Microsoft

Windows 11 25h2

1189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 15.48%
  • Veröffentlicht 09.06.2026 17:17:33
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.35%
  • Veröffentlicht 09.06.2026 17:17:33
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Improper access control in Windows BitLocker allows an authorized attacker to bypass a security feature locally.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 09.06.2026 17:17:32
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 17:17:32
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Improper access control in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

Medienbericht
  • EPSS 0.41%
  • Veröffentlicht 09.06.2026 17:17:32
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 17:17:32
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 09.06.2026 17:17:31
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to execute code locally.

Medienbericht
  • EPSS 0.32%
  • Veröffentlicht 09.06.2026 17:17:31
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Improper input validation in Microsoft Azure Attestation service and Device Health Attestation Service allows an authorized attacker to perform spoofing with a physical attack.

Medienbericht
  • EPSS 0.52%
  • Veröffentlicht 09.06.2026 17:17:30
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Access of resource using incompatible type ('type confusion') in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.41%
  • Veröffentlicht 09.06.2026 17:17:30
  • Zuletzt bearbeitet 23.07.2026 08:10:00

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.