cbcvebase.

Microsoft Windows 11 23H2 vulnerabilities

1,546 known vulnerabilities affecting microsoft/windows_11_23h2.

Total CVEs
1,546
CISA KEV
53
actively exploited
Public exploits
37
Exploited in wild
63
Severity breakdown
CRITICAL24HIGH1099MEDIUM416LOW7

Vulnerabilities

Page 47 of 78
CVE-2026-32087P3HIGHCVSS 7.0fixed in 10.0.22631.69362026-04-14
CVE-2026-32087 [HIGH] CWE-122 CVE-2026-32087: Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker t Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-50166P3MEDIUMCVSS 6.5fixed in 10.0.22631.57682025-08-12
CVE-2025-50166 [MEDIUM] CWE-190 CVE-2025-50166: Integer overflow or wraparound in Windows Distributed Transaction Coordinator allows an authorized a Integer overflow or wraparound in Windows Distributed Transaction Coordinator allows an authorized attacker to disclose information over a network.
nvd
CVE-2024-30084P3HIGHCVSS 7.0fixed in 10.0.22631.37372024-06-11
CVE-2024-30084 [HIGH] CWE-367 CVE-2024-30084: Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-62473P3MEDIUMCVSS 6.5fixed in 10.0.22631.63452025-12-09
CVE-2025-62473 [MEDIUM] CWE-126 CVE-2025-62473: Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2026-20876P3MEDIUMCVSS 6.7fixed in 10.0.22631.64912026-01-13
CVE-2026-20876 [MEDIUM] CWE-122 CVE-2026-20876: Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authoriz Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-64670P3MEDIUMCVSS 6.5fixed in 10.0.22631.63452025-12-09
CVE-2025-64670 [MEDIUM] CWE-200 CVE-2025-64670: Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an Exposure of sensitive information to an unauthorized actor in Microsoft Graphics Component allows an authorized attacker to disclose information over a network.
nvd
CVE-2026-42907P3MEDIUMCVSS 6.5fixed in 10.0.22631.72192026-06-09
CVE-2026-42907 [MEDIUM] CWE-200 CVE-2026-42907: Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized att Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information over a network.
nvd
CVE-2026-34348P3MEDIUMCVSS 6.5fixed in 10.0.22631.73762026-07-14
CVE-2026-34348 [MEDIUM] CWE-693 CVE-2026-34348: Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to discl Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.
nvd
CVE-2025-29809P3HIGHCVSS 7.1fixed in 10.0.22631.51892025-04-08
CVE-2025-29809 [HIGH] CWE-922 CVE-2025-29809: Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypas Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2024-21438P3HIGHCVSS 7.5fixed in 10.0.22631.34472024-03-12
CVE-2024-21438 [HIGH] CWE-369 CVE-2024-21438: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2024-38068P3HIGHCVSS 7.5fixed in 10.0.22631.38802024-07-09
CVE-2024-38068 [HIGH] CWE-400 CVE-2024-38068: Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
nvd
CVE-2024-20687P3HIGHCVSS 7.5fixed in 10.0.22631.30072024-01-09
CVE-2024-20687 [HIGH] CWE-125 CVE-2024-20687: Microsoft AllJoyn API Denial of Service Vulnerability Microsoft AllJoyn API Denial of Service Vulnerability
nvd
CVE-2025-21351P3HIGHCVSS 7.5fixed in 10.0.22631.48902025-02-11
CVE-2025-21351 [HIGH] CWE-400 CVE-2025-21351: Windows Active Directory Domain Services API Denial of Service Vulnerability Windows Active Directory Domain Services API Denial of Service Vulnerability
nvd
CVE-2024-49121P3HIGHCVSS 7.5fixed in 10.0.22631.46022024-12-12
CVE-2024-49121 [HIGH] CWE-476 CVE-2024-49121: Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
nvd
CVE-2023-36003P3HIGHCVSS 7.3fixed in 10.0.22631.28612023-12-12
CVE-2023-36003 [HIGH] CWE-426 CVE-2023-36003: XAML Diagnostics Elevation of Privilege Vulnerability XAML Diagnostics Elevation of Privilege Vulnerability
nvd
CVE-2024-43515P3HIGHCVSS 7.5fixed in 10.0.22631.43172024-10-08
CVE-2024-43515 [HIGH] CWE-400 CVE-2024-43515: Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability
nvd
CVE-2024-21443P3HIGHCVSS 7.3fixed in 10.0.22631.32962024-03-12
CVE-2024-21443 [HIGH] CWE-416 CVE-2024-21443: Windows Kernel Elevation of Privilege Vulnerability Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2024-43615P3HIGHCVSS 7.1fixed in 10.0.22631.43172024-10-08
CVE-2024-43615 [HIGH] CWE-73 CVE-2024-43615: Microsoft OpenSSH for Windows Remote Code Execution Vulnerability Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
nvd
CVE-2025-49680P3HIGHCVSS 7.3fixed in 10.0.22631.56242025-07-08
CVE-2025-49680 [HIGH] CWE-59 CVE-2025-49680: Improper link resolution before file access ('link following') in Windows Performance Recorder allow Improper link resolution before file access ('link following') in Windows Performance Recorder allows an authorized attacker to deny service locally.
nvd
CVE-2026-32093P3HIGHCVSS 7.0fixed in 10.0.22631.69362026-04-14
CVE-2026-32093 [HIGH] CWE-122 CVE-2026-32093: Concurrent execution using shared resource with improper synchronization ('race condition') in Funct Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.
nvd
Microsoft Windows 11 23H2 vulnerabilities | cvebase