CVE-2024-30040

8.8HIGH

Windows MSHTML Platform Security Feature Bypass Vulnerability

Published: 5/14/2024Updated: 10/28/2025

CISA Known Exploited Vulnerability

Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for a security feature bypass.

Required Action:

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Due Date:

2024-06-04

Description

Windows MSHTML Platform Security Feature Bypass Vulnerability

AI AnalysisPowered by AI

Affected Products

microsoftwindows_10_1507
microsoftwindows_10_1607
microsoftwindows_10_1607
microsoftwindows_10_1809
microsoftwindows_10_1809
microsoftwindows_10_1809
microsoftwindows_10_21h2
microsoftwindows_10_22h2
microsoftwindows_11_21h2
microsoftwindows_11_22h2
microsoftwindows_11_23h2
microsoftwindows_server_2016
microsoftwindows_server_2019
microsoftwindows_server_2022
microsoftwindows_server_2022_23h2

References