Microsoft Windows 11 Version 22H2 vulnerabilities

1,775 known vulnerabilities affecting microsoft/windows_11_version_22h2.

Total CVEs
1,775
CISA KEV
72
actively exploited
Public exploits
32
Exploited in wild
54
Severity breakdown
CRITICAL42HIGH1246MEDIUM479LOW8

Vulnerabilities

Page 24 of 89
CVE-2025-21375HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21375 [HIGH] CWE-20 CVE-2025-21375: Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
nvd
CVE-2025-21419HIGHCVSS 7.1≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21419 [HIGH] CWE-59 CVE-2025-21419: Windows Setup Files Cleanup Elevation of Privilege Vulnerability Windows Setup Files Cleanup Elevation of Privilege Vulnerability
nvd
CVE-2025-21181HIGHCVSS 7.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21181 [HIGH] CWE-400 CVE-2025-21181: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
nvd
CVE-2025-21391HIGHCVSS 7.1KEV≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21391 [HIGH] CWE-59 CVE-2025-21391: Windows Storage Elevation of Privilege Vulnerability Windows Storage Elevation of Privilege Vulnerability
nvd
CVE-2025-21418HIGHCVSS 7.8KEV≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21418 [HIGH] CWE-122 CVE-2025-21418: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
nvd
CVE-2025-21420HIGHCVSS 7.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21420 [HIGH] CWE-59 CVE-2025-21420: Windows Disk Cleanup Tool Elevation of Privilege Vulnerability Windows Disk Cleanup Tool Elevation of Privilege Vulnerability
nvd
CVE-2025-21184HIGHCVSS 7.0≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21184 [HIGH] CWE-122 CVE-2025-21184: Windows Core Messaging Elevation of Privileges Vulnerability Windows Core Messaging Elevation of Privileges Vulnerability
nvd
CVE-2025-21201HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21201 [HIGH] CWE-415 CVE-2025-21201: Windows Telephony Server Remote Code Execution Vulnerability Windows Telephony Server Remote Code Execution Vulnerability
nvd
CVE-2025-21351HIGHCVSS 7.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21351 [HIGH] CWE-400 CVE-2025-21351: Windows Active Directory Domain Services API Denial of Service Vulnerability Windows Active Directory Domain Services API Denial of Service Vulnerability
nvd
CVE-2025-21200HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21200 [HIGH] CWE-122 CVE-2025-21200: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21371HIGHCVSS 8.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21371 [HIGH] CWE-122 CVE-2025-21371: Windows Telephony Service Remote Code Execution Vulnerability Windows Telephony Service Remote Code Execution Vulnerability
nvd
CVE-2025-21347MEDIUMCVSS 6.0≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21347 [MEDIUM] CWE-59 CVE-2025-21347: Windows Deployment Services Denial of Service Vulnerability Windows Deployment Services Denial of Service Vulnerability
nvd
CVE-2025-21377MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21377 [MEDIUM] CWE-73 NTLM Hash Disclosure Spoofing Vulnerability NTLM Hash Disclosure Spoofing Vulnerability NTLM Hash Disclosure Spoofing Vulnerability
cvelistv5
CVE-2025-21212MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21212 [MEDIUM] CWE-125 CVE-2025-21212: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2025-21216MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21216 [MEDIUM] CWE-125 CVE-2025-21216: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2025-21349MEDIUMCVSS 6.8≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21349 [MEDIUM] CWE-287 CVE-2025-21349: Windows Remote Desktop Configuration Service Tampering Vulnerability Windows Remote Desktop Configuration Service Tampering Vulnerability
nvd
CVE-2025-21254MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21254 [MEDIUM] CWE-125 CVE-2025-21254: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2025-21350MEDIUMCVSS 5.9≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21350 [MEDIUM] CWE-20 Windows Kerberos Denial of Service Vulnerability Windows Kerberos Denial of Service Vulnerability Windows Kerberos Denial of Service Vulnerability
cvelistv5
CVE-2025-21352MEDIUMCVSS 6.5≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21352 [MEDIUM] CWE-400 CVE-2025-21352: Internet Connection Sharing (ICS) Denial of Service Vulnerability Internet Connection Sharing (ICS) Denial of Service Vulnerability
nvd
CVE-2025-21337LOWCVSS 3.3≥ 10.0.22621.0, < 10.0.22621.48902025-02-11
CVE-2025-21337 [LOW] CWE-284 Windows NTFS Elevation of Privilege Vulnerability Windows NTFS Elevation of Privilege Vulnerability Windows NTFS Elevation of Privilege Vulnerability
cvelistv5