Patch tracker / Products / Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809

Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809: vulnerabilities and security updates

Every CVE affecting Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809 and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.

CVEs
32
Updates (KBs)
8
Actively exploited (KEV)
0
Critical Severity
3

CVEs affecting Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809

CVESeverityCVSSEPSSStatus
CVE-2025-21176High8.881%-
CVE-2025-55248Critical9.966%-
CVE-2024-43483High7.567%-
CVE-2024-43484High7.567%-
CVE-2026-50324Critical9.94.9%-
CVE-2026-50659Critical9.94.9%-
CVE-2026-69522High8.83.6%-
CVE-2026-47304High8.14.9%-
CVE-2026-62872High8.81.2%-
CVE-2026-50646High7.84.9%-
CVE-2026-50649High7.84.9%-
CVE-2026-50650High7.84.9%-
CVE-2026-47302High7.54.9%-
CVE-2026-50304High7.54.9%-
CVE-2026-50355High7.54.9%-
CVE-2026-50368High7.54.9%-
CVE-2026-50411High7.54.9%-
CVE-2026-50525High7.54.9%-
CVE-2026-50527High7.54.9%-
CVE-2026-50647High7.54.9%-
CVE-2026-50648High7.54.9%-
CVE-2026-50652High7.54.9%-
CVE-2026-50653High7.54.9%-
CVE-2026-62886High7.83.6%-
CVE-2026-23666High7.52.4%-
CVE-2026-32226High7.52.4%-
CVE-2026-33116High7.52.4%-
CVE-2026-70354High7.81.2%-
CVE-2026-65810High7.81.2%-
CVE-2026-32177High7.32.4%-
CVE-2026-35433High7.32.4%-
CVE-2026-62897High7.01.2%-

Updates (KBs) for Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809

UpdateReleasedSeverityCVSSEPSSCVEsStatus
KB50501822025-01-14High8.82.4%1-
KB51010082026-07-14High8.14.0%17-
KB51260482026-09-08High8.80.9%2-
KB51207032026-08-11High8.80.8%4-
KB50440892024-10-08High7.53.0%2-
KB50824142026-04-14High7.52.4%3-
KB50870662026-05-12High7.30.6%2-
KB50667382025-10-14Medium4.80.7%1-

Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.

Most searched on Senserva right now

New to a term on this page? CVE, KB, KEV, CVSS, and EPSS are each explained once, on the Senserva security lexicon. Reference: Microsoft CVE and vulnerability management and the Microsoft patching guide.
All information provided as is, without warranty; verify against the vendor advisory before acting. All information and usage is subject to the Senserva EULA. Data notice and terms.