CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

microsoft

powershell

23 known vulnerabilities · sorted by CVSS score

CVE-2018-8327
CRITICAL9.8

A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." This affects PowerShell Editor, PowerShell Extension.

microsoft / powershell+1
Network
Published Jul 11, 2018
Page 1 of 2
CVE-2024-0057
CRITICAL9.1

NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability

microsoft / powershell+23
Network
Published Jan 9, 2024
CVE-2022-41076
HIGH8.5

PowerShell Remote Code Execution Vulnerability

microsoft / powershell+21
Network
Published Dec 13, 2022
CVE-2022-26788
HIGH7.8

PowerShell Elevation of Privilege Vulnerability

microsoft / powershell+20
Local
Published Apr 15, 2022
CVE-2022-41121
HIGH7.8

Windows Graphics Component Elevation of Privilege Vulnerability

microsoft / powershell+22
Local
Published Dec 13, 2022
CVE-2025-30399
HIGH7.5

Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.

microsoft / visual_studio_2022+7
Network
Published Jun 13, 2025
CVE-2024-26190
HIGH7.5

Microsoft QUIC Denial of Service Vulnerability

microsoft / .net+12
Network
Published Mar 12, 2024
CVE-2023-21538
HIGH7.5

.NET Denial of Service Vulnerability

microsoft / .net+3
Network
Published Jan 10, 2023
CVE-2025-21171
HIGH7.5

.NET Remote Code Execution Vulnerability

microsoft / .net+5
Network
Published Jan 14, 2025
CVE-2022-23267
HIGH7.5

.NET and Visual Studio Denial of Service Vulnerability

microsoft / .net+11
Network
Published May 10, 2022
CVE-2020-1108
HIGH7.5

A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests, aka '.NET Core & .NET Framework Denial of Service Vulnerability'.

microsoft / .net+96
Network
Published May 21, 2020
CVE-2024-21392
HIGH7.5

.NET and Visual Studio Denial of Service Vulnerability

microsoft / .net+7
Network
Published Mar 12, 2024
CVE-2024-21409
HIGH7.3

.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability

microsoft / .net_framework+21
Local
Published Apr 9, 2024
CVE-2025-25004
HIGH7.3

Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

microsoft / powershell+23
Local
Published Oct 14, 2025
CVE-2025-49734
HIGH7.0

Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally.

microsoft / powershell+15
Local
Published Sep 9, 2025
CVE-2020-0951
MEDIUM6.7

<p>A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by WDAC.</p> <p>To exploit the vulnerability, an attacker need administrator access on a local machine where PowerShell is running. The attacker could then connect to a PowerShell session and send commands to execute arbitrary code.</p> <p>The update addresses the vulnerability by correcting how PowerShell commands are validated when WDAC protection is enabled.</p>

microsoft / powershell+15
Local
Published Sep 11, 2020
CVE-2023-36013
MEDIUM6.5

PowerShell Information Disclosure Vulnerability

microsoft / powershell+1
Network
Published Nov 20, 2023
CVE-2022-24512
MEDIUM6.3

.NET and Visual Studio Remote Code Execution Vulnerability

microsoft / .net+15
Network
Published Mar 9, 2022
CVE-2024-30045
MEDIUM6.3

.NET and Visual Studio Remote Code Execution Vulnerability

microsoft / .net+6
Network
Published May 14, 2024
CVE-2022-34716
MEDIUM5.9

.NET Spoofing Vulnerability

microsoft / .net+3
Network
Published Aug 9, 2022