Microsoft Windows Server 2025 vulnerabilities
1,706 known vulnerabilities affecting microsoft/windows_server_2025.
Total CVEs
1,706
CISA KEV
38
actively exploited
Public exploits
32
Exploited in wild
46
Severity breakdown
CRITICAL40HIGH1216MEDIUM441LOW9
Vulnerabilities
Page 28 of 86
CVE-2026-32161P3HIGHCVSS 7.5fixed in 10.0.26100.32772≥ 10.0.26100.0, < 10.0.26100.328602026-05-12
CVE-2026-32161 [HIGH] CWE-362 CVE-2026-32161: Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Native WiFi Miniport Driver allows an unauthorized attacker to execute code over an adjacent network.
nvd
CVE-2024-43630P3HIGHCVSS 7.8fixed in 10.0.26100.2314≥ 10.0.26100.0, < 10.0.26100.23142024-11-12
CVE-2024-43630 [HIGH] CWE-121 CVE-2024-43630: Windows Kernel Elevation of Privilege Vulnerability
Windows Kernel Elevation of Privilege Vulnerability
nvd
CVE-2025-49687P3HIGHCVSS 8.8fixed in 10.0.26100.4652≥ 10.0.26100.0, < 10.0.26100.46522025-07-08
CVE-2025-49687 [HIGH] CWE-125 CVE-2025-49687: Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate p
Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24084P3HIGHCVSS 8.4fixed in 10.0.26100.3403≥ 10.0.26100.0, < 10.0.26100.34762025-03-11
CVE-2025-24084 [HIGH] CWE-822 CVE-2025-24084: Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to exec
Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-56181P3HIGHCVSS 8.3fixed in 10.0.26100.33158≥ 10.0.26100.0, < 10.0.26100.331582026-07-14
CVE-2026-56181 [HIGH] CWE-346 CVE-2026-56181: Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker
Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofing over an adjacent network.
nvd
CVE-2025-50168P3HIGHCVSS 7.8fixed in 10.0.26100.4851≥ 10.0.26100.0, < 10.0.26100.49462025-08-12
CVE-2025-50168 [HIGH] CWE-122 CVE-2025-50168: Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an au
Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-32713P3HIGHCVSS 7.8fixed in 10.0.26100.4270≥ 10.0.26100.0, < 10.0.26100.43492025-06-10
CVE-2025-32713 [HIGH] CWE-122 CVE-2025-32713: Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-25181P3HIGHCVSS 7.5fixed in 10.0.26100.32463≥ 10.0.26100.0, < 10.0.26100.325222026-03-10
CVE-2026-25181 [HIGH] CWE-125 CVE-2026-25181: Out-of-bounds read in Windows GDI+ allows an unauthorized attacker to disclose information over a ne
Out-of-bounds read in Windows GDI+ allows an unauthorized attacker to disclose information over a network.
nvd
CVE-2026-32183P3HIGHCVSS 7.8fixed in 10.0.26100.32690≥ 10.0.26100.0, < 10.0.26100.326902026-04-14
CVE-2026-32183 [HIGH] CWE-77 CVE-2026-32183: Improper neutralization of special elements used in a command ('command injection') in Windows Snipp
Improper neutralization of special elements used in a command ('command injection') in Windows Snipping Tool allows an unauthorized attacker to execute code locally.
nvd
CVE-2025-24995P3HIGHCVSS 7.8fixed in 10.0.26100.3403≥ 10.0.26100.0, < 10.0.26100.34762025-03-11
CVE-2025-24995 [HIGH] CWE-122 CVE-2025-24995: Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacke
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24048P3HIGHCVSS 7.8fixed in 10.0.26100.3403fixed in 10.0.26100.3476+1 more2025-03-11
CVE-2025-24048 [HIGH] CWE-122 CVE-2025-24048: Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privile
Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-24050P3HIGHCVSS 7.8fixed in 10.0.26100.3403fixed in 10.0.26100.3476+1 more2025-03-11
CVE-2025-24050 [HIGH] CWE-122 CVE-2025-24050: Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privile
Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privileges locally.
nvd
CVE-2025-50173P3HIGHCVSS 7.8fixed in 10.0.26100.4851≥ 10.0.26100.0, < 10.0.26100.49462025-08-12
CVE-2025-50173 [HIGH] CWE-1390 CVE-2025-50173: Weak authentication in Windows Installer allows an authorized attacker to elevate privileges locally
Weak authentication in Windows Installer allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20811P3HIGHCVSS 7.8fixed in 10.0.26100.32230≥ 10.0.26100.0, < 10.0.26100.322302026-01-13
CVE-2026-20811 [HIGH] CWE-822 CVE-2026-20811: Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an au
Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20941P3HIGHCVSS 7.8fixed in 10.0.26100.32230≥ 10.0.26100.0, < 10.0.26100.322302026-01-13
CVE-2026-20941 [HIGH] CWE-59 CVE-2026-20941: Improper link resolution before file access ('link following') in Host Process for Windows Tasks all
Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-20859P3HIGHCVSS 7.8fixed in 10.0.26100.32230≥ 10.0.26100.0, < 10.0.26100.322302026-01-13
CVE-2026-20859 [HIGH] CWE-416 CVE-2026-20859: Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges lo
Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-32152P3HIGHCVSS 7.8fixed in 10.0.26100.32690≥ 10.0.26100.0, < 10.0.26100.326902026-04-14
CVE-2026-32152 [HIGH] CWE-416 CVE-2026-32152: Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-58613P3HIGHCVSS 7.8fixed in 10.0.26100.33158≥ 10.0.26100.0, < 10.0.26100.331582026-07-14
CVE-2026-58613 [HIGH] CWE-416 CVE-2026-58613: Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate pr
Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-50454P3HIGHCVSS 7.8fixed in 10.0.26100.33158≥ 10.0.26100.0, < 10.0.26100.331582026-07-14
CVE-2026-50454 [HIGH] CWE-23 CVE-2026-50454: Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate priv
Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.
nvd
CVE-2026-26179P3HIGHCVSS 7.8fixed in 10.0.26100.32690≥ 10.0.26100.0, < 10.0.26100.326902026-04-14
CVE-2026-26179 [HIGH] CWE-415 CVE-2026-26179: Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
nvd