microsoft / windows_11_23h2
761 known vulnerabilities in microsoft windows_11_23h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-32153 | Medium | 0.2% | 7.8 | Use after free in Microsoft Windows Speech allows an authorized attacker to elev… | |
| CVE-2026-50349 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-59122 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-59126 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62690 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62728 | Medium | 0.2% | 7.0 | Time-of-check time-of-use (toctou) race condition in Windows Common Log File Sys… | |
| CVE-2026-62729 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62734 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62748 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-69859 | Medium | 0.2% | 7.0 | Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class dri… | |
| CVE-2026-69319 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-73005 | Medium | 0.2% | 7.0 | Use after free in Windows Authentication Methods allows an authorized attacker t… | |
| CVE-2026-45597 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-42977 | Medium | 0.2% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-42979 | Medium | 0.2% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45487 | Medium | 0.2% | 7.8 | Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assis… | |
| CVE-2026-68824 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62727 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45596 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-45598 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45601 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-45603 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-33099 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-33100 | Medium | 0.2% | 7.0 | Use after free in Windows Ancillary Function Driver for WinSock allows an author… | |
| CVE-2026-42991 | Medium | 0.2% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-62908 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-68840 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-77894 | Medium | 0.2% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50507 | Low | 5.0% | 6.8 | Missing authentication for critical function in Windows BitLocker allows an unau… | |
| CVE-2026-33829 | Low | 3.4% | 4.3 | Exposure of sensitive information to an unauthorized actor in Windows Snipping T… | |
| CVE-2024-21356 | Low | 2.1% | 6.5 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerabi… | |
| CVE-2024-21343 | Low | 1.8% | 5.9 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | |
| CVE-2024-21344 | Low | 1.7% | 5.9 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | |
| CVE-2026-20847 | Low | 1.4% | 6.5 | Exposure of sensitive information to an unauthorized actor in Windows Shell allo… | |
| CVE-2026-20812 | Low | 1.1% | 6.5 | Improper input validation in Windows LDAP - Lightweight Directory Access Protoco… | |
| CVE-2026-69374 | Low | 1.1% | 6.5 | Allocation of resources without limits or throttling in Windows SMB Server allow… | |
| CVE-2026-21265 | Low | 1.1% | 6.4 | Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These … | |
| CVE-2026-59138 | Low | 1.0% | 6.5 | Null pointer dereference in Microsoft Remote Registry Service allows an authoriz… | |
| CVE-2026-61345 | Low | 1.0% | 6.5 | Null pointer dereference in Microsoft Remote Registry Service allows an authoriz… | |
| CVE-2026-70019 | Low | 1.0% | 6.5 | Windows hard link in Windows Compressed Folder allows an unauthorized attacker t… | |
| CVE-2024-20684 | Low | 1.0% | 6.5 | Windows Hyper-V Denial of Service Vulnerability | |
| CVE-2026-69723 | Low | 1.0% | 5.7 | Exposure of sensitive system information to an unauthorized control sphere in Wi… | |
| CVE-2024-21341 | Low | 1.0% | 6.8 | Windows Kernel Remote Code Execution Vulnerability | |
| CVE-2026-62702 | Low | 0.9% | 6.8 | Null pointer dereference in Windows Graphics Kernel allows an unauthorized attac… | |
| CVE-2024-38234 | Low | 0.9% | 6.5 | Windows Networking Denial of Service Vulnerability | |
| CVE-2026-20927 | Low | 0.9% | 5.3 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-78453 | Low | 0.9% | 6.5 | Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System Fi… | |
| CVE-2026-34348 | Low | 0.9% | 6.5 | Protection mechanism failure in Windows Event Logging Service allows an authoriz… | |
| CVE-2026-42903 | Low | 0.9% | 6.5 | Null pointer dereference in Windows Kerberos allows an authorized attacker to de… | |
| CVE-2026-69591 | Low | 0.9% | 5.7 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose inf… |