Windows Hyper-V
by Microsoft
CVEs (86)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21333 | Hig | 0.66 | 7.8 | 0.10 | KEV | Jan 14, 2025 | Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability | |
| CVE-2021-26867 | Cri | 0.65 | 9.9 | 0.03 | Mar 11, 2021 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2025-21335 | Hig | 0.63 | 7.8 | 0.01 | KEV | Jan 14, 2025 | Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability | |
| CVE-2024-38080 | Hig | 0.63 | 7.8 | 0.07 | KEV | Jul 9, 2024 | Windows Hyper-V Elevation of Privilege Vulnerability | |
| CVE-2026-40402 | Cri | 0.60 | 9.3 | 0.00 | May 12, 2026 | Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2019-0722 | Hig | 0.58 | 8.8 | 0.05 | Jun 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system. To exploit the vulnerability, an attacker could run a specially crafted application on a guest operating… | ||
| CVE-2026-21255 | Hig | 0.57 | 8.8 | 0.00 | Feb 10, 2026 | Improper access control in Windows Hyper-V allows an authorized attacker to bypass a security feature locally. | ||
| CVE-2024-49117 | Hig | 0.57 | 8.8 | 0.01 | Dec 12, 2024 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2024-30017 | Hig | 0.57 | 8.8 | 0.02 | May 14, 2024 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2024-30010 | Hig | 0.57 | 8.8 | 0.02 | May 14, 2024 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2020-1080 | Hig | 0.57 | 8.8 | 0.01 | Oct 16, 2020 | An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory. An attacker who successfully exploited these vulnerabilities could gain elevated privileges on a target operating system. This vulnerability… | ||
| CVE-2020-16891 | Hig | 0.57 | 8.8 | 0.01 | Oct 16, 2020 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system. To exploit the vulnerability, an attacker could run a specially crafted application on a guest operating… | ||
| CVE-2025-48822 | Hig | 0.56 | 8.6 | 0.01 | Jul 8, 2025 | Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally. | ||
| CVE-2020-17095 | Hig | 0.56 | 8.5 | 0.05 | Dec 10, 2020 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2021-34450 | Hig | 0.55 | 8.5 | 0.03 | Jul 16, 2021 | Windows Hyper-V Remote Code Execution Vulnerability | ||
| CVE-2020-0910 | Hig | 0.55 | 8.4 | 0.09 | Apr 15, 2020 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. | ||
| CVE-2019-1398 | Hig | 0.55 | 8.4 | 0.03 | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,… | ||
| CVE-2019-1397 | Hig | 0.55 | 8.4 | 0.04 | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,… | ||
| CVE-2019-1389 | Hig | 0.55 | 8.4 | 0.04 | Nov 12, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1397,… | ||
| CVE-2019-0551 | Hig | 0.55 | 8.4 | 0.04 | Jan 8, 2019 | A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka "Windows Hyper-V Remote Code Execution Vulnerability." This affects Windows Server 2016, Windows 10,… |
- risk 0.66cvss 7.8epss 0.10
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
- risk 0.65cvss 9.9epss 0.03
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.63cvss 7.8epss 0.01
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
- risk 0.63cvss 7.8epss 0.07
Windows Hyper-V Elevation of Privilege Vulnerability
- risk 0.60cvss 9.3epss 0.00
Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.
- risk 0.58cvss 8.8epss 0.05
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system. To exploit the vulnerability, an attacker could run a specially crafted application on a guest operating…
- risk 0.57cvss 8.8epss 0.00
Improper access control in Windows Hyper-V allows an authorized attacker to bypass a security feature locally.
- risk 0.57cvss 8.8epss 0.01
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.01
An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory. An attacker who successfully exploited these vulnerabilities could gain elevated privileges on a target operating system. This vulnerability…
- risk 0.57cvss 8.8epss 0.01
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system. To exploit the vulnerability, an attacker could run a specially crafted application on a guest operating…
- risk 0.56cvss 8.6epss 0.01
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
- risk 0.56cvss 8.5epss 0.05
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.55cvss 8.5epss 0.03
Windows Hyper-V Remote Code Execution Vulnerability
- risk 0.55cvss 8.4epss 0.09
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'.
- risk 0.55cvss 8.4epss 0.03
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,…
- risk 0.55cvss 8.4epss 0.04
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,…
- risk 0.55cvss 8.4epss 0.04
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1397,…
- risk 0.55cvss 8.4epss 0.04
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka "Windows Hyper-V Remote Code Execution Vulnerability." This affects Windows Server 2016, Windows 10,…
Page 1 of 5