Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Windows 11
Total 598 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-41057 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2026-08-10 N/A 7.8 HIGH
Windows HTTP.sys Elevation of Privilege Vulnerability
CVE-2022-41056 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2026-08-10 N/A 7.5 HIGH
Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability
CVE-2022-41055 1 Microsoft 4 Windows 10, Windows 11, Windows Server 2019 and 1 more 2026-08-10 N/A 5.5 MEDIUM
Windows Human Interface Device Information Disclosure Vulnerability
CVE-2022-41054 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2026-08-10 N/A 7.8 HIGH
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
CVE-2022-41053 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2026-08-10 N/A 7.5 HIGH
Windows Kerberos Denial of Service Vulnerability
CVE-2022-41052 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2026-08-10 N/A 7.8 HIGH
Windows Graphics Component Remote Code Execution Vulnerability
CVE-2022-41050 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2026-08-10 N/A 7.8 HIGH
Windows Extensible File Allocation Table Elevation of Privilege Vulnerability
CVE-2022-41048 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 8.8 HIGH
Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2022-41047 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 8.8 HIGH
Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2022-41045 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41039 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-38015 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2026-08-10 N/A 6.5 MEDIUM
Windows Hyper-V Denial of Service Vulnerability
CVE-2022-37992 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-08-10 N/A 7.8 HIGH
Windows Group Policy Elevation of Privilege Vulnerability
CVE-2024-7553 2 Microsoft, Mongodb 24 Windows 10 1507, Windows 10 1511, Windows 10 1607 and 21 more 2026-06-17 N/A 7.3 HIGH
Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing arbitrary behaviour determined by the contents of untrusted files. This issue affects MongoDB Server v5.0 versions prior to 5.0.27, MongoDB Server v6.0 versions prior to 6.0.16, MongoDB Server v7.0 versions prior to 7.0.12, MongoDB Server v7.3 versions prior 7.3.3, MongoDB C Driver versions prior to 1.26.2 and MongoDB PHP Driver versions prior to 1.18.1. Required Configuration: Only environments with Windows as the underlying operating system is affected by this issue
CVE-2023-44216 7 Amd, Apple, Canonical and 4 more 16 Ryzen 5 7600x, Ryzen 7 4800u, M1 Mac Mini and 13 more 2026-06-17 N/A 5.3 MEDIUM
PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GPU.zip issue. For example, attackers can sometimes accurately determine text contained on a web page from one origin if they control a resource from a different origin.
CVE-2023-29413 2 Microsoft, Schneider-electric 7 Windows 10, Windows 11, Windows Server 2016 and 4 more 2026-06-17 N/A 7.5 HIGH
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause Denial-of-Service when accessed by an unauthenticated user on the Schneider UPS Monitor service.
CVE-2023-29412 2 Microsoft, Schneider-electric 7 Windows 10, Windows 11, Windows Server 2016 and 4 more 2026-06-17 N/A 9.8 CRITICAL
CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote code execution when manipulating internal methods through Java RMI interface.
CVE-2023-29411 2 Microsoft, Schneider-electric 7 Windows 10, Windows 11, Windows Server 2016 and 4 more 2026-06-17 N/A 9.8 CRITICAL
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface.
CVE-2023-21776 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2026-06-17 N/A 5.5 MEDIUM
Windows Kernel Information Disclosure Vulnerability
CVE-2023-21771 1 Microsoft 3 Windows 10, Windows 11, Windows Server 2022 2026-06-17 N/A 7.0 HIGH
Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability