Microsoft Windows Server 2022 23H2 vulnerabilities
1,556 known vulnerabilities affecting microsoft/windows_server_2022_23h2.
Total CVEs
1,556
CISA KEV
52
actively exploited
Public exploits
39
Exploited in wild
63
Severity breakdown
CRITICAL25HIGH1099MEDIUM426LOW6
Vulnerabilities
Page 55 of 78
CVE-2026-20869P3HIGHCVSS 7.0fixed in 10.0.25398.20922026-01-13
CVE-2026-20869 [HIGH] CWE-362 CVE-2026-20869: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Manager (LSM) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-55223P3HIGHCVSS 7.0fixed in 10.0.25398.18492025-09-09
CVE-2025-55223 [HIGH] CWE-362 CVE-2025-55223: Concurrent execution using shared resource with improper synchronization ('race condition') in Graph
Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-21240P3HIGHCVSS 7.0fixed in 10.0.25398.21492026-02-10
CVE-2026-21240 [HIGH] CWE-367 CVE-2026-21240: Time-of-check time-of-use (toctou) race condition in Windows HTTP.sys allows an authorized attacker
Time-of-check time-of-use (toctou) race condition in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-53135P3HIGHCVSS 7.0fixed in 10.0.25398.17912025-08-12
CVE-2025-53135 [HIGH] CWE-362 CVE-2025-53135: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-54114P3HIGHCVSS 7.0fixed in 10.0.25398.18492025-09-09
CVE-2025-54114 [HIGH] CWE-362 CVE-2025-54114: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-21203P3MEDIUMCVSS 6.5fixed in 10.0.25398.15512025-04-08
CVE-2025-21203 [MEDIUM] CWE-126 CVE-2025-21203: Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2025-55328P3HIGHCVSS 7.0fixed in 10.0.25398.19132025-10-14
CVE-2025-55328 [HIGH] CWE-362 CVE-2025-55328: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-55687P3HIGHCVSS 7.0fixed in 10.0.25398.19132025-10-14
CVE-2025-55687 [HIGH] CWE-362 CVE-2025-55687: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Resilient File System (ReFS) allows an unauthorized attacker to elevate privileges locally.
nvd
CVE-2026-26166P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-26166 [HIGH] CWE-415 CVE-2026-26166: Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-27917P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-27917 [HIGH] CWE-416 CVE-2026-27917: Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized atta
Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-59196P3HIGHCVSS 7.0fixed in 10.0.25398.19132025-10-14
CVE-2025-59196 [HIGH] CWE-362 CVE-2025-59196: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-59220P3HIGHCVSS 7.0fixed in 10.0.25398.18492025-09-18
CVE-2025-59220 [HIGH] CWE-362 CVE-2025-59220: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-42825P3HIGHCVSS 7.0fixed in 10.0.25398.23302026-05-12
CVE-2026-42825 [HIGH] CWE-416 CVE-2026-42825: Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges loca
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-26676P3MEDIUMCVSS 6.5fixed in 10.0.25398.15512025-04-08
CVE-2025-26676 [MEDIUM] CWE-126 CVE-2025-26676: Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2026-34345P3HIGHCVSS 7.0fixed in 10.0.25398.23302026-05-12
CVE-2026-34345 [HIGH] CWE-362 CVE-2026-34345: Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver f
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-35418P3HIGHCVSS 7.0fixed in 10.0.25398.23302026-05-12
CVE-2026-35418 [HIGH] CWE-367 CVE-2026-35418: Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-32083P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-32083 [HIGH] CWE-362 CVE-2026-32083: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-32082P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-32082 [HIGH] CWE-362 CVE-2026-32082: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-27918P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-27918 [HIGH] CWE-362 CVE-2026-27918: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-27927P3HIGHCVSS 7.0fixed in 10.0.25398.22742026-04-14
CVE-2026-27927 [HIGH] CWE-362 CVE-2026-27927: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Projected File System allows an authorized attacker to elevate privileges locally.
nvd