Vulnerabilities
Tracked app vulnerabilities
15,691 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 15,691
- Actively exploited
- 286
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2023-32871
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-33899
HIGH 7.1
1 app
RARLAB WinRAR before 7.00, on Linux and UNIX platforms, allows attackers to spoof the screen output, or cause a denial of service, via ANSI escape sequences. |
|
CVE-2022-48611
HIGH 7.8
1 app
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.4 for Windows. A local attacker may be able to elevate their privileges. |
|
CVE-2024-26926
HIGH 7.8
In the Linux kernel, the following vulnerability has been resolved: binder: check offset alignment in binder_get_object() Commit 6d98eb95b450 ("binder: avoid… |
|
CVE-2024-26923
HIGH 7.8
In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix garbage collector racing against connect() Garbage collector does not take i… |
|
CVE-2024-27791
HIGH 7.1
The issue was addressed with improved checks. This issue is fixed in iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3, macOS Monterey 12.7.3, macOS Sonom… |
|
CVE-2024-23271
MEDIUM 6.5
A logic issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3, watchOS 10.3. A m… |
|
CVE-2024-23228
LOW 3.3
This issue was addressed through improved state management. This issue is fixed in iOS 17.3 and iPadOS 17.3. Locked Notes content may have been unexpectedly un… |
|
CVE-2024-3864
HIGH 8.1
1 app
Memory safety bug present in Firefox 124, Firefox ESR 115.9, and Thunderbird 115.9. This bug showed evidence of memory corruption and we presume that with enou… |
|
CVE-2024-3863
CRITICAL 9.8
1 app
The executable file warning was not presented when downloading .xrm-ms files. *Note: This issue only affected Windows operating systems. Other operating syst… |
|
CVE-2024-3861
MEDIUM 4.0
1 app
If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability… |
|
CVE-2024-3859
MEDIUM 5.9
1 app
On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulner… |
|
CVE-2024-3857
HIGH 7.8
1 app
The JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This vulnerability affec… |
|
CVE-2024-3854
HIGH 8.8
1 app
In some code patterns the JIT incorrectly optimized switch statements and generated code with out-of-bounds-reads. This vulnerability affects Firefox < 125, Fi… |
|
CVE-2024-3852
HIGH 7.5
1 app
GetBoundName could return the wrong version of an object when JIT optimizations were applied. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, a… |
|
CVE-2024-3302
LOW 3.7
1 app
There was no limit to the number of HTTP/2 CONTINUATION frames that would be processed. A server could abuse this to create an Out of Memory condition in the b… |
|
CVE-2024-27247
MEDIUM 5.5
1 app
Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a privileged user to conduct an escalation of… |
|
CVE-2024-24694
MEDIUM 5.9
1 app
Improper privilege management in the installer for Zoom Desktop Client for Windows before version 5.17.10 may allow an authenticated user to conduct an escalat… |
|
CVE-2024-29988
HIGH 8.8
KEV
SmartScreen Prompt Security Feature Bypass Vulnerability |
|
CVE-2024-29066
HIGH 7.2
Windows Distributed File System (DFS) Remote Code Execution Vulnerability |
|
CVE-2024-29064
HIGH 6.2
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2024-29062
HIGH 7.1
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-29061
HIGH 7.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-29056
HIGH 4.3
Windows Authentication Elevation of Privilege Vulnerability |
|
CVE-2024-29052
HIGH 7.8
Windows Storage Elevation of Privilege Vulnerability |
|
CVE-2024-29050
HIGH 8.4
Windows Cryptographic Services Remote Code Execution Vulnerability |
|
CVE-2024-28925
HIGH 8.0
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28924
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28923
HIGH
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28922
HIGH 4.1
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28921
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28920
HIGH 7.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28919
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28907
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28905
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28904
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2024-28903
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28902
HIGH 5.5
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28901
HIGH 5.5
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28900
HIGH 5.5
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-28898
HIGH 6.3
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28897
HIGH 6.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-28896
HIGH 7.5
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-27316
HIGH 7.5
Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames |
|
CVE-2024-26256
HIGH 7.8
Libarchive Remote Code Execution Vulnerability |
|
CVE-2024-26255
HIGH 5.5
Windows Remote Access Connection Manager Information Disclosure Vulnerability |
|
CVE-2024-26254
HIGH 7.5
Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability |
|
CVE-2024-26253
HIGH 6.8
Windows rndismp6.sys Remote Code Execution Vulnerability |
|
CVE-2024-26252
HIGH 6.8
Windows rndismp6.sys Remote Code Execution Vulnerability |
|
CVE-2024-26250
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |