Microsoft Windows 11 23H2 vulnerabilities
1,546 known vulnerabilities affecting microsoft/windows_11_23h2.
Total CVEs
1,546
CISA KEV
53
actively exploited
Public exploits
37
Exploited in wild
63
Severity breakdown
CRITICAL24HIGH1099MEDIUM416LOW7
Vulnerabilities
Page 31 of 78
CVE-2025-26678P3HIGHCVSS 8.4fixed in 10.0.22631.51892025-04-08
CVE-2025-26678 [HIGH] CWE-284 CVE-2025-26678: Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attack
Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally.
nvd
CVE-2023-36425P3HIGHCVSS 8.0fixed in 10.0.22631.27152023-11-14
CVE-2023-36425 [HIGH] CWE-122 CVE-2023-36425: Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
nvd
CVE-2025-26641P3HIGHCVSS 7.5fixed in 10.0.22631.51892025-04-08
CVE-2025-26641 [HIGH] CWE-400 CVE-2025-26641: Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker
Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.
nvd
CVE-2026-48573P3HIGHCVSS 7.9fixed in 10.0.22631.72192026-06-09
CVE-2026-48573 [HIGH] CWE-1329 CVE-2026-48573: No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feat
No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2026-48576P3HIGHCVSS 7.9fixed in 10.0.22631.72192026-06-09
CVE-2026-48576 [HIGH] CWE-1329 CVE-2026-48576: No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feat
No cwe for this issue in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2025-32714P3HIGHCVSS 7.8fixed in 10.0.22631.54722025-06-10
CVE-2025-32714 [HIGH] CWE-284 CVE-2025-32714: Improper access control in Windows Installer allows an authorized attacker to elevate privileges loc
Improper access control in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-21389P3HIGHCVSS 7.5fixed in 10.0.22631.47512025-01-14
CVE-2025-21389 [HIGH] CWE-400 CVE-2025-21389: Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an un
Uncontrolled resource consumption in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to deny service over a network.
nvd
CVE-2025-48799P3HIGHCVSS 7.8fixed in 10.0.22631.56242025-07-08
CVE-2025-48799 [HIGH] CWE-59 CVE-2025-48799: Improper link resolution before file access ('link following') in Windows Update Service allows an a
Improper link resolution before file access ('link following') in Windows Update Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-27727P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-27727 [HIGH] CWE-59 CVE-2025-27727: Improper link resolution before file access ('link following') in Windows Installer allows an author
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-38061P3HIGHCVSS 7.5fixed in 10.0.22631.38802024-07-09
CVE-2024-38061 [HIGH] CWE-284 CVE-2024-38061: DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability
DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability
nvd
CVE-2024-21347P3HIGHCVSS 7.5fixed in 10.0.22631.31552024-02-13
CVE-2024-21347 [HIGH] CWE-122 CVE-2024-21347: Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
nvd
CVE-2025-27731P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-27731 [HIGH] CWE-20 CVE-2025-27731: Improper input validation in OpenSSH for Windows allows an authorized attacker to elevate privileges
Improper input validation in OpenSSH for Windows allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-37982P3HIGHCVSS 7.8fixed in 10.0.22631.43172024-10-08
CVE-2024-37982 [HIGH] CWE-822 CVE-2024-37982: Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
nvd
CVE-2025-24058P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-24058 [HIGH] CWE-20 CVE-2025-24058: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24062P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-24062 [HIGH] CWE-20 CVE-2025-24062: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24074P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-24074 [HIGH] CWE-20 CVE-2025-24074: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24060P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-24060 [HIGH] CWE-20 CVE-2025-24060: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24073P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-24073 [HIGH] CWE-20 CVE-2025-24073: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-47656P3HIGHCVSS 7.9fixed in 10.0.22631.72192026-06-09
CVE-2026-47656 [HIGH] CWE-693 CVE-2026-47656: Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a secur
Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2025-29811P3HIGHCVSS 7.8fixed in 10.0.22631.51892025-04-08
CVE-2025-29811 [HIGH] CWE-20 CVE-2025-29811: Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privi
Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally.
nvd