VendorsMicrosoftwindows_10_22h2all versions
Vulnerabilities

Microsoft Windows 10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3073CVEs
CVE-2026-32164
Windows User Interface Core Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2026-81355
Virtual Hard Disk (VHD) Miniport Driver Remote Code Execution Vulnerability
Published 2026-09-08 · Analyzed
7.8EPSS 0.002
CVE-2026-69799
Windows Hello Elevation of Privilege Vulnerability
Published 2026-09-08 · Analyzed
7.8EPSS 0.002
CVE-2026-20930
Windows Management Services Elevation of Privilege Vulnerability
Published 2026-04-14 · Analyzed
7.8EPSS 0.002
CVE-2022-41628
Uncontrolled search path element in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-05-10 · Modified
7.8EPSS 0.002
CVE-2022-41687
Insecure inherited permissions in the HotKey Services for some Intel(R) NUC P14E Laptop Element software for Windows 10 before version 1.1.44 may allow an authenticated user to potentially enable escalation of privilege via local access.
Published 2023-05-10 · Modified
7.8EPSS 0.001
CVE-2025-59200
Data Sharing Service Spoofing Vulnerability
Published 2025-10-14 · Analyzed
7.7EPSS 0.008
CVE-2026-20804
Windows Hello Tampering Vulnerability
Published 2026-01-13 · Analyzed
7.7EPSS 0.005
CVE-2026-20852
Windows Hello Tampering Vulnerability
Published 2026-01-13 · Analyzed
7.7EPSS 0.005
CVE-2025-29833
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
7.7EPSS 0.004
CVE-2025-53139
Windows Hello Security Feature Bypass Vulnerability
Published 2025-10-14 · Analyzed
7.7EPSS 0.003
CVE-2024-21351
Windows SmartScreen Security Feature Bypass Vulnerability
Published 2024-02-13 · Analyzed
7.6KEVEPSS 0.278
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2023-36884
Windows Search Remote Code Execution Vulnerability
Published 2023-07-11 · Analyzed
7.5KEVEPSS 0.989
CVE-2024-29059
.NET Framework Information Disclosure Vulnerability
Published 2024-03-22 · Analyzed
7.5KEVEPSS 0.986
CVE-2023-28302
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.926
CVE-2023-21547
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.893
CVE-2023-21769
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.887
CVE-2024-38112
Windows MSHTML Platform Spoofing Vulnerability
Published 2024-07-09 · Analyzed
7.5KEVEPSS 0.842
CVE-2024-49113
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Published 2024-12-10 · Analyzed
7.5EPSS 0.836
CVE-2023-36606
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-10-10 · Modified
7.5EPSS 0.672
CVE-2023-38039
When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl headers API. However, curl did not have a limit in how many or how large headers it would accept in a response, allowing a malicious server to stream an endless series of headers and eventually cause curl to run out of heap memory.
Published 2023-09-15 · Modified
7.5EPSS 0.581
CVE-2025-21285
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.557
CVE-2023-21818
Windows Secure Channel Denial of Service Vulnerability
Published 2023-02-14 · Modified
7.5EPSS 0.432
CVE-2024-38178
Scripting Engine Memory Corruption Vulnerability
Published 2024-08-13 · Analyzed
7.5KEVEPSS 0.414
CVE-2025-21277
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.386
CVE-2023-21819
Windows Secure Channel Denial of Service Vulnerability
Published 2023-02-14 · Modified
7.5EPSS 0.308
CVE-2024-43452
Windows Registry Elevation of Privilege Vulnerability
Published 2024-11-12 · Analyzed
7.5EPSS 0.284
CVE-2025-30397
Scripting Engine Memory Corruption Vulnerability
Published 2025-05-13 · Analyzed
7.5KEV1 PoCEPSS 0.268
CVE-2025-53722
Windows Remote Desktop Services Denial of Service Vulnerability
Published 2025-08-12 · Analyzed
7.5EPSS 0.223
CVE-2025-47984
Windows GDI Information Disclosure Vulnerability
Published 2025-07-08 · Analyzed
7.5EPSS 0.168
CVE-2023-28227
Windows Bluetooth Driver Remote Code Execution Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.066
CVE-2023-24940
Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
Published 2023-05-09 · Modified
7.5EPSS 0.052
CVE-2023-24939
Server for NFS Denial of Service Vulnerability
Published 2023-05-09 · Modified
7.5EPSS 0.047
CVE-2023-38149
Windows TCP/IP Denial of Service Vulnerability
Published 2023-09-12 · Analyzed
7.5EPSS 0.045
CVE-2024-38257
Microsoft AllJoyn API Information Disclosure Vulnerability
Published 2024-09-10 · Modified
7.5EPSS 0.045
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
Published 2024-01-09 · Modified
7.5EPSS 0.040
CVE-2024-21312
.NET Framework Denial of Service Vulnerability
Published 2024-01-09 · Modified
7.5EPSS 0.036
CVE-2025-21181
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-02-11 · Modified
7.5EPSS 0.035
CVE-2024-26219
HTTP.sys Denial of Service Vulnerability
Published 2024-04-09 · Analyzed
7.5EPSS 0.031
← Prev41 / 77Next →