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-24869P3HIGHCVSS 8.1≥ 10.0.19045.0, < 10.0.19045.27282023-03-14
CVE-2023-24869 [HIGH] CWE-190 CVE-2023-24869: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd