Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

15,667 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
15,667
Actively exploited
286
Publication window
2007-08-28 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

15,667 entries Hide N/A Clear all
CVE
CVE-2021-0441
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2020-11307
CRITICAL

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2020-0417
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2020-0368
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2020-17759
HIGH 8.8 1 app

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution if the us…

CVE-2021-29967
HIGH 8.8 1 app

Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed evidence of memory corruption and we pres…

CVE-2021-29964
HIGH 7.1 1 app

A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to an out-of-bounds read. *This bug only …

CVE-2021-29957
MEDIUM 4.3 1 app

If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indi…

CVE-2021-29956
MEDIUM 4.3 1 app

OpenPGP secret keys that were imported using Thunderbird version 78.8.1 up to version 78.10.1 were stored unencrypted on the user's local disk. The master pass…

CVE-2021-29951
MEDIUM 6.5 1 app

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop th…

CVE-2021-29950
HIGH 7.5 1 app

Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task runs into a failure, the secret key may…

CVE-2021-29949
HIGH 7.8 1 app

When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to open it using a filename that isn't distri…

CVE-2021-29948
LOW 2.5 1 app

Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replac…

CVE-2021-29946
HIGH 8.8 1 app

Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypassed port blocking restrictions when used in the Alt-Svc hea…

CVE-2021-29945
MEDIUM 6.5 1 app

The WebAssembly JIT could miscalculate the size of a return type, which could lead to a null read and result in a crash. *Note: This issue only affected x86-32…

CVE-2021-24002
HIGH 8.8 1 app

When a user clicked on an FTP URL containing encoded newline characters (%0A and %0D), the newlines would have been interpreted as such and allowed arbitrary c…

CVE-2021-23999
HIGH 8.8 1 app

If a Blob URL was loaded through some unusual user interaction, it could have been loaded by the System Principal and granted additional privileges that should…

CVE-2021-23998
MEDIUM 6.5 1 app

Through complicated navigations with new windows, an HTTP page could have inherited a secure lock icon from an HTTPS page. This vulnerability affects Firefox E…

CVE-2021-23995
HIGH 8.8 1 app

When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been expl…

CVE-2021-23994
HIGH 8.8 1 app

A WebGL framebuffer was not initialized early enough, resulting in memory corruption and an out of bound write. This vulnerability affects Firefox ESR < 78.10,…

CVE-2021-23993
MEDIUM 6.5 1 app

An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a sub…

CVE-2021-23992
MEDIUM 4.3 1 app

Thunderbird did not check if the user ID associated with an OpenPGP key has a valid self signature. An attacker may create a crafted version of an OpenPGP key,…

CVE-2021-23991
MEDIUM 6.8 1 app

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet b…

CVE-2021-24035
CRITICAL 9.1 1 app

A lack of filename validation when unzipping archives prior to WhatsApp for Android v2.21.8.13 and WhatsApp Business for Android v2.21.8.13 could have allowed …

CVE-2021-1675
HIGH 7.8 KEV

Windows Print Spooler Remote Code Execution Vulnerability

CVE-2021-33742
CRITICAL 7.5 KEV

Windows MSHTML Platform Remote Code Execution Vulnerability

CVE-2021-33739
HIGH 8.4 KEV

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2021-31977
HIGH 8.6

Windows Hyper-V Denial of Service Vulnerability

CVE-2021-31976
HIGH 7.5

Server for NFS Information Disclosure Vulnerability

CVE-2021-31975
HIGH 7.5

Server for NFS Information Disclosure Vulnerability

CVE-2021-31974
HIGH 7.5

Server for NFS Denial of Service Vulnerability

CVE-2021-31973
HIGH 7.8

Windows GPSVC Elevation of Privilege Vulnerability

CVE-2021-31972
HIGH 5.5

Event Tracing for Windows Information Disclosure Vulnerability

CVE-2021-31971
HIGH 6.8

Windows HTML Platforms Security Feature Bypass Vulnerability

CVE-2021-31970
HIGH 5.5

Windows TCP/IP Driver Security Feature Bypass Vulnerability

CVE-2021-31969
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2021-31968
HIGH 7.5

Windows Remote Desktop Services Denial of Service Vulnerability

CVE-2021-31962
HIGH 9.4

Kerberos AppContainer Security Feature Bypass Vulnerability

CVE-2021-31960
HIGH 5.5

Windows Bind Filter Driver Information Disclosure Vulnerability

CVE-2021-31959
CRITICAL 6.4

Scripting Engine Memory Corruption Vulnerability

CVE-2021-31958
HIGH 7.5

Windows NTLM Elevation of Privilege Vulnerability

CVE-2021-31956
HIGH 7.8 KEV

Windows NTFS Elevation of Privilege Vulnerability

CVE-2021-31955
HIGH 5.5 KEV

Windows Kernel Information Disclosure Vulnerability

CVE-2021-31954
HIGH 7.8

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2021-31953
HIGH 7.8

Windows Filter Manager Elevation of Privilege Vulnerability

CVE-2021-31952
HIGH 7.8

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

CVE-2021-31951
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2021-31201
HIGH 5.2 KEV

Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability

CVE-2021-31199
HIGH 5.2 KEV

Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability

CVE-2021-26414
HIGH 4.8

Windows DCOM Server Security Feature Bypass