Vulnerabilities
Tracked app vulnerabilities
6,086 entries
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-21477
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21465
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21464
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21454
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21450
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21449
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21446
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21433
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21432
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21427
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20708
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20704
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20703
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20696
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-1706
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-1246
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0467
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-021701
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0089
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0076
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-7881
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-49714
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-47899
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-47898
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2023-24023
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-39810
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-38618
HIGH 7.8
Local
In the Linux kernel, the following vulnerability has been resolved: vsock: Do not allow binding to VMADDR_PORT_ANY It is possible for a vsock to autobind to … |
|
CVE-2025-38616
HIGH 7.8
Local
In the Linux kernel, the following vulnerability has been resolved: tls: handle data disappearing from under the TLS ULP TLS expects that it owns the receive… |
|
CVE-2025-53766
CRITICAL 9.8
Network 1 apps
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network. |
|
CVE-2025-53732
HIGH 7.8
Local 1 apps
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49755
MEDIUM 4.3
Network 1 apps
User interface (ui) misrepresentation of critical information in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. |
|
CVE-2025-49736
MEDIUM 4.3
Network 1 apps
The ui performs the wrong action in Microsoft Edge for Android allows an unauthorized attacker to perform spoofing over a network. |
|
CVE-2025-38500
HIGH 7.8
Local
In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md xfrm interface collect_md p… |
|
CVE-2025-48533
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-48530
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-27038
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22441
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21479
CRITICAL
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0932
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-38352
HIGH 7.8
KEV
Local
In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() If… |
|
CVE-2025-38349
HIGH 7.8
Local
In the Linux kernel, the following vulnerability has been resolved: eventpoll: don't decrement ep refcount while still holding the ep mutex Jann Horn points … |
|
CVE-2025-49462
LOW 3.5
Network 4 apps
Cross-site scripting in certain Zoom Clients before version 6.4.5 may allow an authenticated user to conduct a disclosure of information via network access. |
|
CVE-2025-49702
CRITICAL 7.8
Local 1 apps
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49697
CRITICAL 8.4
Local 1 apps
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49696
CRITICAL 8.4
Local 1 apps
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49695
CRITICAL 8.4
Local 1 apps
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-38236
HIGH 7.8
Local
In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs. Jann Horn reported a use-after-free i… |
|
CVE-2025-47953
CRITICAL 8.4
Local 1 apps
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-47167
CRITICAL 8.4
Local 1 apps
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-47164
CRITICAL 8.4
Local 1 apps
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |