CVE-2023-35298: Microsoft Windows 11 21h2

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

HTTP.sys Denial of Service Vulnerability

Affected products

  • Microsoft Windows 11 21h2: before 10.0.22000.2176 (fixed in 10.0.22000.2176)
  • Microsoft Windows 11 22h2: before 10.0.22621.1992 (fixed in 10.0.22621.1992)
  • Microsoft Windows Server 2022: affected versions not specified

Published 2023-07-11. Last modified 2026-06-17.