Vulnerabilities
Tracked app vulnerabilities
7,734 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 7,734
- Actively exploited
- 213
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2020-1187
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1186
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1185
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1184
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1179
MEDIUM 6.5
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exp… |
|
CVE-2020-1176
HIGH 7.8
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited … |
|
CVE-2020-1175
HIGH 7.8
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited … |
|
CVE-2020-1174
HIGH 7.8
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited … |
|
CVE-2020-1166
HIGH 7.8
An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service. An attacker who successfully exploited this vulnerab… |
|
CVE-2020-1165
HIGH 7.8
An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service. An attacker who successfully exploited this vulnerab… |
|
CVE-2020-1164
HIGH 7.0
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1158
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1157
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1156
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1155
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1154
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory. An attacker who succ… |
|
CVE-2020-1153
HIGH 7.8
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory. An attacker who successfully exploited the… |
|
CVE-2020-1151
HIGH 7.0
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1149
HIGH 7.0
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1145
MEDIUM 5.5
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to … |
|
CVE-2020-1144
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1143
HIGH 7.0
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who succe… |
|
CVE-2020-1142
HIGH 7.8
An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory. An attacker who successfu… |
|
CVE-2020-1141
MEDIUM 5.5
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to … |
|
CVE-2020-1140
HIGH 7.8
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who successfully exploited this vulnerability cou… |
|
CVE-2020-1139
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1138
HIGH 7.0
An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations. An attacker who successfully exploited this vulnera… |
|
CVE-2020-1137
HIGH 7.8
An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory. An attacker who successfully exploit… |
|
CVE-2020-1136
HIGH 7.8
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attacker who successfully exploited the vulnera… |
|
CVE-2020-1135
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory. An attacker who successfully exploited… |
|
CVE-2020-1134
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1132
HIGH 7.0
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles file and folder links. An attacker who successfully expl… |
|
CVE-2020-1131
MEDIUM 5.5
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1126
HIGH 8.8
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attacker who successfully exploited the vulnera… |
|
CVE-2020-1125
HIGH 7.0
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1124
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exp… |
|
CVE-2020-1123
MEDIUM 5.5
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully… |
|
CVE-2020-1121
HIGH 7.0
An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service. An attacker who successfully exploited this vulnerab… |
|
CVE-2020-1118
HIGH 8.6
A denial of service vulnerability exists in the Windows implementation of Transport Layer Security (TLS) when it improperly handles certain key exchanges. An a… |
|
CVE-2020-1117
HIGH 8.8
A remote code execution vulnerability exists in the way that the Color Management Module (ICM32.dll) handles objects in memory. An attacker who successfully ex… |
|
CVE-2020-1116
MEDIUM 5.5
An information disclosure vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory. An attacke… |
|
CVE-2020-1114
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this … |
|
CVE-2020-1113
MEDIUM 5.3
A security feature bypass vulnerability exists in Microsoft Windows when the Task Scheduler service fails to properly verify client connections over RPC. An at… |
|
CVE-2020-1112
HIGH 8.5
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content. … |
|
CVE-2020-1111
HIGH 7.8
An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service. An attacker who successfully exploited this vulnerab… |
|
CVE-2020-1110
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory. An attacker who successfully exploited… |
|
CVE-2020-1109
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory. An attacker who successfully exploited… |
|
CVE-2020-1090
HIGH 7.8
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulne… |
|
CVE-2020-1088
HIGH 7.8
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. The vulnerability could allow elevation of… |
|
CVE-2020-1087
HIGH 7.8
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker who successfully exploited the vulnera… |