Microsoft

Windows 11 24h2

1728 vulnerabilities found.

Please note: This list may be incomplete. Data is provided in its original format, subject to change.
  • EPSS 0.19%
  • Published 16.07.2026 22:17:50
  • Last modified 22.07.2026 18:19:14

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

Media report
  • EPSS 0.24%
  • Published 14.07.2026 17:10:17
  • Last modified 22.07.2026 16:18:26

Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofing over an adjacent network.

  • EPSS 0.23%
  • Published 14.07.2026 17:10:16
  • Last modified 22.07.2026 16:18:42

Missing cryptographic step in Windows Boot Loader allows an authorized attacker to bypass a security feature locally.

  • EPSS 0.23%
  • Published 14.07.2026 17:10:15
  • Last modified 22.07.2026 16:18:42

Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.

  • EPSS 0.29%
  • Published 14.07.2026 17:10:14
  • Last modified 22.07.2026 16:18:42

Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • EPSS 0.18%
  • Published 14.07.2026 17:10:13
  • Last modified 22.07.2026 16:18:41

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Networking allows an authorized attacker to elevate privileges locally.

  • EPSS 0.23%
  • Published 14.07.2026 17:10:13
  • Last modified 29.07.2026 19:16:47

Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.

  • EPSS 0.85%
  • Published 14.07.2026 17:10:12
  • Last modified 22.07.2026 16:18:41

Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network.

  • EPSS 0.23%
  • Published 14.07.2026 17:10:11
  • Last modified 22.07.2026 16:18:41

Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

Exploit
  • EPSS 0.45%
  • Published 14.07.2026 17:10:10
  • Last modified 22.07.2026 16:18:40

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.