Vendor
Microsoft, page 3
As of , 389 Microsoft vulnerabilities are on CISA's list of exploited vulnerabilities, 117 of them used in ransomware campaigns; 40 were added in 2026. Patch first: CVE-2019-1068.
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 126 | CVE-2026-21509Security Feature Bypass | Microsoft Office | Patch this weekEPSS 0.71 | 0.71 | ||
| 127 | CVE-2009-0556PowerPoint Code Injection | Microsoft Office | Patch this weekEPSS 0.67 | 0.67 | ||
| 128 | CVE-2025-33073SMB Client Improper Access Control | Microsoft Windows | Patch this weekEPSS 0.83 | 0.83 | ||
| 129 | CVE-2025-24054NTLM Hash Disclosure Spoofing | Microsoft Windows | Patch this weekEPSS 0.59 | 0.59 | ||
| 130 | CVE-2024-21413Outlook Improper Input Validation | Microsoft Office Outlook | Patch this weekEPSS 0.95 | 0.95 | ||
| 131 | CVE-2024-29059Information Disclosure | Microsoft .NET Framework | Patch this weekEPSS 0.99 | 0.99 | ||
| 132 | CVE-2024-43451NTLMv2 Hash Disclosure Spoofing | Microsoft Windows | Patch this weekEPSS 0.84 | 0.84 | ||
| 133 | CVE-2024-30088Kernel TOCTOU Race Condition | Microsoft Windows | Patch this weekRansomware use; EPSS 0.68 | 0.68 | ||
| 134 | CVE-2024-43572Management Console Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.67 | 0.67 | ||
| 135 | CVE-2024-38112MSHTML Platform Spoofing | Microsoft Windows | Patch this weekEPSS 0.84 | 0.84 | ||
| 136 | CVE-2024-21338Kernel Exposed IOCTL with Insufficient Access Control | Microsoft Windows | Patch this weekRansomware use; EPSS 0.60 | 0.60 | ||
| 137 | CVE-2024-21412Internet Shortcut Files Security Feature Bypass | Microsoft Windows | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| 138 | CVE-2023-36025SmartScreen Security Feature Bypass | Microsoft Windows | Patch this weekEPSS 0.88 | 0.88 | ||
| 139 | CVE-2023-41763Privilege Escalation | Microsoft Skype for Business | Patch this weekEPSS 0.90 | 0.90 | ||
| 140 | CVE-2023-36884Search Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| 141 | CVE-2023-23397Outlook Privilege Escalation | Microsoft Office | Patch this weekEPSS 0.97 | 0.97 | ||
| 142 | CVE-2023-24880SmartScreen Security Feature Bypass | Microsoft Windows | Patch this weekRansomware use; EPSS 0.78 | 0.78 | ||
| 143 | CVE-2022-41080Privilege Escalation | Microsoft Exchange Server | Patch this weekRansomware use; EPSS 0.77 | 0.77 | ||
| 144 | CVE-2022-44698SmartScreen Security Feature Bypass | Microsoft Defender | Patch this weekRansomware use; EPSS 0.76 | 0.76 | ||
| 145 | CVE-2022-34713Support Diagnostic Tool (MSDT) Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.68 | 0.68 | ||
| 146 | CVE-2009-0563Buffer Overflow | Microsoft Office | Patch this weekEPSS 0.63 | 0.63 | ||
| 147 | CVE-2010-2572Buffer Overflow | Microsoft PowerPoint | Patch this weekEPSS 0.59 | 0.59 | ||
| 148 | CVE-2012-0151Authenticode Signature Verification Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.88 | 0.88 | ||
| 149 | CVE-2013-1331Buffer Overflow | Microsoft Office | Patch this weekEPSS 0.80 | 0.80 | ||
| 150 | CVE-2014-4148Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.60 | 0.60 | ||
| 151 | CVE-2016-0034Runtime Remote Code Execution | Microsoft Silverlight | Patch this weekRansomware use; EPSS 0.69 | 0.69 | ||
| 152 | CVE-2016-3393Graphics Device Interface (GDI) Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.68 | 0.68 | ||
| 153 | CVE-2016-7256Open Type Font Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.65 | 0.65 | ||
| 154 | CVE-2017-8543Search Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.74 | 0.74 | ||
| 155 | CVE-2021-42278Domain Services Privilege Escalation | Microsoft Active Directory | Patch this weekRansomware use; EPSS 0.73 | 0.73 | ||
| 156 | CVE-2021-42287Domain Services Privilege Escalation | Microsoft Active Directory | Patch this weekRansomware use; EPSS 0.77 | 0.77 | ||
| 157 | CVE-2018-8373Scripting Engine Memory Corruption | Microsoft Internet Explorer Scripting Engine | Patch this weekEPSS 0.62 | 0.62 | ||
| 158 | CVE-2018-8414Shell Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.73 | 0.73 | ||
| 159 | CVE-2017-0101Transaction Manager Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; EPSS 0.57 | 0.57 | ||
| 160 | CVE-2012-1856MSCOMCTL.OCX Remote Code Execution | Microsoft Office | Patch this weekEPSS 0.72 | 0.72 | ||
| 161 | CVE-2015-2545Malformed EPS File | Microsoft Office | Patch this weekEPSS 0.86 | 0.86 | ||
| 162 | CVE-2016-7193Memory Corruption | Microsoft Office | Patch this weekEPSS 0.58 | 0.58 | ||
| 163 | CVE-2016-7262Office Security Feature Bypass | Microsoft Excel | Patch this weekEPSS 0.58 | 0.58 | ||
| 164 | CVE-2017-0261Use-After-Free | Microsoft Office | Patch this weekEPSS 0.78 | 0.78 | ||
| 165 | CVE-2017-11826Remote Code Execution | Microsoft Office | Patch this weekEPSS 0.81 | 0.81 | ||
| 166 | CVE-2017-8570Remote Code Execution | Microsoft Office | Patch this weekEPSS 0.90 | 0.90 | ||
| 167 | CVE-2018-8174VBScript Engine Out-of-Bounds Write | Microsoft Windows | Patch this weekRansomware use; EPSS 0.88 | 0.88 | ||
| 168 | CVE-2019-0752Type Confusion | Microsoft Internet Explorer | Patch this weekRansomware use; EPSS 0.82 | 0.82 | ||
| 169 | CVE-2017-0262Remote Code Execution | Microsoft Office | Patch this weekEPSS 0.81 | 0.81 | ||
| 170 | CVE-2014-1776Memory Corruption | Microsoft Internet Explorer | Patch this weekEPSS 0.83 | 0.83 | ||
| 171 | CVE-2021-33766Information Disclosure | Microsoft Exchange Server | Patch this weekEPSS 0.98 | 0.98 | ||
| 172 | CVE-2015-1641Memory Corruption | Microsoft Office | Patch this weekEPSS 0.97 | 0.97 | ||
| 173 | CVE-2016-7255Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use; EPSS 0.81 | 0.81 | ||
| 174 | CVE-2017-8759Remote Code Execution | Microsoft .NET Framework | Patch this weekEPSS 0.89 | 0.89 | ||
| 175 | CVE-2017-11774Outlook Security Feature Bypass | Microsoft Office | Patch this weekEPSS 0.60 | 0.60 | ||
| 176 | CVE-2018-0798Memory Corruption | Microsoft Office | Patch this weekEPSS 0.95 | 0.95 | ||
| 177 | CVE-2018-0802Memory Corruption | Microsoft Office | Patch this weekRansomware use; EPSS 0.93 | 0.93 | ||
| 178 | CVE-2019-0604Remote Code Execution | Microsoft SharePoint | Patch this weekRansomware use; EPSS 0.99 | 0.99 | ||
| 179 | CVE-2020-0601CryptoAPI Spoofing | Microsoft Windows | Patch this weekEPSS 0.89 | 0.89 | ||
| 180 | CVE-2020-0674Scripting Engine Memory Corruption | Microsoft Internet Explorer | Patch this weekEPSS 0.87 | 0.87 | ||
| 181 | CVE-2020-0938Adobe Font Manager Library Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.69 | 0.69 | ||
| 182 | CVE-2020-1020Adobe Font Manager Library Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.65 | 0.65 | ||
| 183 | CVE-2020-1350DNS Server Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.97 | 0.97 | ||
| 184 | CVE-2021-26411Memory Corruption | Microsoft Internet Explorer | Patch this weekRansomware use; EPSS 0.81 | 0.81 | ||
| 185 | CVE-2021-26857Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; EPSS 0.96 | 0.96 | ||
| 186 | CVE-2021-26858Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; EPSS 0.94 | 0.94 | ||
| 187 | CVE-2021-31955Kernel Information Disclosure | Microsoft Windows | Patch this weekEPSS 0.81 | 0.81 | ||
| 188 | CVE-2021-33742MSHTML Platform Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.59 | 0.59 | ||
| 189 | CVE-2009-1537NULL Byte Overwrite | Microsoft DirectX | Patch this weekEPSS 0.51 | 0.51 | ||
| 190 | CVE-2025-26633Management Console (MMC) Improper Neutralization | Microsoft Windows | Patch this weekRansomware use | 0.30 | ||
| 191 | CVE-2024-38094Deserialization | Microsoft SharePoint | Patch this weekRansomware use; EPSS 0.51 | 0.51 | ||
| 192 | CVE-2024-43461MSHTML Platform Spoofing | Microsoft Windows | Patch this weekEPSS 0.54 | 0.54 | ||
| 193 | CVE-2021-31196Information Disclosure | Microsoft Exchange Server | Patch this weekEPSS 0.54 | 0.54 | ||
| 194 | CVE-2022-37969Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.28 | ||
| 195 | CVE-2022-21971Runtime Remote Code Execution | Microsoft Windows | Patch this weekEPSS 0.54 | 0.54 | ||
| 196 | CVE-2009-0557Object Record Corruption | Microsoft Office | Patch this weekEPSS 0.53 | 0.53 | ||
| 197 | CVE-2014-4077IME Japanese Privilege Escalation | Microsoft Input Method Editor (IME) Japanese | Patch this weekEPSS 0.55 | 0.55 | ||
| 198 | CVE-2015-2502Memory Corruption | Microsoft Internet Explorer | Patch this weekEPSS 0.51 | 0.51 | ||
| 199 | CVE-2012-2539Remote Code Execution | Microsoft Word | Patch this weekEPSS 0.53 | 0.53 | ||
| 200 | CVE-2015-2419Memory Corruption | Microsoft Internet Explorer | Patch this weekEPSS 0.53 | 0.53 | ||
| 201 | CVE-2015-1642Memory Corruption | Microsoft Office | Patch this weekEPSS 0.53 | 0.53 | ||
| 202 | CVE-2018-8581Privilege Escalation | Microsoft Exchange Server | Patch this weekRansomware use | 0.27 | ||
| 203 | CVE-2019-0541Remote Code Execution | Microsoft MSHTML | Patch this weekEPSS 0.53 | 0.53 | ||
| 204 | CVE-2019-0803Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use | 0.45 | ||
| 205 | CVE-2019-1367Scripting Engine Memory Corruption | Microsoft Internet Explorer | Patch this weekRansomware use; EPSS 0.52 | 0.52 | ||
| 206 | CVE-2020-0968Scripting Engine Memory Corruption | Microsoft Internet Explorer | Patch this weekRansomware use | 0.31 | ||
| 207 | CVE-2018-8639Win32k Improper Resource Shutdown or Release | Microsoft Windows | Patch this weekRansomware use | 0.22 | ||
| 208 | CVE-2016-3351Information Disclosure | Microsoft Internet Explorer and Edge | Patch this weekRansomware use | 0.26 | ||
| 209 | CVE-2016-3309Kernel Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.20 | ||
| 210 | CVE-2021-41379Installer Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.19 | ||
| 211 | CVE-2019-1215Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.19 | ||
| 212 | CVE-2025-29824Common Log File System (CLFS) Driver Use-After-Free | Microsoft Windows | Patch this weekRansomware use | 0.14 | ||
| 213 | CVE-2024-49039Task Scheduler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.14 | ||
| 214 | CVE-2023-23376Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.11 | ||
| 215 | CVE-2015-2546Memory Corruption | Microsoft Win32k | Patch this weekRansomware use | 0.10 | ||
| 216 | CVE-2019-1253AppX Deployment Server Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.12 | ||
| 217 | CVE-2021-43890AppX Installer Spoofing | Microsoft Windows | Patch this weekRansomware use | 0.10 | ||
| 218 | CVE-2019-1388Certificate Dialog Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.09 | ||
| 219 | CVE-2022-24521CLFS Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.07 | ||
| 220 | CVE-2021-38646Access Connectivity Engine Remote Code Execution | Microsoft Office | Patch this weekRansomware use | 0.08 | ||
| 221 | CVE-2019-1064AppX Deployment Service (AppXSVC) Privilege Escalation | Microsoft Windows | Patch this weekRansomware use | 0.07 | ||
| 222 | CVE-2019-1069Privilege Escalation | Microsoft Task Scheduler | Patch this weekRansomware use | 0.06 | ||
| 223 | CVE-2024-30051Privilege Escalation | Microsoft DWM Core Library | Patch this weekRansomware use | 0.06 | ||
| 224 | CVE-2016-0167Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use | 0.06 | ||
| 225 | CVE-2024-26169Error Reporting Service Improper Privilege Management | Microsoft Windows | Patch this weekRansomware use | 0.04 |