microsoft / windows_11_23h2
761 known vulnerabilities in microsoft windows_11_23h2.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-73021 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-77489 | Medium | 0.3% | 7.8 | Null pointer dereference in Windows Biometric Service allows an authorized attac… | |
| CVE-2026-83954 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83967 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83968 | Medium | 0.3% | 7.8 | Use after free in Windows Biometric Service allows an authorized attacker to ele… | |
| CVE-2026-83970 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83971 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83972 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83973 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83975 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83977 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83978 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83979 | Medium | 0.3% | 7.8 | Use after free in Windows Biometric Service allows an authorized attacker to ele… | |
| CVE-2026-83980 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83981 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83982 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83983 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83985 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83986 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83987 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-83988 | Medium | 0.3% | 7.8 | Heap-based buffer overflow in Windows Biometric Service allows an authorized att… | |
| CVE-2026-33828 | Medium | 0.3% | 7.8 | Trust boundary violation in Windows Attestation allows an authorized attacker to… | |
| CVE-2026-20877 | Medium | 0.3% | 7.8 | Use after free in Windows Management Services allows an authorized attacker to e… | |
| CVE-2026-20918 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20924 | Medium | 0.3% | 7.8 | Use after free in Windows Management Services allows an authorized attacker to e… | |
| CVE-2026-33098 | Medium | 0.3% | 7.8 | Use after free in Windows Container Isolation FS Filter Driver allows an authori… | |
| CVE-2026-45641 | Medium | 0.3% | 8.4 | Access of resource using incompatible type ('type confusion') in Windows Hyper-V… | |
| CVE-2026-20826 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20831 | Medium | 0.3% | 7.8 | Time-of-check time-of-use (toctou) race condition in Windows Ancillary Function … | |
| CVE-2026-83498 | Medium | 0.3% | 7.8 | Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enc… | |
| CVE-2026-45588 | Medium | 0.3% | 7.9 | Protection mechanism failure in Windows Secure Boot allows an authorized attacke… | |
| CVE-2026-47656 | Medium | 0.3% | 7.9 | Protection mechanism failure in Windows Boot Manager allows an authorized attack… | |
| CVE-2026-48568 | Medium | 0.3% | 7.9 | Protection mechanism failure in Windows Secure Boot allows an authorized attacke… | |
| CVE-2026-48570 | Medium | 0.3% | 7.9 | Protection mechanism failure in Windows Secure Boot allows an authorized attacke… | |
| CVE-2026-48575 | Medium | 0.3% | 7.9 | Protection mechanism failure in Windows Secure Boot allows an authorized attacke… | |
| CVE-2026-69900 | Medium | 0.3% | 7.8 | Untrusted pointer dereference in Kernel Streaming WOW Thunk Service Driver allow… | |
| CVE-2026-40409 | Medium | 0.3% | 7.8 | Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege V… | |
| CVE-2026-20814 | Medium | 0.3% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20836 | Medium | 0.3% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20858 | Medium | 0.3% | 7.8 | Use after free in Windows Management Services allows an authorized attacker to e… | |
| CVE-2026-20861 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20866 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20867 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20869 | Medium | 0.3% | 7.0 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20873 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20874 | Medium | 0.3% | 7.8 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-50650 | Medium | 0.3% | 7.8 | Improper control of generation of code ('code injection') in .NET Framework allo… | |
| CVE-2026-70354 | Medium | 0.3% | 7.8 | Out-of-bounds write in .NET allows an unauthorized attacker to execute code loca… | |
| CVE-2026-41092 | Medium | 0.3% | 7.8 | Improper access control in Microsoft Kinect allows an authorized attacker to ele… | |
| CVE-2026-56174 | Medium | 0.3% | 7.8 | Untrusted search path in Windows Narrator Braille allows an authorized attacker … |