Microsoft Windows 11 Version 22H2 vulnerabilities

1,775 known vulnerabilities affecting microsoft/windows_11_version_22h2.

Total CVEs
1,775
CISA KEV
72
actively exploited
Public exploits
32
Exploited in wild
54
Severity breakdown
CRITICAL42HIGH1246MEDIUM479LOW8

Vulnerabilities

Page 19 of 89
CVE-2025-21191HIGHCVSS 7.0≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-21191 [HIGH] CWE-367 CVE-2025-21191: Time-of-check time-of-use (toctou) race condition in Windows Local Security Authority (LSA) allows a Time-of-check time-of-use (toctou) race condition in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-27739HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27739 [HIGH] CWE-822 CVE-2025-27739: Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-27484HIGHCVSS 7.5≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27484 [HIGH] CWE-591 CVE-2025-27484: Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges over a network.
cvelistv5nvd
CVE-2025-26663HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26663 [HIGH] CWE-416 CVE-2025-26663: Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attack Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-27487HIGHCVSS 8.0≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27487 [HIGH] CWE-122 CVE-2025-27487: Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code ov Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-26675HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26675 [HIGH] CWE-125 CVE-2025-26675: Out-of-bounds read in Windows Subsystem for Linux allows an authorized attacker to elevate privilege Out-of-bounds read in Windows Subsystem for Linux allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-27478HIGHCVSS 7.0≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27478 [HIGH] CWE-122 CVE-2025-27478: Heap-based buffer overflow in Windows Local Security Authority (LSA) allows an authorized attacker t Heap-based buffer overflow in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-27491HIGHCVSS 7.1≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27491 [HIGH] CWE-416 CVE-2025-27491: Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network. Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-21222HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-21222 [HIGH] CWE-122 CVE-2025-21222: Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-21221HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-21221 [HIGH] CWE-122 CVE-2025-21221: Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute c Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-26688HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26688 [HIGH] CWE-121 CVE-2025-26688: Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-29809HIGHCVSS 7.1≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-29809 [HIGH] CWE-922 CVE-2025-29809: Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypas Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
cvelistv5nvd
CVE-2025-26670HIGHCVSS 8.1≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26670 [HIGH] CWE-416 CVE-2025-26670: Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attack Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-26648HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26648 [HIGH] CWE-416 CVE-2025-26648: Sensitive data storage in improperly locked memory in Windows Kernel allows an authorized attacker t Sensitive data storage in improperly locked memory in Windows Kernel allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-26674HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-26674 [HIGH] CWE-122 CVE-2025-26674: Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally. Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
cvelistv5nvd
CVE-2025-29824HIGHCVSS 7.8KEV≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-29824 [HIGH] CWE-416 CVE-2025-29824: Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate pri Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-24058HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-24058 [HIGH] CWE-20 CVE-2025-24058: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-24062HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-24062 [HIGH] CWE-20 CVE-2025-24062: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-24074HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-24074 [HIGH] CWE-20 CVE-2025-24074: Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privi Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-27732HIGHCVSS 7.0≥ 10.0.22621.0, < 10.0.22621.51892025-04-08
CVE-2025-27732 [HIGH] CWE-591 CVE-2025-27732: Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized att Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
cvelistv5nvd