Microsoft Windows 11 22H2 vulnerabilities

1,431 known vulnerabilities affecting microsoft/windows_11_22h2.

Total CVEs
1,431
CISA KEV
67
actively exploited
Public exploits
28
Exploited in wild
44
Severity breakdown
CRITICAL39HIGH1000MEDIUM387LOW5

Vulnerabilities

Page 26 of 72
CVE-2025-21332HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21332 [HIGH] CWE-41 CVE-2025-21332: MapUrlToZone Security Feature Bypass Vulnerability MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2025-21292HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21292 [HIGH] CWE-94 CVE-2025-21292: Windows Search Service Elevation of Privilege Vulnerability Windows Search Service Elevation of Privilege Vulnerability
nvd
CVE-2025-21305HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21305 [HIGH] CWE-122 CVE-2025-21305: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21252HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21252 [HIGH] CWE-122 CVE-2025-21252: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21235HIGHCVSS 7.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21235 [HIGH] CWE-20 CVE-2025-21235: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2025-21382HIGHCVSS 7.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21382 [HIGH] CWE-122 CVE-2025-21382: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2025-21266HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21266 [HIGH] CWE-122 CVE-2025-21266: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21230HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21230 [HIGH] CWE-20 CVE-2025-21230: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21276HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21276 [HIGH] CWE-191 CVE-2025-21276: Windows MapUrlToZone Denial of Service Vulnerability Windows MapUrlToZone Denial of Service Vulnerability
nvd
CVE-2025-21277HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21277 [HIGH] CWE-126 CVE-2025-21277: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21240HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21240 [HIGH] CWE-122 CVE-2025-21240: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21411HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21411 [HIGH] CWE-122 CVE-2025-21411: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21237HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21237 [HIGH] CWE-122 CVE-2025-21237: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21333HIGHCVSS 7.8KEVPoCfixed in 10.0.22621.47512025-01-14
CVE-2025-21333 [HIGH] CWE-122 CVE-2025-21333: Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
nvd
CVE-2025-21273HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21273 [HIGH] CWE-122 CVE-2025-21273: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21241HIGHCVSS 8.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21241 [HIGH] CWE-122 CVE-2025-21241: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21251HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21251 [HIGH] CWE-400 CVE-2025-21251: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21299HIGHCVSS 7.8fixed in 10.0.22621.47512025-01-14
CVE-2025-21299 [HIGH] CWE-922 CVE-2025-21299: Windows Kerberos Security Feature Bypass Vulnerability Windows Kerberos Security Feature Bypass Vulnerability
nvd
CVE-2025-21330HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21330 [HIGH] CWE-400 CVE-2025-21330: Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability
nvd
CVE-2025-21220HIGHCVSS 7.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21220 [HIGH] CWE-908 CVE-2025-21220: Microsoft Message Queuing Information Disclosure Vulnerability Microsoft Message Queuing Information Disclosure Vulnerability
nvd