VendorsMicrosoftwindows_11_22h2all versions
Vulnerabilities

Microsoft Windows 11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1687CVEs
CVE-2024-7553
Accessing Untrusted Directory May Allow Local Privilege Escalation
Published 2024-08-07 · Analyzed
7.8EPSS 0.003
CVE-2025-55696
NtQueryInformation Token function (ntifs.h) Elevation of Privilege Vulnerability
Published 2025-10-14 · Analyzed
7.8EPSS 0.002
CVE-2025-58720
Windows Cryptographic Services Information Disclosure Vulnerability
Published 2025-10-14 · Analyzed
7.8EPSS 0.002
CVE-2025-59200
Data Sharing Service Spoofing Vulnerability
Published 2025-10-14 · Analyzed
7.7EPSS 0.008
CVE-2025-29833
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability
Published 2025-05-13 · Analyzed
7.7EPSS 0.004
CVE-2025-53139
Windows Hello Security Feature Bypass Vulnerability
Published 2025-10-14 · Analyzed
7.7EPSS 0.003
CVE-2024-21351
Windows SmartScreen Security Feature Bypass Vulnerability
Published 2024-02-13 · Analyzed
7.6KEVEPSS 0.278
CVE-2023-44487
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
Published 2023-10-10 · Analyzed
7.5KEV1 PoCEPSS 1.000
CVE-2023-36884
Windows Search Remote Code Execution Vulnerability
Published 2023-07-11 · Analyzed
7.5KEVEPSS 0.989
CVE-2024-29059
.NET Framework Information Disclosure Vulnerability
Published 2024-03-22 · Analyzed
7.5KEVEPSS 0.986
CVE-2023-28302
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.926
CVE-2023-21547
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.893
CVE-2023-21769
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.887
CVE-2024-38112
Windows MSHTML Platform Spoofing Vulnerability
Published 2024-07-09 · Analyzed
7.5KEVEPSS 0.842
CVE-2024-49113
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
Published 2024-12-10 · Analyzed
7.5EPSS 0.836
CVE-2023-38171
Microsoft QUIC Denial of Service Vulnerability
Published 2023-10-10 · Modified
7.5EPSS 0.697
CVE-2023-36606
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2023-10-10 · Modified
7.5EPSS 0.672
CVE-2025-29971
Web Threat Defense (WTD.sys) Denial of Service Vulnerability
Published 2025-05-13 · Analyzed
7.5EPSS 0.644
CVE-2024-43642
Windows SMB Denial of Service Vulnerability
Published 2024-11-12 · Analyzed
7.5EPSS 0.631
CVE-2023-38039
When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl headers API. However, curl did not have a limit in how many or how large headers it would accept in a response, allowing a malicious server to stream an endless series of headers and eventually cause curl to run out of heap memory.
Published 2023-09-15 · Modified
7.5EPSS 0.581
CVE-2025-21285
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.557
CVE-2024-38178
Scripting Engine Memory Corruption Vulnerability
Published 2024-08-13 · Analyzed
7.5KEVEPSS 0.414
CVE-2025-21277
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-01-14 · Analyzed
7.5EPSS 0.386
CVE-2024-38148
Windows Secure Channel Denial of Service Vulnerability
Published 2024-08-13 · Analyzed
7.5EPSS 0.318
CVE-2024-43452
Windows Registry Elevation of Privilege Vulnerability
Published 2024-11-12 · Analyzed
7.5EPSS 0.284
CVE-2025-30397
Scripting Engine Memory Corruption Vulnerability
Published 2025-05-13 · Analyzed
7.5KEV1 PoCEPSS 0.268
CVE-2025-53722
Windows Remote Desktop Services Denial of Service Vulnerability
Published 2025-08-12 · Analyzed
7.5EPSS 0.223
CVE-2025-47984
Windows GDI Information Disclosure Vulnerability
Published 2025-07-08 · Analyzed
7.5EPSS 0.162
CVE-2023-28227
Windows Bluetooth Driver Remote Code Execution Vulnerability
Published 2023-04-11 · Modified
7.5EPSS 0.066
CVE-2023-36435
Microsoft QUIC Denial of Service Vulnerability
Published 2023-10-10 · Modified
7.5EPSS 0.055
CVE-2023-24940
Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
Published 2023-05-09 · Modified
7.5EPSS 0.052
CVE-2023-24939
Server for NFS Denial of Service Vulnerability
Published 2023-05-09 · Modified
7.5EPSS 0.047
CVE-2023-38149
Windows TCP/IP Denial of Service Vulnerability
Published 2023-09-12 · Analyzed
7.5EPSS 0.045
CVE-2024-38257
Microsoft AllJoyn API Information Disclosure Vulnerability
Published 2024-09-10 · Modified
7.5EPSS 0.045
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
Published 2024-01-09 · Modified
7.5EPSS 0.040
CVE-2024-21312
.NET Framework Denial of Service Vulnerability
Published 2024-01-09 · Modified
7.5EPSS 0.036
CVE-2025-21181
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Published 2025-02-11 · Modified
7.5EPSS 0.035
CVE-2024-26219
HTTP.sys Denial of Service Vulnerability
Published 2024-04-09 · Analyzed
7.5EPSS 0.031
CVE-2024-26254
Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability
Published 2024-04-09 · Analyzed
7.5EPSS 0.031
CVE-2023-35383
Microsoft Message Queuing Information Disclosure Vulnerability
Published 2023-08-08 · Modified
7.5EPSS 0.030
← Prev22 / 43Next →