VendorsMicrosoftwindows_10_1809all versions
Vulnerabilities

Microsoft Windows 10 1809

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3120CVEs
CVE-2026-32164
Windows User Interface Core Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-58628
Windows Wireless Network Manager Elevation of Privilege Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.002
CVE-2026-42978
Windows Push Notifications Elevation of Privilege Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.002
CVE-2026-54112
Windows Win32k Elevation of Privilege Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.002
CVE-2026-32160
Windows Push Notifications Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-32159
Windows Push Notifications Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-81355
Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.8EPSS 0.002
CVE-2026-32163
Windows User Interface Core Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-32165
Windows User Interface Core Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-26168
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-42991
Windows Push Notifications Elevation of Privilege Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.002
CVE-2026-20930
Windows Management Services Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2022-41628
Uncontrolled search path element in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-05-10 · Modified
7.8EPSS 0.002
CVE-2022-41687
Insecure inherited permissions in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-05-10 · Modified
7.8EPSS 0.001
CVE-2025-59200
Data Sharing Service Spoofing Vulnerability
Published 2025-10-14 · Analyzed
7.7EPSS 0.008
CVE-2026-20804
Windows Hello Tampering Vulnerability
Published 2026-01-13 · Analyzed
7.7EPSS 0.005
CVE-2026-20852
Windows Hello Tampering Vulnerability
Published 2026-01-13 · Analyzed
7.7EPSS 0.005
CVE-2025-29833
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
7.7EPSS 0.004
CVE-2020-0674
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0673, CVE-2020-0710, CVE-2020-0711, CVE-2020-0712, CVE-2020-0713, CVE-2020-0767.
Published 2020-02-11 · Analyzed
7.6KEV2 PoCEPSS 0.869
CVE-2019-0752
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0739, CVE-2019-0753, CVE-2019-0862.
Published 2019-04-09 · Analyzed
7.6KEV1 PoCEPSS 0.816
CVE-2019-1429
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1426, CVE-2019-1427, CVE-2019-1428.
Published 2019-11-12 · Analyzed
7.6KEV1 PoCEPSS 0.773
CVE-2019-1367
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1221.
Published 2019-09-23 · Analyzed
7.6KEVEPSS 0.524
CVE-2020-0968
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0970.
Published 2020-04-15 · Analyzed
7.6KEVEPSS 0.307
CVE-2018-8653
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8643.
Published 2018-12-20 · Analyzed
7.6KEVEPSS 0.296
CVE-2024-21351
Windows SmartScreen Security Feature Bypass Vulnerability
Published 2024-02-13 · Analyzed
7.6KEVEPSS 0.278
CVE-2019-0810
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0806, CVE-2019-0812, CVE-2019-0829, CVE-2019-0860, CVE-2019-0861.
Published 2019-04-09 · Modified
7.6EPSS 0.115
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2023-36884
Windows Search Remote Code Execution Vulnerability
Published 2023-07-11 · Analyzed
7.5KEVEPSS 0.989
CVE-2024-29059
.NET Framework Information Disclosure Vulnerability
Published 2024-03-22 · Analyzed
7.5KEVEPSS 0.986
CVE-2023-28302
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.926
CVE-2023-21547
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.893
CVE-2023-21769
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.887
CVE-2024-38112
Windows MSHTML Platform Spoofing Vulnerability
Published 2024-07-09 · Analyzed
7.5KEVEPSS 0.842
CVE-2024-49113
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Published 2024-12-10 · Analyzed
7.5EPSS 0.836
CVE-2023-36606
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-10-10 · Modified
7.5EPSS 0.672
CVE-2023-38039
When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl headers API. However, curl did not have a limit in how many or how large headers it would accept in a response, allowing a malicious server to stream an endless series of headers and eventually cause curl to run out of heap memory.
Published 2023-09-15 · Modified
7.5EPSS 0.581
CVE-2025-21285
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.557
CVE-2023-21818
Windows Secure Channel Denial of Service Vulnerability
Published 2023-02-14 · Modified
7.5EPSS 0.432
CVE-2024-38178
Scripting Engine Memory Corruption Vulnerability
Published 2024-08-13 · Analyzed
7.5KEVEPSS 0.414
CVE-2025-21277
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.386
← Prev42 / 78Next →