Vulnerabilities
Tracked app vulnerabilities
15,668 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 15,668
- Actively exploited
- 286
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-38028
HIGH 7.2
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability |
|
CVE-2024-38027
HIGH 6.5
Windows Line Printer Daemon Service Denial of Service Vulnerability |
|
CVE-2024-38025
HIGH 7.2
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability |
|
CVE-2024-38022
HIGH 7.0
Windows Image Acquisition Elevation of Privilege Vulnerability |
|
CVE-2024-38019
HIGH 7.2
Microsoft Windows Performance Data Helper Library Remote Code Execution Vulnerability |
|
CVE-2024-38017
HIGH 5.5
Microsoft Message Queuing Information Disclosure Vulnerability |
|
CVE-2024-38015
HIGH 7.5
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability |
|
CVE-2024-38013
HIGH 6.7
Microsoft Windows Server Backup Elevation of Privilege Vulnerability |
|
CVE-2024-38011
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-38010
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37989
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37988
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37987
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37986
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37985
HIGH 5.9
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2024-37984
HIGH 8.4
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37981
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37978
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37977
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37975
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37974
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37973
HIGH 8.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37972
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37971
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37970
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-37969
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-3596
HIGH 7.5
CERT/CC: CVE-2024-3596 RADIUS Protocol Spoofing Vulnerability |
|
CVE-2024-35270
HIGH 5.3
Windows iSCSI Service Denial of Service Vulnerability |
|
CVE-2024-30098
HIGH 7.5
Windows Cryptographic Services Security Feature Bypass Vulnerability |
|
CVE-2024-30081
HIGH 7.1
Windows NTLM Spoofing Vulnerability |
|
CVE-2024-30079
HIGH 7.8
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
|
CVE-2024-30071
HIGH 4.7
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-30013
HIGH 8.8
Windows MultiPoint Services Remote Code Execution Vulnerability |
|
CVE-2024-28899
HIGH 8.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-26184
HIGH 6.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-21417
HIGH 8.8
Windows Text Services Framework Elevation of Privilege Vulnerability |
|
CVE-2020-8597
CRITICAL 9.8
Microsoft Security Update Guide entry — NVD enrichira. |
|
CVE-2024-39891
MEDIUM 5.3
KEV
1 app
In the Twilio Authy API, accessed by Authy Android before 25.1.0 and Authy iOS before 26.1.0, an unauthenticated endpoint provided access to certain phone-numb… |
|
CVE-2024-39573
HIGH 7.5
Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handle… |
|
CVE-2024-38477
HIGH 7.5
null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recomm… |
|
CVE-2024-38476
CRITICAL 9.8
Vulnerability in core of Apache HTTP Server 2.4.59 and earlier are vulnerably to information disclosure, SSRF or local script execution via backend application… |
|
CVE-2024-4610
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34726
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34725
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34724
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34723
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34721
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34720
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-31339
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-31335
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |