cbcvebase.

Microsoft Windows 11 Version 25H2 vulnerabilities

512 known vulnerabilities affecting microsoft/windows_11_version_25h2.

Total CVEs
512
CISA KEV
12
actively exploited
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH386MEDIUM120LOW2

Vulnerabilities

Page 1 of 26
CVE-2026-45585MEDIUMCVSS 6.8v-2026-05-20
CVE-2026-45585 [MEDIUM] CWE-77 CVE-2026-45585: Microsoft is aware of a security feature bypass vulnerability in Windows publicly referred to as &qu Microsoft is aware of a security feature bypass vulnerability in Windows publicly referred to as "YellowKey". The proof of concept for this vulnerability has been made public violating coordinated vulnerability best practices. We are issuing this CVE to provide mitigation guidance that can be implemented to protect against this vulnerability until th
nvd
CVE-2026-41096CRITICALCVSS 9.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-41096 [CRITICAL] CWE-122 CVE-2026-41096: Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-34333HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34333 [HIGH] CWE-190 CVE-2026-34333: Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-35415HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-35415 [HIGH] CWE-190 CVE-2026-35415: Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-34330HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34330 [HIGH] CWE-190 CVE-2026-34330: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-42896HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-42896 [HIGH] CWE-122 CVE-2026-42896: Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-33837HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-33837 [HIGH] CWE-122 CVE-2026-33837: Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges loc Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40403HIGHCVSS 8.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40403 [HIGH] CWE-122 CVE-2026-40403: Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code lo Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally.
nvd
CVE-2026-32161HIGHCVSS 7.5≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-32161 [HIGH] CWE-362 CVE-2026-32161: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Native WiFi Miniport Driver allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-34329HIGHCVSS 8.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34329 [HIGH] CWE-122 CVE-2026-34329: Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute cod Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2026-40401HIGHCVSS 7.1≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40401 [HIGH] CWE-476 CVE-2026-40401: Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally. Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service locally.
nvd
CVE-2026-34338HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34338 [HIGH] CWE-416 CVE-2026-34338: Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-33840HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-33840 [HIGH] CWE-416 CVE-2026-33840: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40415HIGHCVSS 8.1≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40415 [HIGH] CWE-416 CVE-2026-40415: Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network. Use after free in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-34336HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34336 [HIGH] CWE-122 CVE-2026-34336: Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40398HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40398 [HIGH] CWE-122 CVE-2026-40398: Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privil Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-34347HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34347 [HIGH] CWE-416 CVE-2026-34347: Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-34343HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-34343 [HIGH] CWE-122 CVE-2026-34343: Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized at Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40410HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40410 [HIGH] CWE-416 CVE-2026-40410: Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally. Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40377HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40377 [HIGH] CWE-122 CVE-2026-40377: Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevat Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally.
nvd
1 / 26Next →
Microsoft Windows 11 Version 25H2 vulnerabilities | cvebase