Microsoft

Windows 11 25h2

1189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.19%
  • Veröffentlicht 14.07.2026 17:07:58
  • Zuletzt bearbeitet 22.07.2026 16:18:05

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.

  • EPSS 0.26%
  • Veröffentlicht 14.07.2026 17:07:57
  • Zuletzt bearbeitet 23.07.2026 05:16:35

Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.

  • EPSS 0.41%
  • Veröffentlicht 14.07.2026 17:07:57
  • Zuletzt bearbeitet 21.07.2026 18:21:48

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code with a physical attack.

  • EPSS 0.5%
  • Veröffentlicht 14.07.2026 17:07:56
  • Zuletzt bearbeitet 22.07.2026 15:00:25

Use after free in Windows Message Queuing allows an authorized attacker to execute code over a network.

  • EPSS 0.26%
  • Veröffentlicht 14.07.2026 17:07:55
  • Zuletzt bearbeitet 22.07.2026 16:18:03

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

  • EPSS 0.26%
  • Veröffentlicht 14.07.2026 17:07:55
  • Zuletzt bearbeitet 21.07.2026 18:25:25

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

  • EPSS 0.36%
  • Veröffentlicht 14.07.2026 17:07:54
  • Zuletzt bearbeitet 21.07.2026 18:19:16

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • EPSS 0.31%
  • Veröffentlicht 14.07.2026 17:07:54
  • Zuletzt bearbeitet 21.07.2026 18:24:07

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

  • EPSS 0.24%
  • Veröffentlicht 14.07.2026 17:07:53
  • Zuletzt bearbeitet 22.07.2026 16:18:05

Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.

  • EPSS 0.23%
  • Veröffentlicht 14.07.2026 17:07:52
  • Zuletzt bearbeitet 21.07.2026 18:20:28

Improper neutralization of special elements used in a command ('command injection') in Windows Clipboard User Service allows an authorized attacker to elevate privileges locally.