Microsoft

Windows 11 25h2

1189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.34%
  • Veröffentlicht 10.02.2026 18:16:22
  • Zuletzt bearbeitet 19.08.2026 17:18:41

Buffer over-read in Windows GDI+ allows an unauthorized attacker to deny service over a network.

  • EPSS 0.48%
  • Veröffentlicht 13.01.2026 17:57:10
  • Zuletzt bearbeitet 30.07.2026 21:17:11

Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.

  • EPSS 0.48%
  • Veröffentlicht 13.01.2026 17:57:05
  • Zuletzt bearbeitet 30.07.2026 21:17:10

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

  • EPSS 0.49%
  • Veröffentlicht 13.01.2026 17:57:05
  • Zuletzt bearbeitet 30.07.2026 21:17:11

Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.

  • EPSS 0.46%
  • Veröffentlicht 13.01.2026 17:57:04
  • Zuletzt bearbeitet 30.07.2026 21:17:10

Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.

  • EPSS 0.79%
  • Veröffentlicht 13.01.2026 17:57:03
  • Zuletzt bearbeitet 30.07.2026 21:17:09

External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.

  • EPSS 0.43%
  • Veröffentlicht 13.01.2026 17:57:03
  • Zuletzt bearbeitet 30.07.2026 21:17:10

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an unauthorized attacker to disclose information locally.

  • EPSS 0.31%
  • Veröffentlicht 13.01.2026 17:57:02
  • Zuletzt bearbeitet 30.07.2026 21:17:07

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

  • EPSS 0.31%
  • Veröffentlicht 13.01.2026 17:57:01
  • Zuletzt bearbeitet 30.07.2026 21:17:06

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Services allows an authorized attacker to elevate privileges locally.

  • EPSS 4.14%
  • Veröffentlicht 13.01.2026 17:57:00
  • Zuletzt bearbeitet 30.07.2026 21:17:06

Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.