Microsoft

Security Scorecard

Score

25F

Total CVEs

641

Patch Rate

28%

178 patched

Avg Response

1052d

days to patch

Critical Gaps

35

exploitable, no detection

Severity Breakdown

Critical17
High299
Medium264
Low40

Patch Status

Patched178 (28%)
Partial/Workaround31 (5%)
Unpatched432 (67%)

CVEs (645)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-20871Windows Desktop Manager BypassHigh7.8-Workaround
CVE-2026-20872Windows NTLM Spoofing VulnerabilityMedium6.5-Patched
CVE-2026-20873Windows Management Services Race ConditionHigh7.8-Patched
CVE-2026-20874Windows Management Services VulnerabilityHigh7.8-Patched
CVE-2026-20875Windows LSASS Denial of ServiceHigh7.5-Patched
CVE-2026-20876Windows Virtualization-Based Security (VBS) Enclave Heap OverflowMedium6.7-Patched
CVE-2026-20877Windows Management Services VulnerabilityHigh7.8-Patched
CVE-2026-20918Windows Management Services Local Privilege EscalationHigh7.80dUnpatched
CVE-2026-20919Windows SMB Server Race Condition VulnerabilityHigh7.5-Patched
CVE-2026-20920Windows Win32K ICOMP VulnerabilityHigh7.8-Patched