Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

9 CVEs affect a tracked app or OS (all severities, macOS). 21 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
9
Actively exploited
21
Publication window
2004-12-31 → 2026-05-04

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

9 entries macOS Public exploit Clear all
CVE
CVE-2026-23918
HIGH 8.8

Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server: 2.4.66. Users are recommend…

CVE-2025-6965
HIGH 7.7

There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead…

CVE-2025-32462
LOW 2.8

Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allows listed users to execute commands on …

CVE-2025-24085
CRITICAL 10.0 KEV

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.6, macOS Sequoia 15.3, macOS…

CVE-2023-48795
MEDIUM 5.9

Microsoft Security Update Guide entry — NVD enrichira.

CVE-2024-6387
CRITICAL 8.1

RedHat Openssh: CVE-2024-6387 Remote Code Execution Due To A Race Condition In Signal Handling

CVE-2021-44228
CRITICAL 10.0 KEV 1 app

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameter…

CVE-2019-10038
HIGH 7.8 1 app

Evernote 7.9 on macOS allows attackers to execute arbitrary programs by embedding a reference to a local executable file such as the /Applications/Calculator.a…

CVE-2004-2687
N/A 1 app

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands v…