Microsoft Windows 11 24H2 vulnerabilities
1,692 known vulnerabilities affecting microsoft/windows_11_24h2.
Total CVEs
1,692
CISA KEV
40
actively exploited
Public exploits
29
Exploited in wild
46
Severity breakdown
CRITICAL37HIGH1215MEDIUM432LOW8
Vulnerabilities
Page 14 of 85
CVE-2026-20872P3MEDIUMCVSS 6.5fixed in 10.0.26100.76232026-01-13
CVE-2026-20872 [MEDIUM] CWE-73 CVE-2026-20872: External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spo
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2024-43517P3HIGHCVSS 8.8fixed in 10.0.26100.20332024-10-08
CVE-2024-43517 [HIGH] CWE-122 CVE-2024-43517: Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
nvd
CVE-2024-38131P3HIGHCVSS 8.8fixed in 10.0.26100.14572024-08-13
CVE-2024-38131 [HIGH] CWE-591 CVE-2024-38131: Clipboard Virtual Channel Extension Remote Code Execution Vulnerability
Clipboard Virtual Channel Extension Remote Code Execution Vulnerability
nvd
CVE-2024-43518P3HIGHCVSS 8.8fixed in 10.0.26100.20332024-10-08
CVE-2024-43518 [HIGH] CWE-122 CVE-2024-43518: Windows Telephony Server Remote Code Execution Vulnerability
Windows Telephony Server Remote Code Execution Vulnerability
nvd
CVE-2025-29964P3HIGHCVSS 8.8fixed in 10.0.26100.40612025-05-13
CVE-2025-29964 [HIGH] CWE-122 CVE-2025-29964: Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a n
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
nvd
CVE-2025-29963P3HIGHCVSS 8.8fixed in 10.0.26100.40612025-05-13
CVE-2025-29963 [HIGH] CWE-122 CVE-2025-29963: Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a n
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-49170P3HIGHCVSS 7.8fixed in 10.0.26100.88752026-07-14
CVE-2026-49170 [HIGH] CWE-285 CVE-2026-49170: Insufficient granularity of access control in Windows StateRepository API allows an authorized attac
Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-21224P3HIGHCVSS 8.1fixed in 10.0.26100.28942025-01-14
CVE-2025-21224 [HIGH] CWE-416 CVE-2025-21224: Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability
Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability
nvd
CVE-2026-42989P3HIGHCVSS 7.8fixed in 10.0.26100.86552026-06-09
CVE-2026-42989 [HIGH] CWE-59 CVE-2026-42989: Improper link resolution before file access ('link following') in Winlogon allows an authorized atta
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-38045P3HIGHCVSS 8.1fixed in 10.0.26100.17422024-09-10
CVE-2024-38045 [HIGH] CWE-122 CVE-2024-38045: Windows TCP/IP Remote Code Execution Vulnerability
Windows TCP/IP Remote Code Execution Vulnerability
nvd
CVE-2024-49124P3HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49124 [HIGH] CWE-362 CVE-2024-49124: Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability
Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability
nvd
CVE-2025-62472P3HIGHCVSS 7.8fixed in 10.0.26100.73922025-12-09
CVE-2025-62472 [HIGH] CWE-416 CVE-2025-62472: Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attac
Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
nvd
CVE-2024-49127P3HIGHCVSS 8.1fixed in 10.0.26100.26052024-12-12
CVE-2024-49127 [HIGH] CWE-416 CVE-2024-49127: Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
nvd
CVE-2025-29810P3HIGHCVSS 7.5fixed in 10.0.26100.37752025-04-08
CVE-2025-29810 [HIGH] CWE-284 CVE-2025-29810: Improper access control in Active Directory Domain Services allows an authorized attacker to elevate
Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
nvd
CVE-2026-42900P3HIGHCVSS 8.1fixed in 10.0.26100.88752026-07-14
CVE-2026-42900 [HIGH] CWE-362 CVE-2026-42900: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.
nvd
CVE-2026-50348P3HIGHCVSS 8.1fixed in 10.0.26100.88752026-07-14
CVE-2026-50348 [HIGH] CWE-362 CVE-2026-50348: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.
nvd
CVE-2024-38148P3HIGHCVSS 7.5fixed in 10.0.26100.14572024-08-13
CVE-2024-38148 [HIGH] CWE-125 CVE-2024-38148: Windows Secure Channel Denial of Service Vulnerability
Windows Secure Channel Denial of Service Vulnerability
nvd
CVE-2026-20922P3HIGHCVSS 7.8fixed in 10.0.26100.76232026-01-13
CVE-2026-20922 [HIGH] CWE-122 CVE-2026-20922: Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
nvd
CVE-2026-50452P3HIGHCVSS 8.1fixed in 10.0.26100.88752026-07-14
CVE-2026-50452 [HIGH] CWE-362 CVE-2026-50452: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.
nvd
CVE-2026-20848P3HIGHCVSS 7.5fixed in 10.0.26100.76232026-01-13
CVE-2026-20848 [HIGH] CWE-362 CVE-2026-20848: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
nvd