Microsoft Windows 10 Version 22H2 vulnerabilities
2,407 known vulnerabilities affecting microsoft/windows_10_version_22h2.
Total CVEs
2,407
CISA KEV
79
actively exploited
Public exploits
52
Exploited in wild
97
Severity breakdown
CRITICAL63HIGH1710MEDIUM623LOW11
Vulnerabilities
Page 92 of 121
CVE-2023-36721P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.35702023-10-10
CVE-2023-36721 [HIGH] CWE-269 CVE-2023-36721: Windows Error Reporting Service Elevation of Privilege Vulnerability
Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21429P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.41702024-03-12
CVE-2024-21429 [MEDIUM] CWE-197 CVE-2024-21429: Windows USB Hub Driver Remote Code Execution Vulnerability
Windows USB Hub Driver Remote Code Execution Vulnerability
nvd
CVE-2023-21771P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21771 [HIGH] CWE-591 CVE-2023-21771: Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability
Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability
nvd
CVE-2024-21405P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.40462024-02-13
CVE-2024-21405 [HIGH] CWE-591 CVE-2024-21405: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2023-35378P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.33242023-08-08
CVE-2023-35378 [HIGH] CWE-367 CVE-2023-35378: Windows Projected File System Elevation of Privilege Vulnerability
Windows Projected File System Elevation of Privilege Vulnerability
nvd
CVE-2024-21355P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.40462024-02-13
CVE-2024-21355 [HIGH] CWE-591 CVE-2024-21355: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2025-26637P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.57372025-04-08
CVE-2025-26637 [MEDIUM] CWE-693 CVE-2025-26637: Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a securi
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
nvd
CVE-2023-24861P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.27282023-03-14
CVE-2023-24861 [HIGH] CWE-367 CVE-2023-24861: Windows Graphics Component Elevation of Privilege Vulnerability
Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2023-28273P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.28462023-04-11
CVE-2023-28273 [HIGH] CWE-591 CVE-2023-28273: Windows Clip Service Elevation of Privilege Vulnerability
Windows Clip Service Elevation of Privilege Vulnerability
nvd
CVE-2023-23393P4HIGHCVSS 7.0≥ 10.0.19045.0, < 10.0.19045.27282023-03-14
CVE-2023-23393 [HIGH] CWE-591 CVE-2023-23393: Windows BrokerInfrastructure Service Elevation of Privilege Vulnerability
Windows BrokerInfrastructure Service Elevation of Privilege Vulnerability
nvd
CVE-2024-26252P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.42912024-04-09
CVE-2024-26252 [MEDIUM] CWE-822 CVE-2024-26252: Windows rndismp6.sys Remote Code Execution Vulnerability
Windows rndismp6.sys Remote Code Execution Vulnerability
nvd
CVE-2024-26253P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.42912024-04-09
CVE-2024-26253 [MEDIUM] CWE-20 CVE-2024-26253: Windows rndismp6.sys Remote Code Execution Vulnerability
Windows rndismp6.sys Remote Code Execution Vulnerability
nvd
CVE-2023-21694P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.26042023-02-14
CVE-2023-21694 [MEDIUM] CWE-122 CVE-2023-21694: Windows Fax Service Remote Code Execution Vulnerability
Windows Fax Service Remote Code Execution Vulnerability
nvd
CVE-2026-50374P4MEDIUMCVSS 6.8≥ 10.0.19045.0, < 10.0.19045.75482026-07-14
CVE-2026-50374 [MEDIUM] CWE-416 CVE-2026-50374: Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a physical attack.
nvd
CVE-2025-29954P4MEDIUMCVSS 5.9≥ 10.0.19045.0, < 10.0.19045.58542025-05-13
CVE-2025-29954 [MEDIUM] CWE-400 CVE-2025-29954: Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an
Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network.
nvd
CVE-2024-30034P4MEDIUMCVSS 5.5≥ 10.0.19045.0, < 10.0.19045.44122024-05-14
CVE-2024-30034 [MEDIUM] CWE-843 CVE-2024-30034: Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
nvd
CVE-2025-29956P4MEDIUMCVSS 5.4≥ 10.0.19045.0, < 10.0.19045.58542025-05-13
CVE-2025-29956 [MEDIUM] CWE-126 CVE-2025-29956: Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network.
nvd
CVE-2026-25185P4MEDIUMCVSS 5.3≥ 10.0.19045.0, < 10.0.19045.70582026-03-10
CVE-2026-25185 [MEDIUM] CWE-200 CVE-2026-25185: Exposure of sensitive information to an unauthorized actor in Windows Shell Link Processing allows a
Exposure of sensitive information to an unauthorized actor in Windows Shell Link Processing allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2025-62567P4MEDIUMCVSS 5.3≥ 10.0.19045.0, < 10.0.19045.66912025-12-09
CVE-2025-62567 [MEDIUM] CWE-191 CVE-2025-62567: Integer underflow (wrap or wraparound) in Windows Hyper-V allows an authorized attacker to deny serv
Integer underflow (wrap or wraparound) in Windows Hyper-V allows an authorized attacker to deny service over a network.
nvd
CVE-2023-21750P4HIGHCVSS 7.1≥ 10.0.19045.0, < 10.0.19045.24862023-01-10
CVE-2023-21750 [HIGH] CWE-284 CVE-2023-21750: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd