Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

15,691 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
15,691
Actively exploited
286
Publication window
2007-08-28 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

15,691 entries Hide N/A Clear all
CVE
CVE-2023-6859
HIGH 8.8 1 app

A use-after-free condition affected TLS socket creation when under memory pressure. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Fi…

CVE-2023-6858
HIGH 8.8 1 app

Firefox was susceptible to a heap buffer overflow in `nsTextFragment` due to insufficient OOM handling. This vulnerability affects Firefox ESR < 115.6, Thunder…

CVE-2023-6857
MEDIUM 5.3 1 app

When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary. *This bug only affects Firefox on Uni…

CVE-2023-6856
HIGH 8.8 1 app

The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an att…

CVE-2023-50762
MEDIUM 4.3 1 app

When processing a PGP/MIME payload that contains digitally signed text, the first paragraph of the text was never shown to the user. This is because the text w…

CVE-2023-50761
MEDIUM 4.3 1 app

The signature of a digitally signed S/MIME email message may optionally specify the signature creation date and time. If present, Thunderbird did not compare t…

CVE-2023-51384
MEDIUM 5.5

In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constraints are specified during addition of …

CVE-2023-49646
MEDIUM 6.4 4 apps

Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access.

CVE-2023-43586
HIGH 7.3 1 app

Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct an escalat…

CVE-2023-43585
HIGH 7.1 1 app

Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of infor…

CVE-2023-43583
MEDIUM 4.9 2 apps

Cryptographic issues Zoom Mobile App for Android, Zoom Mobile App for iOS, and Zoom SDKs for Android and iOS before version 5.16.0 may allow a privileged user …

CVE-2023-36696
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2023-36391
HIGH 7.8

Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

CVE-2023-36012
HIGH 5.3

DHCP Server Service Information Disclosure Vulnerability

CVE-2023-36011
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2023-36006
HIGH 8.8

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2023-36005
HIGH 7.5

Windows Telephony Server Elevation of Privilege Vulnerability

CVE-2023-36004
HIGH 7.5

Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability

CVE-2023-36003
HIGH 6.7

XAML Diagnostics Elevation of Privilege Vulnerability

CVE-2023-35644
HIGH 7.8

Windows Sysmain Service Elevation of Privilege Vulnerability

CVE-2023-35643
HIGH 7.5

DHCP Server Service Information Disclosure Vulnerability

CVE-2023-35642
HIGH 6.5

Internet Connection Sharing (ICS) Denial of Service Vulnerability

CVE-2023-35641
CRITICAL 8.8

Internet Connection Sharing (ICS) Remote Code Execution Vulnerability

CVE-2023-35639
HIGH 8.8

Microsoft ODBC Driver Remote Code Execution Vulnerability

CVE-2023-35638
HIGH 7.5

DHCP Server Service Denial of Service Vulnerability

CVE-2023-35635
HIGH 5.5

Windows Kernel Denial of Service Vulnerability

CVE-2023-35634
HIGH 8.0

Windows Bluetooth Driver Remote Code Execution Vulnerability

CVE-2023-35632
HIGH 7.8

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2023-35631
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2023-35630
CRITICAL 8.8

Internet Connection Sharing (ICS) Remote Code Execution Vulnerability

CVE-2023-35628
CRITICAL 8.1

Windows MSHTML Platform Remote Code Execution Vulnerability

CVE-2023-35622
HIGH 7.5

Windows DNS Spoofing Vulnerability

CVE-2023-21740
HIGH 7.8

Windows Media Remote Code Execution Vulnerability

CVE-2023-20588
HIGH

AMD: CVE-2023-20588 AMD Speculative Leaks Security Notice

CVE-2023-6507
MEDIUM 6.1 1 app

An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and does not affect other stable releases. …

CVE-2023-45866
MEDIUM 6.3

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45781
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45779
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45777
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45776
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45775
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45774
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-45773
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-4272
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40103
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40098
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40097
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40096
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40095
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-40094
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.