Microsoft Windows 11 Version 21H2 vulnerabilities
1,560 known vulnerabilities affecting microsoft/windows_11_version_21h2.
Total CVEs
1,560
CISA KEV
67
actively exploited
Public exploits
47
Exploited in wild
90
Severity breakdown
CRITICAL51HIGH1137MEDIUM368LOW4
Vulnerabilities
Page 3 of 78
CVE-2022-22718P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.4932022-02-09
CVE-2022-22718 [HIGH] CVE-2022-22718: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-22047P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.7952022-07-12
CVE-2022-22047 [HIGH] CWE-426 CVE-2022-22047: Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
nvd
CVE-2022-38028P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.10982022-10-11
CVE-2022-38028 [HIGH] CVE-2022-38028: Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
nvd
CVE-2022-41091P1MEDIUMCVSS 5.4KEVRansomware≥ 10.0.0, < 10.0.22000.12192022-11-09
CVE-2022-41091 [MEDIUM] CWE-863 CVE-2022-41091: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2023-32049P1HIGHCVSS 8.8KEV≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32049 [HIGH] CVE-2023-32049: Windows SmartScreen Security Feature Bypass Vulnerability
Windows SmartScreen Security Feature Bypass Vulnerability
nvd
CVE-2024-38213P1MEDIUMCVSS 6.5KEV≥ 10.0.0, < 10.0.22000.30192024-08-13
CVE-2024-38213 [MEDIUM] CWE-693 CVE-2024-38213: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2024-38014P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.31972024-09-10
CVE-2024-38014 [HIGH] CWE-269 CVE-2024-38014: Windows Installer Elevation of Privilege Vulnerability
Windows Installer Elevation of Privilege Vulnerability
nvd
CVE-2023-36033P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.26002023-11-14
CVE-2023-36033 [HIGH] CWE-822 CVE-2023-36033: Windows DWM Core Library Elevation of Privilege Vulnerability
Windows DWM Core Library Elevation of Privilege Vulnerability
nvd
CVE-2023-21823P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22621.15742023-02-14
CVE-2023-21823 [HIGH] CWE-190 CVE-2023-21823: Windows Graphics Component Remote Code Execution Vulnerability
Windows Graphics Component Remote Code Execution Vulnerability
nvd
CVE-2024-38106P1HIGHCVSS 7.0KEV≥ 10.0.0, < 10.0.22000.31472024-08-13
CVE-2024-38106 [HIGH] CWE-591 CVE-2024-38106: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2023-32046P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.21762023-07-11
CVE-2023-32046 [HIGH] CVE-2023-32046: Windows MSHTML Platform Elevation of Privilege Vulnerability
Windows MSHTML Platform Elevation of Privilege Vulnerability
nvd
CVE-2024-38107P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.31472024-08-13
CVE-2024-38107 [HIGH] CWE-416 CVE-2024-38107: Windows Power Dependency Coordinator Elevation of Privilege Vulnerability
Windows Power Dependency Coordinator Elevation of Privilege Vulnerability
nvd
CVE-2022-41125P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.12192022-11-09
CVE-2022-41125 [HIGH] CWE-787 CVE-2022-41125: Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
nvd
CVE-2022-41033P1HIGHCVSS 7.8KEV≥ 10.0.0, < 10.0.22000.10982022-10-11
CVE-2022-41033 [HIGH] CWE-843 CVE-2022-41033: Windows COM+ Event System Service Elevation of Privilege Vulnerability
Windows COM+ Event System Service Elevation of Privilege Vulnerability
nvd
CVE-2024-38217P2MEDIUMCVSS 5.4KEV≥ 10.0.0, < 10.0.22000.31972024-09-10
CVE-2024-38217 [MEDIUM] CWE-693 CVE-2024-38217: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2023-36584P2MEDIUMCVSS 5.4KEV≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36584 [MEDIUM] CVE-2023-36584: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2022-41049P2MEDIUMCVSS 5.4KEV≥ 10.0.0, < 10.0.22000.12192022-11-09
CVE-2022-41049 [MEDIUM] CVE-2022-41049: Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Mark of the Web Security Feature Bypass Vulnerability
nvd
CVE-2023-36563P2MEDIUMCVSS 5.5KEV≥ 10.0.0, < 10.0.22000.25382023-10-10
CVE-2023-36563 [MEDIUM] CWE-20 CVE-2023-36563: Microsoft WordPad Information Disclosure Vulnerability
Microsoft WordPad Information Disclosure Vulnerability
nvd
CVE-2022-21907P1CRITICALCVSS 9.8ExploitedPoC≥ 10.0.0, < 10.0.22000.4342022-01-11
CVE-2022-21907 [CRITICAL] CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability
HTTP Protocol Stack Remote Code Execution Vulnerability
nvd
CVE-2022-26809P1CRITICALCVSS 9.8ExploitedPoCRansomware≥ 10.0.0, < 10.0.22000.6132022-04-15
CVE-2022-26809 [CRITICAL] CVE-2022-26809: Remote Procedure Call Runtime Remote Code Execution Vulnerability
Remote Procedure Call Runtime Remote Code Execution Vulnerability
nvd