Microsoft

Windows 11 24h2

2157 vulnerabilities found.

Please note: This list may be incomplete. Data is provided in its original format, subject to change.
Media report
  • EPSS 0.2%
  • Published 08.09.2026 17:18:28
  • Last modified 11.09.2026 18:54:07

Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.

Media report
  • EPSS 0.48%
  • Published 08.09.2026 17:18:27
  • Last modified 11.09.2026 18:57:20

Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information with a physical attack.

Media report
  • EPSS 0.4%
  • Published 08.09.2026 17:18:27
  • Last modified 11.09.2026 18:55:06

Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.

Media report
  • EPSS 0.94%
  • Published 08.09.2026 17:18:26
  • Last modified 11.09.2026 18:56:03

Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.

Media report
  • EPSS 0.51%
  • Published 08.09.2026 17:18:26
  • Last modified 11.09.2026 20:05:41

Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.

Media report
  • EPSS 0.45%
  • Published 08.09.2026 17:18:25
  • Last modified 11.09.2026 18:58:25

Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.

Media report
  • EPSS 0.24%
  • Published 08.09.2026 17:18:24
  • Last modified 09.09.2026 17:17:43

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Media report
  • EPSS 0.25%
  • Published 08.09.2026 17:18:24
  • Last modified 12.09.2026 04:16:37

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Media report
  • EPSS 0.61%
  • Published 08.09.2026 17:18:22
  • Last modified 11.09.2026 18:59:47

Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.

Media report
  • EPSS 0.52%
  • Published 08.09.2026 17:18:22
  • Last modified 11.09.2026 21:17:16

Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.