cbcvebase.

Microsoft Windows 11 Version 25H2 vulnerabilities

617 known vulnerabilities affecting microsoft/windows_11_version_25h2.

Total CVEs
617
CISA KEV
12
actively exploited
Public exploits
10
Exploited in wild
14
Severity breakdown
CRITICAL9HIGH465MEDIUM140LOW3

Vulnerabilities

Page 18 of 31
CVE-2020-17103P3HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.86552020-12-10
CVE-2020-17103 [HIGH] CWE-269 CVE-2020-17103: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
nvd
CVE-2026-20816P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.76232026-01-13
CVE-2026-20816 [HIGH] CWE-367 CVE-2026-20816: Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-58720P3HIGHCVSS 7.8≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-58720 [HIGH] CWE-1240 CVE-2025-58720: Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allow Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
nvd
CVE-2025-60719P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.71712025-11-11
CVE-2025-60719 [HIGH] CWE-822 CVE-2025-60719: Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-62213P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.71712025-11-11
CVE-2025-62213 [HIGH] CWE-416 CVE-2025-62213: Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to ele Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-59210P3HIGHCVSS 7.4≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-59210 [HIGH] CWE-416 CVE-2025-59210: Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
nvd
CVE-2026-41108P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.86552026-06-09
CVE-2026-41108 [HIGH] CWE-122 CVE-2026-41108: Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privile Heap-based buffer overflow in Microsoft Windows DNS allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-58725P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-58725 [HIGH] CWE-122 CVE-2025-58725: Heap-based buffer overflow in Windows COM allows an authorized attacker to elevate privileges locall Heap-based buffer overflow in Windows COM allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20876P3MEDIUMCVSS 6.7≥ 10.0.26200.0, < 10.0.26200.76232026-01-13
CVE-2026-20876 [MEDIUM] CWE-122 CVE-2026-20876: Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authoriz Heap-based buffer overflow in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-40414P3HIGHCVSS 7.4≥ 10.0.26200.0, < 10.0.26200.84572026-05-12
CVE-2026-40414 [HIGH] CWE-476 CVE-2026-40414: Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over an a Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over an adjacent network.
nvd
CVE-2026-32093P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.82462026-04-14
CVE-2026-32093 [HIGH] CWE-122 CVE-2026-32093: Concurrent execution using shared resource with improper synchronization ('race condition') in Funct Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-26151P3HIGHCVSS 7.1≥ 10.0.26200.0, < 10.0.26200.82462026-04-14
CVE-2026-26151 [HIGH] CWE-357 CVE-2026-26151: Insufficient ui warning of dangerous operations in Windows Remote Desktop allows an unauthorized att Insufficient ui warning of dangerous operations in Windows Remote Desktop allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2026-21253P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.78402026-02-10
CVE-2026-21253 [HIGH] CWE-416 CVE-2026-21253: Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally. Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-59214P3MEDIUMCVSS 6.5≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-59214 [MEDIUM] CWE-200 CVE-2025-59214: Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauth Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2026-21508P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.78402026-02-10
CVE-2026-21508 [HIGH] CWE-287 CVE-2026-21508: Improper authentication in Windows Storage allows an authorized attacker to elevate privileges local Improper authentication in Windows Storage allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-55340P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-55340 [HIGH] CWE-287 CVE-2025-55340: Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.
nvd
CVE-2026-25171P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.80372026-03-10
CVE-2026-25171 [HIGH] CWE-416 CVE-2026-25171: Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-32087P3HIGHCVSS 7.0≥ 10.0.26200.0, < 10.0.26200.82462026-04-14
CVE-2026-32087 [HIGH] CWE-122 CVE-2026-32087: Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker t Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20847P3MEDIUMCVSS 6.5≥ 10.0.26200.0, < 10.0.26200.76232026-01-13
CVE-2026-20847 [MEDIUM] CWE-200 CVE-2026-20847: Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized att Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network.
nvd
CVE-2025-59185P3MEDIUMCVSS 6.5≥ 10.0.26200.0, < 10.0.26200.68992025-10-14
CVE-2025-59185 [MEDIUM] CWE-73 CVE-2025-59185: External control of file name or path in Windows Core Shell allows an unauthorized attacker to perfo External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.
nvd
Microsoft Windows 11 Version 25H2 vulnerabilities | cvebase