{"schema_version":1,"title":"Microsoft Windows Server 2019 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 211 vulnerabilities in Microsoft Windows Server 2019: 0 in the last 7 days and 80 in the last 90 days, 104 of them critical and 101 exploited in the wild. The most recent, CVE-2026-58628, was published on 14 July 2026.","url":"https://junglewise.ai/threats/technologies/windows-server-2019","json_url":"https://junglewise.ai/threats/technologies/windows-server-2019.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/windows-server-2019","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":82,"all_time":211,"critical":104,"exploited":101,"last_7_days":0,"last_30_days":0,"last_90_days":80,"last_365_days":111},"latest":[{"cve":"CVE-2026-58628","cvss":7.8,"slug":"cve-2026-58628-microsoft-windows-wireless-networking-privilege-escalation","title":"Microsoft Windows Wireless Networking privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:44.953+00:00","url":"https://junglewise.ai/threats/cve-2026-58628-microsoft-windows-wireless-networking-privilege-escalation"},{"cve":"CVE-2026-58627","cvss":7.5,"slug":"cve-2026-58627-microsoft-windows-dhcp-server-denial-of-service","title":"Microsoft Windows DHCP Server denial of service","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:44.79+00:00","url":"https://junglewise.ai/threats/cve-2026-58627-microsoft-windows-dhcp-server-denial-of-service"},{"cve":"CVE-2026-58613","cvss":7.8,"slug":"cve-2026-58613-microsoft-windows-cloud-files-mini-filter-driver-privilege","title":"Microsoft Windows Cloud Files Mini Filter Driver privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:44.007+00:00","url":"https://junglewise.ai/threats/cve-2026-58613-microsoft-windows-cloud-files-mini-filter-driver-privilege"},{"cve":"CVE-2026-58547","cvss":5.5,"slug":"cve-2026-58547-microsoft-windows-upnp-heap-overflow-in-upnp-dll","title":"Microsoft Windows UPnP heap overflow in upnp.dll","severity":"medium","exploited":false,"published_at":"2026-07-14T18:18:42.907+00:00","url":"https://junglewise.ai/threats/cve-2026-58547-microsoft-windows-upnp-heap-overflow-in-upnp-dll"},{"cve":"CVE-2026-58538","cvss":7.8,"slug":"cve-2026-58538-microsoft-windows-bluetooth-service-heap-overflow-privilege","title":"Microsoft Windows Bluetooth Service heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:41.06+00:00","url":"https://junglewise.ai/threats/cve-2026-58538-microsoft-windows-bluetooth-service-heap-overflow-privilege"},{"cve":"CVE-2026-58536","cvss":7.8,"slug":"cve-2026-58536-microsoft-windows-cloud-files-mini-filter-driver-use-after-free","title":"Microsoft Windows Cloud Files Mini Filter Driver use after free","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:40.77+00:00","url":"https://junglewise.ai/threats/cve-2026-58536-microsoft-windows-cloud-files-mini-filter-driver-use-after-free"},{"cve":"CVE-2026-58528","cvss":6.8,"slug":"cve-2026-58528-microsoft-windows-out-of-bounds-read-in-usb-audio-class-driver","title":"Microsoft Windows out-of-bounds read in USB Audio Class driver","severity":"medium","exploited":false,"published_at":"2026-07-14T18:18:39.36+00:00","url":"https://junglewise.ai/threats/cve-2026-58528-microsoft-windows-out-of-bounds-read-in-usb-audio-class-driver"},{"cve":"CVE-2026-57088","cvss":7.8,"slug":"cve-2026-57088-microsoft-esent-privilege-escalation-in-windows","title":"Microsoft ESENT privilege escalation in Windows","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:33.08+00:00","url":"https://junglewise.ai/threats/cve-2026-57088-microsoft-esent-privilege-escalation-in-windows"},{"cve":"CVE-2026-56173","cvss":7,"slug":"cve-2026-56173-microsoft-windows-webview-use-after-free-privilege-escalation","title":"Microsoft Windows WebView use after free privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:23.31+00:00","url":"https://junglewise.ai/threats/cve-2026-56173-microsoft-windows-webview-use-after-free-privilege-escalation"},{"cve":"CVE-2026-56159","cvss":9.8,"slug":"cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:18:22.797+00:00","url":"https://junglewise.ai/threats/cve-2026-56159-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-54125","cvss":7.8,"slug":"cve-2026-54125-microsoft-windows-runtime-privilege-escalation-via-race-condition","title":"Microsoft Windows Runtime privilege escalation via race condition","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:08.513+00:00","url":"https://junglewise.ai/threats/cve-2026-54125-microsoft-windows-runtime-privilege-escalation-via-race-condition"},{"cve":"CVE-2026-54121","cvss":8.8,"slug":"cve-2026-54121-microsoft-active-directory-certificate-services-privilege","title":"Microsoft Active Directory Certificate Services privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:08.057+00:00","url":"https://junglewise.ai/threats/cve-2026-54121-microsoft-active-directory-certificate-services-privilege"},{"cve":"CVE-2026-50689","cvss":7.8,"slug":"cve-2026-50689-microsoft-windows-clipboard-server-use-after-free-privilege","title":"Microsoft Windows Clipboard Server use after free privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:05.017+00:00","url":"https://junglewise.ai/threats/cve-2026-50689-microsoft-windows-clipboard-server-use-after-free-privilege"},{"cve":"CVE-2026-50685","cvss":7.5,"slug":"cve-2026-50685-microsoft-windows-dhcp-server-double-free-remote-code-execution","title":"Microsoft Windows DHCP Server double free remote code execution","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:03.603+00:00","url":"https://junglewise.ai/threats/cve-2026-50685-microsoft-windows-dhcp-server-double-free-remote-code-execution"},{"cve":"CVE-2026-50684","cvss":4.8,"slug":"cve-2026-50684-microsoft-ad-fs-cross-site-scripting-in-web-page-generation","title":"Microsoft AD FS cross-site scripting in web page generation","severity":"medium","exploited":false,"published_at":"2026-07-14T18:18:03.163+00:00","url":"https://junglewise.ai/threats/cve-2026-50684-microsoft-ad-fs-cross-site-scripting-in-web-page-generation"},{"cve":"CVE-2026-50683","cvss":8,"slug":"cve-2026-50683-microsoft-windows-dhcp-server-heap-overflow-privilege-escalation","title":"Microsoft Windows DHCP Server heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:02.967+00:00","url":"https://junglewise.ai/threats/cve-2026-50683-microsoft-windows-dhcp-server-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-50680","cvss":8.2,"slug":"cve-2026-50680-microsoft-windows-hyper-v-heap-overflow-privilege-escalation","title":"Microsoft Windows Hyper-V heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:02.47+00:00","url":"https://junglewise.ai/threats/cve-2026-50680-microsoft-windows-hyper-v-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-50672","cvss":7,"slug":"cve-2026-50672-microsoft-windows-ntfs-privilege-escalation-via-use-after-free","title":"Microsoft Windows NTFS privilege escalation via use after free","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:01.29+00:00","url":"https://junglewise.ai/threats/cve-2026-50672-microsoft-windows-ntfs-privilege-escalation-via-use-after-free"},{"cve":"CVE-2026-50670","cvss":8.8,"slug":"cve-2026-50670-microsoft-windows-kernel-privilege-escalation-via-out-of-bounds","title":"Microsoft Windows Kernel privilege escalation via out-of-bounds read","severity":"high","exploited":false,"published_at":"2026-07-14T18:18:01.063+00:00","url":"https://junglewise.ai/threats/cve-2026-50670-microsoft-windows-kernel-privilege-escalation-via-out-of-bounds"},{"cve":"CVE-2026-50518","cvss":9.8,"slug":"cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution","title":"Microsoft Windows DHCP Server heap overflow remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-14T18:17:58.373+00:00","url":"https://junglewise.ai/threats/cve-2026-50518-microsoft-windows-dhcp-server-heap-overflow-remote-code-execution"},{"cve":"CVE-2026-50499","cvss":7.8,"slug":"cve-2026-50499-microsoft-windows-heap-overflow-in-print-spooler-components","title":"Microsoft Windows heap overflow in Print Spooler Components","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:56.813+00:00","url":"https://junglewise.ai/threats/cve-2026-50499-microsoft-windows-heap-overflow-in-print-spooler-components"},{"cve":"CVE-2026-50495","cvss":6.1,"slug":"cve-2026-50495-microsoft-windows-dns-improper-access-control","title":"Microsoft Windows DNS improper access control","severity":"medium","exploited":false,"published_at":"2026-07-14T18:17:56.117+00:00","url":"https://junglewise.ai/threats/cve-2026-50495-microsoft-windows-dns-improper-access-control"},{"cve":"CVE-2026-50493","cvss":7.8,"slug":"cve-2026-50493-microsoft-windows-use-after-free-in-graphics-kernel","title":"Microsoft Windows use after free in Graphics Kernel","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:55.8+00:00","url":"https://junglewise.ai/threats/cve-2026-50493-microsoft-windows-use-after-free-in-graphics-kernel"},{"cve":"CVE-2026-50484","cvss":7.8,"slug":"cve-2026-50484-microsoft-windows-kernel-heap-overflow-privilege-escalation","title":"Microsoft Windows Kernel heap overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:54.42+00:00","url":"https://junglewise.ai/threats/cve-2026-50484-microsoft-windows-kernel-heap-overflow-privilege-escalation"},{"cve":"CVE-2026-50479","cvss":7.8,"slug":"cve-2026-50479-microsoft-windows-usb-hub-driver-privilege-escalation","title":"Microsoft Windows USB Hub Driver privilege escalation","severity":"high","exploited":false,"published_at":"2026-07-14T18:17:53.857+00:00","url":"https://junglewise.ai/threats/cve-2026-50479-microsoft-windows-usb-hub-driver-privilege-escalation"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":3,"exploited":1,"vulnerabilities":80},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Microsoft Windows","slug":"windows-","vulnerabilities":963,"url":"https://junglewise.ai/threats/technologies/windows-"},{"name":"Microsoft Windows 10","slug":"windows-10","vulnerabilities":588,"url":"https://junglewise.ai/threats/technologies/windows-10"},{"name":"Microsoft Windows 11","slug":"windows-11","vulnerabilities":493,"url":"https://junglewise.ai/threats/technologies/windows-11"},{"name":"Microsoft Windows Server 2012","slug":"windows-server-2012","vulnerabilities":293,"url":"https://junglewise.ai/threats/technologies/windows-server-2012"},{"name":"Microsoft Windows Server 2016","slug":"windows-server-2016","vulnerabilities":213,"url":"https://junglewise.ai/threats/technologies/windows-server-2016"},{"name":"Microsoft Windows 11 24h2","slug":"windows-11-24h2","vulnerabilities":192,"url":"https://junglewise.ai/threats/technologies/windows-11-24h2"},{"name":"Microsoft Windows Server 2022","slug":"windows-server-2022","vulnerabilities":178,"url":"https://junglewise.ai/threats/technologies/windows-server-2022"},{"name":"Microsoft Edge","slug":"edge-chromium-based","vulnerabilities":167,"url":"https://junglewise.ai/threats/technologies/edge-chromium-based"},{"name":"Microsoft Windows 11 25h2","slug":"windows-11-25h2","vulnerabilities":161,"url":"https://junglewise.ai/threats/technologies/windows-11-25h2"},{"name":"Microsoft Windows 11 Version 26H1","slug":"windows-11-version-26h1","vulnerabilities":135,"url":"https://junglewise.ai/threats/technologies/windows-11-version-26h1"},{"name":"Microsoft Windows Server 2025","slug":"windows-server-2025","vulnerabilities":124,"url":"https://junglewise.ai/threats/technologies/windows-server-2025"},{"name":"Microsoft Windows Server 2008","slug":"windows-server-2008","vulnerabilities":116,"url":"https://junglewise.ai/threats/technologies/windows-server-2008"}],"technology":{"hub":true,"name":"Microsoft Windows Server 2019","slug":"windows-server-2019","vendor":{"name":"Microsoft","slug":"microsoft","url":"https://junglewise.ai/threats/vendors/microsoft"},"aliases":[],"category":"operating-system","homepage":"https://www.microsoft.com/windows-server","description":"A server operating system developed by Microsoft that succeeded Windows Server 2016.","url":"https://junglewise.ai/threats/technologies/windows-server-2019"},"most_severe":[{"cve":"CVE-2020-1350","cvss":10,"slug":"cve-2020-1350-microsoft-windows-dns-server-remote-code-execution-vulnerability","title":"Microsoft Windows DNS Server Remote Code Execution Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2020-1350-microsoft-windows-dns-server-remote-code-execution-vulnerability"},{"cve":"CVE-2026-21513","cvss":8.8,"epss":0.3103,"slug":"cve-2026-21513-microsoft-mshtml-framework-protection-mechanism-failure","title":"Microsoft MSHTML Framework protection mechanism failure","severity":"critical","exploited":true,"published_at":"2026-02-10T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2026-21513-microsoft-mshtml-framework-protection-mechanism-failure"},{"cve":"CVE-2024-49039","cvss":8.8,"slug":"cve-2024-49039-microsoft-windows-task-scheduler-privilege-escalation","title":"Microsoft Windows Task Scheduler Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2024-11-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-49039-microsoft-windows-task-scheduler-privilege-escalation"},{"cve":"CVE-2024-43461","cvss":8.8,"slug":"cve-2024-43461-microsoft-windows-mshtml-platform-spoofing-vulnerability","title":"Microsoft Windows MSHTML Platform Spoofing Vulnerability","severity":"critical","exploited":true,"published_at":"2024-09-16T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-43461-microsoft-windows-mshtml-platform-spoofing-vulnerability"},{"cve":"CVE-2024-29988","cvss":8.8,"slug":"cve-2024-29988-microsoft-smartscreen-prompt-security-feature-bypass","title":"Microsoft SmartScreen Prompt Security Feature Bypass Vulnerability","severity":"critical","exploited":true,"published_at":"2024-04-30T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-29988-microsoft-smartscreen-prompt-security-feature-bypass"},{"cve":"CVE-2023-36025","cvss":8.8,"slug":"cve-2023-36025-microsoft-windows-smartscreen-security-feature-bypass","title":"Microsoft Windows SmartScreen Security Feature Bypass Vulnerability","severity":"critical","exploited":true,"published_at":"2023-11-14T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-36025-microsoft-windows-smartscreen-security-feature-bypass"},{"cve":"CVE-2023-32049","cvss":8.8,"slug":"cve-2023-32049-microsoft-windows-defender-smartscreen-security-feature-bypass","title":"Microsoft Windows Defender SmartScreen Security Feature Bypass Vulnerability","severity":"critical","exploited":true,"published_at":"2023-07-11T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-32049-microsoft-windows-defender-smartscreen-security-feature-bypass"},{"cve":"CVE-2023-21674","cvss":8.8,"slug":"cve-2023-21674-microsoft-windows-advanced-local-procedure-call-alpc-privilege","title":"Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2023-01-10T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-21674-microsoft-windows-advanced-local-procedure-call-alpc-privilege"},{"cve":"CVE-2022-41128","cvss":8.8,"slug":"cve-2022-41128-microsoft-windows-scripting-languages-remote-code-execution","title":"Microsoft Windows Scripting Languages Remote Code Execution Vulnerability","severity":"critical","exploited":true,"published_at":"2022-11-08T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-41128-microsoft-windows-scripting-languages-remote-code-execution"},{"cve":"CVE-2022-26923","cvss":8.8,"slug":"cve-2022-26923-microsoft-active-directory-domain-services-privilege-escalation","title":"Microsoft Active Directory Domain Services Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2022-08-18T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-26923-microsoft-active-directory-domain-services-privilege-escalation"}],"generated_at":"2026-09-26T09:24:00.138874+00:00"}