Microsoft Windows 11 22H2 vulnerabilities
1,431 known vulnerabilities affecting microsoft/windows_11_22h2.
Total CVEs
1,431
CISA KEV
67
actively exploited
Public exploits
28
Exploited in wild
44
Severity breakdown
CRITICAL39HIGH1000MEDIUM387LOW5
Vulnerabilities
Page 30 of 72
CVE-2025-21268MEDIUMCVSS 4.3fixed in 10.0.22621.47512025-01-14
CVE-2025-21268 [MEDIUM] CWE-41 CVE-2025-21268: MapUrlToZone Security Feature Bypass Vulnerability
MapUrlToZone Security Feature Bypass Vulnerability
nvd
CVE-2025-21310MEDIUMCVSS 6.6fixed in 10.0.22621.47512025-01-14
CVE-2025-21310 [MEDIUM] CWE-125 CVE-2025-21310: Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21226MEDIUMCVSS 6.6fixed in 10.0.22621.47512025-01-14
CVE-2025-21226 [MEDIUM] CWE-125 CVE-2025-21226: Windows Digital Media Elevation of Privilege Vulnerability
Windows Digital Media Elevation of Privilege Vulnerability
nvd
CVE-2025-21288MEDIUMCVSS 6.5fixed in 10.0.22621.47512025-01-14
CVE-2025-21288 [MEDIUM] CWE-908 CVE-2025-21288: Windows COM Server Information Disclosure Vulnerability
Windows COM Server Information Disclosure Vulnerability
nvd
CVE-2025-21312LOWCVSS 2.4fixed in 10.0.22621.47512025-01-14
CVE-2025-21312 [LOW] CWE-908 CVE-2025-21312: Windows Smart Card Reader Information Disclosure Vulnerability
Windows Smart Card Reader Information Disclosure Vulnerability
nvd
CVE-2024-49112CRITICALCVSS 9.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49112 [CRITICAL] CWE-190 CVE-2024-49112: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2024-49122HIGHCVSS 8.1fixed in 10.0.22621.46022024-12-12
CVE-2024-49122 [HIGH] CWE-416 CVE-2024-49122: Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
nvd
CVE-2024-49105HIGHCVSS 8.4fixed in 10.0.22621.46022024-12-12
CVE-2024-49105 [HIGH] CWE-284 CVE-2024-49105: Remote Desktop Client Remote Code Execution Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
nvd
CVE-2024-49080HIGHCVSS 8.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49080 [HIGH] CWE-122 CVE-2024-49080: Windows IP Routing Management Snapin Remote Code Execution Vulnerability
Windows IP Routing Management Snapin Remote Code Execution Vulnerability
nvd
CVE-2024-49088HIGHCVSS 7.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49088 [HIGH] CWE-126 CVE-2024-49088: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49090HIGHCVSS 7.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49090 [HIGH] CWE-822 CVE-2024-49090: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
nvd
CVE-2024-49089HIGHCVSS 7.2fixed in 10.0.22621.46022024-12-12
CVE-2024-49089 [HIGH] CWE-122 CVE-2024-49089: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49104HIGHCVSS 8.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49104 [HIGH] CWE-122 CVE-2024-49104: Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
nvd
CVE-2024-49123HIGHCVSS 8.1fixed in 10.0.22621.46022024-12-12
CVE-2024-49123 [HIGH] CWE-591 CVE-2024-49123: Windows Remote Desktop Services Remote Code Execution Vulnerability
Windows Remote Desktop Services Remote Code Execution Vulnerability
nvd
CVE-2024-49107HIGHCVSS 7.3fixed in 10.0.22621.46022024-12-12
CVE-2024-49107 [HIGH] CWE-59 CVE-2024-49107: WmsRepair Service Elevation of Privilege Vulnerability
WmsRepair Service Elevation of Privilege Vulnerability
nvd
CVE-2024-49126HIGHCVSS 8.1fixed in 10.0.22621.46022024-12-12
CVE-2024-49126 [HIGH] CWE-416 CVE-2024-49126: Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
nvd
CVE-2024-49121HIGHCVSS 7.5fixed in 10.0.22621.46022024-12-12
CVE-2024-49121 [HIGH] CWE-476 CVE-2024-49121: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2024-49079HIGHCVSS 7.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49079 [HIGH] CWE-416 CVE-2024-49079: Input Method Editor (IME) Remote Code Execution Vulnerability
Input Method Editor (IME) Remote Code Execution Vulnerability
nvd
CVE-2024-49097HIGHCVSS 7.0fixed in 10.0.22621.46022024-12-12
CVE-2024-49097 [HIGH] CWE-416 CVE-2024-49097: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
nvd
CVE-2024-49076HIGHCVSS 7.8fixed in 10.0.22621.46022024-12-12
CVE-2024-49076 [HIGH] CWE-287 CVE-2024-49076: Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
nvd