Vulnerabilities
Tracked app vulnerabilities
7,750 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 7,750
- Actively exploited
- 213
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2020-0639
HIGH 5.5
Windows Common Log File System Driver Information Disclosure Vulnerability |
|
CVE-2020-0637
HIGH 5.7
Remote Desktop Web Access Information Disclosure Vulnerability |
|
CVE-2020-0636
HIGH 7.8
Windows Subsystem for Linux Elevation of Privilege Vulnerability |
|
CVE-2020-0635
HIGH 7.8
Windows Elevation of Privilege Vulnerability |
|
CVE-2020-0634
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2020-0633
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0632
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0631
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0630
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0629
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0628
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0627
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0626
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0625
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0624
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2020-0623
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0622
HIGH 5.5
Microsoft Graphics Component Information Disclosure Vulnerability |
|
CVE-2020-0621
HIGH 4.4
Windows Security Feature Bypass Vulnerability |
|
CVE-2020-0620
HIGH 7.8
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2020-0617
HIGH 5.3
Hyper-V Denial of Service Vulnerability |
|
CVE-2020-0616
HIGH 5.5
Microsoft Windows Denial of Service Vulnerability |
|
CVE-2020-0615
HIGH 5.5
Windows Common Log File System Driver Information Disclosure Vulnerability |
|
CVE-2020-0614
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0613
HIGH 7.8
Windows Search Indexer Elevation of Privilege Vulnerability |
|
CVE-2020-0612
HIGH 7.5
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability |
|
CVE-2020-0611
CRITICAL 7.5
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2020-0610
CRITICAL 9.8
Windows Remote Desktop Gateway (RD Gateway) Remote Code Execution Vulnerability |
|
CVE-2020-0609
CRITICAL 9.8
Windows Remote Desktop Gateway (RD Gateway) Remote Code Execution Vulnerability |
|
CVE-2020-0608
HIGH 5.5
Win32k Information Disclosure Vulnerability |
|
CVE-2020-0607
HIGH 5.5
Microsoft Graphics Component Information Disclosure Vulnerability |
|
CVE-2020-0601
HIGH 8.1
KEV
Windows CryptoAPI Spoofing Vulnerability |
|
CVE-2019-17012
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2019-17011
HIGH 7.5
1 app
Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a po… |
|
CVE-2019-17010
HIGH 7.5
1 app
Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-f… |
|
CVE-2019-17009
HIGH 7.8
1 app
When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unprivileged process to locate and exploit a … |
|
CVE-2019-17008
HIGH 8.8
1 app
When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects… |
|
CVE-2019-17005
HIGH 8.8
1 app
The plain text serializer used a fixed-size array for the number of <ol> elements it could process; however it was possible to overflow the static-sized array … |
|
CVE-2019-11764
HIGH 8.8
1 app
Mozilla developers and community members reported memory safety bugs present in Firefox 69 and Firefox ESR 68.1. Some of these bugs showed evidence of memory c… |
|
CVE-2019-11763
MEDIUM 6.1
1 app
Failure to correctly handle null bytes when processing HTML entities resulted in Firefox incorrectly parsing these entities. This could have led to HTML commen… |
|
CVE-2019-11762
MEDIUM 6.1
1 app
If two same-origin documents set document.domain differently to become cross-origin, it was possible for them to call arbitrary DOM methods/getters/setters on … |
|
CVE-2019-11761
MEDIUM 5.4
1 app
By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from exposing this o… |
|
CVE-2019-11760
HIGH 8.8
1 app
A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a potentially exploitable crash in some instances. This vuln… |
|
CVE-2019-11759
HIGH 8.8
1 app
An attacker could have caused 4 bytes of HMAC output to be written past the end of a buffer stored on the stack. This could be used by an attacker to execute a… |
|
CVE-2019-11758
HIGH 8.8
1 app
Mozilla community member Philipp reported a memory safety bug present in Firefox 68 when 360 Total Security was installed. This bug showed evidence of memory c… |
|
CVE-2019-11757
HIGH 8.8
1 app
When following the value's prototype chain, it was possible to retain a reference to a locale, delete it, and subsequently reference it. This resulted in a use… |
|
CVE-2019-11745
HIGH 8.8
1 app
When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could occur. Th… |
|
CVE-2019-1387
CRITICAL 8.8
1 app
An issue was found in Git before v2.24.1, v2.23.1, v2.22.2, v2.21.1, v2.20.2, v2.19.3, v2.18.2, v2.17.3, v2.16.6, v2.15.4, and v2.14.6. Recursive clones are cu… |
|
CVE-2019-8801
HIGH 7.8
1 app
A dynamic library loading issue existed in iTunes setup. This was addressed with improved path searching. This issue is fixed in macOS Catalina 10.15.1, iTunes… |
|
CVE-2019-8745
HIGH 8.8
1 app
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15, tvOS 13, iTunes for Windows 12.10.1, iCloud for Win… |
|
CVE-2019-8735
HIGH 8.8
1 app
Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in tvOS 13, iTunes for Windows 12.10.1, iCloud for Windows … |