Known vulnerabilities in Windows Subsystem for Linux (WSL2)
Vendor:
Microsoft
Software:
Windows Subsystem for Linux (WSL2)
Software CPE:
cpe:2.3:a:microsoft:windows_subsystem_for_linux_wsl2:*:*:*:*:*:*:*:*
Website:
https://www.microsoft.com
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU137770 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2026-57973 |
CWE-367 | Low | 2.7.10.0 | 15.07.2026 |
SB2026071574 |
||
| #VU137769 - Out-of-bounds read CVE-2026-57968 |
CWE-125 | Low | 2.7.8.0 | 15.07.2026 |
SB2026071573 |
||
| #VU114033 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2025-53788 |
CWE-367 | Low | - | 13.08.2025 |
SB2025081385 |
||
| #VU70186 - Permissions, Privileges, and Access Controls CVE-2022-44689 |
CWE-264 | Low | - | 13.12.2022 |
SB2022121363 |
||
| #VU69132 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2022-38014 |
CWE-362 | Low | - | 08.11.2022 |
SB2022110890 |