Vulnerabilities
Tracked app vulnerabilities
15,658 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 15,658
- Actively exploited
- 286
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2021-0965
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0964
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0963
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0961
MEDIUM
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0958
MEDIUM
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0956
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0955
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0954
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0953
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0952
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0904
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0704
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0675
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11263
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-42291
HIGH 7.5
Active Directory Domain Services Elevation of Privilege Vulnerability |
|
CVE-2021-42288
MEDIUM 5.7
Windows Hello Security Feature Bypass Vulnerability |
|
CVE-2021-42287
HIGH 7.5
KEV
Active Directory Domain Services Elevation of Privilege Vulnerability |
|
CVE-2021-42286
HIGH 7.8
Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerability |
|
CVE-2021-42285
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2021-42284
MEDIUM 6.8
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2021-42283
HIGH 8.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-42282
HIGH 7.5
Active Directory Domain Services Elevation of Privilege Vulnerability |
|
CVE-2021-42280
MEDIUM 5.5
Windows Feedback Hub Elevation of Privilege Vulnerability |
|
CVE-2021-42279
MEDIUM 4.2
Chakra Scripting Engine Memory Corruption Vulnerability |
|
CVE-2021-42278
HIGH 7.5
KEV
Active Directory Domain Services Elevation of Privilege Vulnerability |
|
CVE-2021-42277
MEDIUM 5.5
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability |
|
CVE-2021-42276
HIGH 7.8
Microsoft Windows Media Foundation Remote Code Execution Vulnerability |
|
CVE-2021-42275
HIGH 8.8
Microsoft COM for Windows Remote Code Execution Vulnerability |
|
CVE-2021-42274
MEDIUM 6.8
Windows Hyper-V Discrete Device Assignment (DDA) Denial of Service Vulnerability |
|
CVE-2021-41379
MEDIUM 5.5
KEV
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2021-41378
HIGH 7.8
Windows NTFS Remote Code Execution Vulnerability |
|
CVE-2021-41377
HIGH 7.8
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability |
|
CVE-2021-41371
MEDIUM 4.4
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability |
|
CVE-2021-41370
HIGH 7.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-41367
HIGH 7.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2021-41366
HIGH 7.8
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability |
|
CVE-2021-41356
HIGH 7.5
Windows Denial of Service Vulnerability |
|
CVE-2021-38666
HIGH 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2021-38665
HIGH 7.4
Remote Desktop Protocol Client Information Disclosure Vulnerability |
|
CVE-2021-38631
MEDIUM 4.4
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability |
|
CVE-2021-36957
HIGH 7.8
Windows Desktop Bridge Elevation of Privilege Vulnerability |
|
CVE-2021-26443
CRITICAL 9.0
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability |
|
CVE-2021-38502
MEDIUM 5.9
1 app
Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted mes… |
|
CVE-2021-38501
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-38500
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-38498
HIGH 7.5
1 app
During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially exploitabl… |
|
CVE-2021-38497
MEDIUM 6.5
1 app
Through use of reportValidity() and window.open(), a plain-text validation message could have been overlaid on another origin, leading to possible user confusi… |
|
CVE-2021-38496
HIGH 8.8
1 app
During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploitable cras… |
|
CVE-2021-38495
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Thunderbird 78.13.0. Some of these bugs showed evidence of memory corruption and we presume that with… |
|
CVE-2021-38493
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 91 and Firefox ESR 78.13. Some of these bugs showed evidence of memory corruption and we pres… |