Microsoft Windows 11 22H2 vulnerabilities
1,432 known vulnerabilities affecting microsoft/windows_11_22h2.
Total CVEs
1,432
CISA KEV
67
actively exploited
Public exploits
43
Exploited in wild
75
Severity breakdown
CRITICAL39HIGH1001MEDIUM387LOW5
Vulnerabilities
Page 61 of 72
CVE-2025-47980P4MEDIUMCVSS 6.2fixed in 10.0.22621.56242025-07-08
CVE-2025-47980 [MEDIUM] CWE-200 CVE-2025-47980: Exposure of sensitive information to an unauthorized actor in Windows Imaging Component allows an un
Exposure of sensitive information to an unauthorized actor in Windows Imaging Component allows an unauthorized attacker to disclose information locally.
nvd
CVE-2023-24900P4MEDIUMCVSS 5.9fixed in 10.0.22000.17022023-05-09
CVE-2023-24900 [MEDIUM] CWE-125 CVE-2023-24900: Windows NTLM Security Support Provider Information Disclosure Vulnerability
Windows NTLM Security Support Provider Information Disclosure Vulnerability
nvd
CVE-2025-32722P4MEDIUMCVSS 5.5fixed in 10.0.22621.54722025-06-10
CVE-2025-32722 [MEDIUM] CWE-284 CVE-2025-32722: Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose inf
Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally.
nvd
CVE-2025-55338P4MEDIUMCVSS 4.6fixed in 10.0.22621.60602025-10-14
CVE-2025-55338 [MEDIUM] CWE-1310 CVE-2025-55338: Missing Ability to Patch ROM Code in Windows BitLocker allows an unauthorized attacker to bypass a s
Missing Ability to Patch ROM Code in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
nvd
CVE-2025-54101P4MEDIUMCVSS 4.8fixed in 10.0.22621.59092025-09-09
CVE-2025-54101 [MEDIUM] CWE-416 CVE-2025-54101: Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.
Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.
nvd
CVE-2025-47160P4MEDIUMCVSS 5.4fixed in 10.0.22621.54722025-06-10
CVE-2025-47160 [MEDIUM] CWE-693 CVE-2025-47160: Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security f
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
nvd
CVE-2025-55325P4MEDIUMCVSS 5.5fixed in 10.0.22621.60602025-10-14
CVE-2025-55325 [MEDIUM] CWE-126 CVE-2025-55325: Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose in
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
nvd
CVE-2025-55334P4MEDIUMCVSS 5.5fixed in 10.0.22621.60602025-10-14
CVE-2025-55334 [MEDIUM] CWE-312 CVE-2025-55334: Cleartext storage of sensitive information in Windows Kernel allows an unauthorized attacker to bypa
Cleartext storage of sensitive information in Windows Kernel allows an unauthorized attacker to bypass a security feature locally.
nvd
CVE-2025-55229P4MEDIUMCVSS 5.3fixed in 10.0.22621.53352025-08-21
CVE-2025-55229 [MEDIUM] CWE-347 CVE-2025-55229: Improper verification of cryptographic signature in Windows Certificates allows an unauthorized atta
Improper verification of cryptographic signature in Windows Certificates allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2023-36046P4HIGHCVSS 7.1fixed in 10.0.22621.27152023-11-14
CVE-2023-36046 [HIGH] CWE-59 CVE-2023-36046: Windows Authentication Denial of Service Vulnerability
Windows Authentication Denial of Service Vulnerability
nvd
CVE-2023-20569P4MEDIUMCVSS 4.7fixed in 10.0.22621.21342023-08-08
CVE-2023-20569 [MEDIUM] CWE-203 CVE-2023-20569: A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the retur
A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure.
nvd
CVE-2022-44684P4MEDIUMCVSS 6.5fixed in 10.0.22621.9932023-12-20
CVE-2022-44684 [MEDIUM] CVE-2022-44684: Windows Local Session Manager (LSM) Denial of Service Vulnerability
Windows Local Session Manager (LSM) Denial of Service Vulnerability
nvd
CVE-2023-28270P4MEDIUMCVSS 6.8fixed in 10.0.22621.15552023-04-11
CVE-2023-28270 [MEDIUM] CWE-863 CVE-2023-28270: Windows Lock Screen Security Feature Bypass Vulnerability
Windows Lock Screen Security Feature Bypass Vulnerability
nvd
CVE-2023-32037P4MEDIUMCVSS 6.5fixed in 10.0.22621.19922023-07-11
CVE-2023-32037 [MEDIUM] CWE-20 CVE-2023-32037: Windows Layer-2 Bridge Network Driver Information Disclosure Vulnerability
Windows Layer-2 Bridge Network Driver Information Disclosure Vulnerability
nvd
CVE-2025-21202P4MEDIUMCVSS 6.1fixed in 10.0.22621.47512025-01-14
CVE-2025-21202 [MEDIUM] CWE-284 CVE-2025-21202: Windows Recovery Environment Agent Elevation of Privilege Vulnerability
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
nvd
CVE-2025-29974P4MEDIUMCVSS 5.7fixed in 10.0.22621.53352025-05-13
CVE-2025-29974 [MEDIUM] CWE-125 CVE-2025-29974: Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose
Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an adjacent network.
nvd
CVE-2025-59284P4MEDIUMCVSS 5.5fixed in 10.0.22621.60602025-10-14
CVE-2025-59284 [MEDIUM] CWE-200 CVE-2025-59284: Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized at
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing locally.
nvd
CVE-2023-35336P4MEDIUMCVSS 5.4fixed in 10.0.22621.19922023-07-11
CVE-2023-35336 [MEDIUM] CWE-20 CVE-2023-35336: Windows MSHTML Platform Security Feature Bypass Vulnerability
Windows MSHTML Platform Security Feature Bypass Vulnerability
nvd
CVE-2025-59211P4MEDIUMCVSS 5.5fixed in 10.0.22621.60602025-10-14
CVE-2025-59211 [MEDIUM] CWE-200 CVE-2025-59211: Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.
nvd
CVE-2025-55336P4MEDIUMCVSS 5.5fixed in 10.0.22621.60602025-10-14
CVE-2025-55336 [MEDIUM] CWE-200 CVE-2025-55336: Exposure of sensitive information to an unauthorized actor in Windows Cloud Files Mini Filter Driver
Exposure of sensitive information to an unauthorized actor in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally.
nvd