Windows 11 24h2
by Microsoft
CVEs (1,918)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-43565 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-43562 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-43515 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability | ||
| CVE-2024-43506 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | BranchCache Denial of Service Vulnerability | ||
| CVE-2024-38149 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | BranchCache Denial of Service Vulnerability | ||
| CVE-2024-38119 | Hig | 0.49 | 7.5 | 0.01 | Sep 10, 2024 | Windows Network Address Translation (NAT) Remote Code Execution Vulnerability | ||
| CVE-2024-38198 | Hig | 0.49 | 7.5 | 0.01 | Aug 13, 2024 | Windows Print Spooler Elevation of Privilege Vulnerability | ||
| CVE-2024-38146 | Hig | 0.49 | 7.5 | 0.02 | Aug 13, 2024 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | ||
| CVE-2024-38145 | Hig | 0.49 | 7.5 | 0.02 | Aug 13, 2024 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | ||
| CVE-2024-38132 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-38126 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-30098 | Hig | 0.49 | 7.5 | 0.01 | Jul 9, 2024 | Windows Cryptographic Services Security Feature Bypass Vulnerability | ||
| CVE-2026-40414 | Hig | 0.48 | 7.4 | 0.01 | May 12, 2026 | Windows TCP/IP Denial of Service Vulnerability | ||
| CVE-2026-40413 | Hig | 0.48 | 7.4 | 0.00 | May 12, 2026 | Windows TCP/IP Denial of Service Vulnerability | ||
| CVE-2026-32202 | Med | 0.48 | 4.3 | 0.64 | KEV | Apr 14, 2026 | Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network. | |
| CVE-2026-32156 | Hig | 0.48 | 7.4 | 0.00 | Apr 14, 2026 | Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to execute code locally. | ||
| CVE-2026-25167 | Hig | 0.48 | 7.4 | 0.00 | Mar 10, 2026 | Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-20853 | Hig | 0.48 | 7.4 | 0.00 | Jan 13, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-20844 | Hig | 0.48 | 7.4 | 0.00 | Jan 13, 2026 | Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-20805 | Med | 0.48 | 5.5 | 0.05 | KEV | Jan 13, 2026 | Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally. |
- risk 0.49cvss 7.5epss 0.02
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
BranchCache Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
BranchCache Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Network Address Translation (NAT) Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Print Spooler Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Cryptographic Services Security Feature Bypass Vulnerability
- risk 0.48cvss 7.4epss 0.01
Windows TCP/IP Denial of Service Vulnerability
- risk 0.48cvss 7.4epss 0.00
Windows TCP/IP Denial of Service Vulnerability
- risk 0.48cvss 4.3epss 0.64
Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network.
- risk 0.48cvss 7.4epss 0.00
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to execute code locally.
- risk 0.48cvss 7.4epss 0.00
Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.
- risk 0.48cvss 7.4epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows WalletService allows an unauthorized attacker to elevate privileges locally.
- risk 0.48cvss 7.4epss 0.00
Use after free in Windows Clipboard Server allows an unauthorized attacker to elevate privileges locally.
- risk 0.48cvss 5.5epss 0.05
Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.
Page 43 of 96