Remote Desktop Client Microsoft Remote Desktop Client

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Microsoft Remote Desktop Client.

Recent Microsoft Remote Desktop Client Security Advisories

Advisory Title Published
CVE-2026-68828 CVE-2026-68828 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-80077 CVE-2026-80077 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-69485 CVE-2026-69485 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-77896 CVE-2026-77896 Windows Remote Desktop Client Denial of Service Vulnerability September 8, 2026
CVE-2026-80074 CVE-2026-80074 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-69317 CVE-2026-69317 Windows Remote Desktop Client Information Disclosure Vulnerability September 8, 2026
CVE-2026-69358 CVE-2026-69358 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-83998 CVE-2026-83998 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-78463 CVE-2026-78463 Remote Desktop Client Remote Code Execution Vulnerability September 8, 2026
CVE-2026-61918 CVE-2026-61918 Windows Remote Desktop Client Information Disclosure Vulnerability August 11, 2026

By the Year

In 2026 there have been 0 vulnerabilities in Microsoft Remote Desktop Client. Last year, in 2025 Remote Desktop Client had 5 security vulnerabilities published. Right now, Remote Desktop Client is on track to have less security vulnerabilities in 2026 than it did last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 5 8.04
2024 4 8.38
2023 4 7.40
2022 5 7.00
2021 3 8.33
2020 0 0.00
2019 1 8.00

It may take a day or so for new Remote Desktop Client vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Microsoft Remote Desktop Client Security Vulnerabilities

Jul 2025: Remote Desktop Spoofing Vulnerability
CVE-2025-33054 8.1 - High - July 08, 2025

Insufficient UI warning of dangerous operations in Remote Desktop Client allows an unauthorized attacker to perform spoofing over a network.

Insufficient UI Warning of Dangerous Operations

Jul 2025: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2025-48817 8.8 - High - July 08, 2025

Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Relative Path Traversal

Jun 2025: Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2025-32715 6.5 - Medium - June 10, 2025

Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.

Out-of-bounds Read

Apr 2025: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2025-27487 8 - High - April 08, 2025

Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.

Heap-based Buffer Overflow

Mar 2025: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2025-26645 8.8 - High - March 11, 2025

Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Relative Path Traversal

Dec 2024: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2024-49105 8.4 - High - December 12, 2024

Remote Desktop Client Remote Code Execution Vulnerability

Authorization

Oct 2024: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2024-43599 8.8 - High - October 08, 2024

Remote Desktop Client Remote Code Execution Vulnerability

Dangling pointer

CB-VC RCE in Microsoft RDP
CVE-2024-38131 8.8 - High - August 13, 2024

Clipboard Virtual Channel Extension Remote Code Execution Vulnerability

Sensitive Data Storage in Improperly Locked Memory

MS Remote Desktop Client RCE Vulnerability
CVE-2024-21307 7.5 - High - January 09, 2024

Remote Desktop Client Remote Code Execution Vulnerability

Race Condition

Microsoft Remote Desktop Client RCE via Deserialization
CVE-2023-29362 8.8 - High - June 14, 2023

Remote Desktop Client Remote Code Execution Vulnerability

Microsoft Windows RDP Security Feature Bypass
CVE-2023-29352 6.5 - Medium - June 14, 2023

Windows Remote Desktop Security Feature Bypass Vulnerability

Remote Desktop Client RCE via crafted .rdp
CVE-2023-24905 7.8 - High - May 09, 2023

Remote Desktop Client Remote Code Execution Vulnerability

Microsoft RDP Client Info Disclosure CVE-2023-28267
CVE-2023-28267 6.5 - Medium - April 11, 2023

Remote Desktop Protocol Client Information Disclosure Vulnerability

WinGfx EoP Vulnerability
CVE-2022-41121 7.8 - High - December 13, 2022

Windows Graphics Component Elevation of Privilege Vulnerability

Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
CVE-2022-22015 6.5 - Medium - May 10, 2022

Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability

Remote Desktop Client Remote Code Execution Vulnerability
CVE-2022-22017 8.8 - High - May 10, 2022

Remote Desktop Client Remote Code Execution Vulnerability

Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2022-26940 6.5 - Medium - May 10, 2022

Remote Desktop Protocol Client Information Disclosure Vulnerability

Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2022-24503 5.4 - Medium - March 09, 2022

Remote Desktop Protocol Client Information Disclosure Vulnerability

Nov 2021: Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2021-38665 7.4 - High - November 10, 2021

Remote Desktop Protocol Client Information Disclosure Vulnerability

Aug 2021: Remote Desktop Client Remote Code Execution Vulnerability
CVE-2021-34535 8.8 - High - August 12, 2021

Remote Desktop Client Remote Code Execution Vulnerability

Jan 2021: Windows Remote Desktop Security Feature Bypass Vulnerability
CVE-2021-1669 8.8 - High - January 12, 2021

Windows Remote Desktop Security Feature Bypass Vulnerability

A remote code execution vulnerability exists in Remote Desktop Services - formerly known as Terminal Services - when an authenticated attacker abuses clipboard redirection
CVE-2019-0887 8 - High - July 15, 2019

A remote code execution vulnerability exists in Remote Desktop Services - formerly known as Terminal Services - when an authenticated attacker abuses clipboard redirection, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.

Directory traversal

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Microsoft Remote Desktop Client or by Microsoft? Click the Watch button to subscribe.

Microsoft
Vendor

subscribe