cbcvebase.

Microsoft Windows 11 22H2 vulnerabilities

1,432 known vulnerabilities affecting microsoft/windows_11_22h2.

Total CVEs
1,432
CISA KEV
67
actively exploited
Public exploits
43
Exploited in wild
75
Severity breakdown
CRITICAL39HIGH1001MEDIUM387LOW5

Vulnerabilities

Page 57 of 72
CVE-2024-26209P4MEDIUMCVSS 5.5fixed in 10.0.22621.34472024-04-09
CVE-2024-26209 [MEDIUM] CWE-908 CVE-2024-26209: Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
nvd
CVE-2025-48823P4MEDIUMCVSS 5.9fixed in 10.0.22621.56242025-07-08
CVE-2025-48823 [MEDIUM] CWE-310 CVE-2025-48823: Cryptographic issues in Windows Cryptographic Services allows an unauthorized attacker to disclose i Cryptographic issues in Windows Cryptographic Services allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2023-1018P4MEDIUMCVSS 5.5fixed in 10.0.22621.14132023-02-28
CVE-2023-1018 [MEDIUM] CWE-125 CVE-2023-1018: An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past th An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine. An attacker who can successfully exploit this vulnerability can read or access sensitive data stored in the TPM.
nvd
CVE-2024-26160P4MEDIUMCVSS 5.5fixed in 10.0.22621.32962024-03-12
CVE-2024-26160 [MEDIUM] CWE-126 CVE-2024-26160: Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
nvd
CVE-2024-21356P4MEDIUMCVSS 6.5fixed in 10.0.22621.31552024-02-13
CVE-2024-21356 [MEDIUM] CWE-476 CVE-2024-21356: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2023-35329P4MEDIUMCVSS 6.5fixed in 10.0.22621.19922023-07-11
CVE-2023-35329 [MEDIUM] CWE-400 CVE-2023-35329: Windows Authentication Denial of Service Vulnerability Windows Authentication Denial of Service Vulnerability
nvd
CVE-2024-20657P4HIGHCVSS 7.0fixed in 10.0.22621.30072024-01-09
CVE-2024-20657 [HIGH] CWE-284 CVE-2024-20657: Windows Group Policy Elevation of Privilege Vulnerability Windows Group Policy Elevation of Privilege Vulnerability
nvd
CVE-2023-21739P4HIGHCVSS 7.0fixed in 10.0.22621.11052023-01-10
CVE-2023-21739 [HIGH] CWE-591 CVE-2023-21739: Windows Bluetooth Driver Elevation of Privilege Vulnerability Windows Bluetooth Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-36902P4HIGHCVSS 7.0fixed in 10.0.22621.24282023-10-10
CVE-2023-36902 [HIGH] CWE-416 CVE-2023-36902: Windows Runtime Remote Code Execution Vulnerability Windows Runtime Remote Code Execution Vulnerability
nvd
CVE-2023-28221P4HIGHCVSS 7.0fixed in 10.0.22621.15552023-04-11
CVE-2023-28221 [HIGH] CWE-200 CVE-2023-28221: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21341P4MEDIUMCVSS 6.8fixed in 10.0.22621.31552024-02-13
CVE-2024-21341 [MEDIUM] CWE-122 CVE-2024-21341: Windows Kernel Remote Code Execution Vulnerability Windows Kernel Remote Code Execution Vulnerability
nvd
CVE-2023-36721P4HIGHCVSS 7.0fixed in 10.0.22621.24282023-10-10
CVE-2023-36721 [HIGH] CWE-269 CVE-2023-36721: Windows Error Reporting Service Elevation of Privilege Vulnerability Windows Error Reporting Service Elevation of Privilege Vulnerability
nvd
CVE-2024-21429P4MEDIUMCVSS 6.8fixed in 10.0.22621.32962024-03-12
CVE-2024-21429 [MEDIUM] CWE-197 CVE-2024-21429: Windows USB Hub Driver Remote Code Execution Vulnerability Windows USB Hub Driver Remote Code Execution Vulnerability
nvd
CVE-2024-21405P4HIGHCVSS 7.0fixed in 10.0.22621.31552024-02-13
CVE-2024-21405 [HIGH] CWE-591 CVE-2024-21405: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2023-35378P4HIGHCVSS 7.0fixed in 10.0.22621.21342023-08-08
CVE-2023-35378 [HIGH] CWE-367 CVE-2023-35378: Windows Projected File System Elevation of Privilege Vulnerability Windows Projected File System Elevation of Privilege Vulnerability
nvd
CVE-2023-24899P4HIGHCVSS 7.0fixed in 10.0.22000.17022023-05-09
CVE-2023-24899 [HIGH] CWE-591 CVE-2023-24899: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
CVE-2024-21355P4HIGHCVSS 7.0fixed in 10.0.22621.31552024-02-13
CVE-2024-21355 [HIGH] CWE-591 CVE-2024-21355: Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
nvd
CVE-2025-26637P4MEDIUMCVSS 6.8fixed in 10.0.22621.51892025-04-08
CVE-2025-26637 [MEDIUM] CWE-693 CVE-2025-26637: Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a securi Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
nvd
CVE-2023-32010P4HIGHCVSS 7.0fixed in 10.0.22621.18482023-06-14
CVE-2023-32010 [HIGH] CWE-591 CVE-2023-32010: Windows Bus Filter Driver Elevation of Privilege Vulnerability Windows Bus Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2023-24861P4HIGHCVSS 7.0fixed in 10.0.22000.14132023-03-14
CVE-2023-24861 [HIGH] CWE-367 CVE-2023-24861: Windows Graphics Component Elevation of Privilege Vulnerability Windows Graphics Component Elevation of Privilege Vulnerability
nvd
Microsoft Windows 11 22H2 vulnerabilities | cvebase