Defender For Endpoint Microsoft Defender For Endpoint

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Microsoft Defender For Endpoint.

Recent Microsoft Defender For Endpoint Security Advisories

Advisory Title Published
CVE-2025-47161 CVE-2025-47161 Microsoft Defender for Endpoint Elevation of Privilege Vulnerability May 15, 2025
CVE-2024-49057 CVE-2024-49057 Microsoft Defender for Endpoint on Android Spoofing Vulnerability December 10, 2024
CVE-2024-43614 CVE-2024-43614 Microsoft Defender for Endpoint for Linux Spoofing Vulnerability October 8, 2024
CVE-2024-21315 Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability February 13, 2024
CVE-2023-21809 Microsoft Defender for Endpoint Security Feature Bypass Vulnerability February 14, 2023
CVE-2022-35828 Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability September 13, 2022
CVE-2022-33637 Microsoft Defender for Endpoint Tampering Vulnerability July 12, 2022
CVE-2022-23278 Microsoft Defender for Endpoint Spoofing Vulnerability March 8, 2022

By the Year

In 2025 there have been 2 vulnerabilities in Microsoft Defender For Endpoint with an average score of 7.3 out of ten. Last year, in 2024 Defender For Endpoint had 3 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Defender For Endpoint in 2025 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2025 is greater by 0.55.

Year Vulnerabilities Average Score
2025 2 7.25
2024 3 6.70
2023 0 0.00
2022 2 7.15
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Defender For Endpoint vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Microsoft Defender For Endpoint Security Vulnerabilities

Microsoft Defender for Endpoint Elevation of Privilege Vulnerability

CVE-2025-47161 7.8 - High - May 15, 2025

Microsoft Defender for Endpoint Elevation of Privilege Vulnerability

Authorization

External control of file name or path in Microsoft Defender for Endpoint

CVE-2025-26684 6.7 - Medium - May 13, 2025

External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

Externally Controlled Reference to a Resource in Another Sphere

Windows Defender: Improper Authorization in Global Files Search Index

CVE-2024-49071 6.5 - Medium - December 12, 2024

Improper authorization of an index that contains sensitive information from a Global Files search in Windows Defender allows an authorized attacker to disclose information over a network.

Improper Authorization of Index Containing Sensitive Information

Microsoft Defender for Endpoint on Android Spoofing Vulnerability

CVE-2024-49057 8.1 - High - December 12, 2024

Microsoft Defender for Endpoint on Android Spoofing Vulnerability

Improper Input Validation

Microsoft Defender for Endpoint for Linux Spoofing Vulnerability

CVE-2024-43614 5.5 - Medium - October 08, 2024

Microsoft Defender for Endpoint for Linux Spoofing Vulnerability

Relative Path Traversal

Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability

CVE-2022-35828 7.8 - High - September 13, 2022

Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability

Microsoft Defender for Endpoint Tampering Vulnerability

CVE-2022-33637 6.5 - Medium - July 12, 2022

Microsoft Defender for Endpoint Tampering Vulnerability

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Microsoft Defender For Endpoint or by Microsoft? Click the Watch button to subscribe.

Microsoft
Vendor

subscribe