Vulnerabilities
Tracked app vulnerabilities
15,667 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 15,667
- Actively exploited
- 286
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2021-26443
CRITICAL 9.0
Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability |
|
CVE-2021-38502
MEDIUM 5.9
1 app
Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted mes… |
|
CVE-2021-38501
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-38500
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-38498
HIGH 7.5
1 app
During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially exploitabl… |
|
CVE-2021-38497
MEDIUM 6.5
1 app
Through use of reportValidity() and window.open(), a plain-text validation message could have been overlaid on another origin, leading to possible user confusi… |
|
CVE-2021-38496
HIGH 8.8
1 app
During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploitable cras… |
|
CVE-2021-38495
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Thunderbird 78.13.0. Some of these bugs showed evidence of memory corruption and we presume that with… |
|
CVE-2021-38493
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 91 and Firefox ESR 78.13. Some of these bugs showed evidence of memory corruption and we pres… |
|
CVE-2021-38492
MEDIUM 6.5
1 app
When delegating navigations to the operating system, Firefox would accept the `mk` scheme which might allow attackers to launch pages and execute scripts in In… |
|
CVE-2021-29991
HIGH 8.1
1 app
Firefox incorrectly accepted a newline in a HTTP/3 header, interpretting it as two separate headers. This allowed for a header splitting attack against servers… |
|
CVE-2021-30284
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-30255
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-30254
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1982
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1981
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1979
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1975
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1973
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1924
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1921
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-1048
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0933
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0932
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0931
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0930
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0929
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0928
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0927
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0926
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0925
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0924
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0923
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0922
MEDIUM
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0921
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0920
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0919
MEDIUM
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0918
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0889
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0799
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0672
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0653
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0650
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0649
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0434
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-13871
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-41361
HIGH 5.4
Active Directory Federation Server Spoofing Vulnerability |
|
CVE-2021-41357
HIGH 7.8
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2021-41347
HIGH 7.8
Windows AppX Deployment Service Elevation of Privilege Vulnerability |
|
CVE-2021-41346
HIGH 5.3
Console Window Host Security Feature Bypass Vulnerability |