Skip to main content

Vendor/product archive

microsoft / windows_10_21h2 CVEs

Beta · best-effort

2,394 CVEs tagged to microsoft / windows_10_21h248 Critical, 1,687 High, 651 Medium, 8 Low, 0 Unrated.

CVE-2026-50374

Published Jul 14, 2026

Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges with a physical attack.

CVSS 6.3 · Medium
evidence mentions
5
Buzz score
32.4

CVE-2026-50373

Published Jul 14, 2026

Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50371

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows LUAFV allows an authorized attacker to elevate privileges locally.

CVSS 7.0 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50367

Published Jul 14, 2026

Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50362

Published Jul 14, 2026

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-50357

Published Jul 14, 2026

Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.

CVSS 7.8 · High
evidence mentions
5
Buzz score
32.4

CVE-2026-50352

Published Jul 14, 2026

Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.

CVSS 5.5 · Medium
evidence mentions
4
Buzz score
29.1

CVE-2026-50348

Published Jul 14, 2026

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.

CVSS 7.0 · High
evidence mentions
4
Buzz score
29.1

CVE-2026-50343

Published Jul 14, 2026

Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
6
Buzz score
35.5
Showing 176-200 of 2,394 CVEsPage 8 of 96