Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

7,765 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
7,765
Actively exploited
213
Publication window
2007-08-28 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

7,765 entries Windows Hide N/A Clear all
CVE
CVE-2025-54103
HIGH 7.4

Windows Management Service Elevation of Privilege Vulnerability

CVE-2025-54102
HIGH 7.8

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

CVE-2025-54101
HIGH 4.8

Windows SMB Client Remote Code Execution Vulnerability

CVE-2025-54099
HIGH 7.0

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2025-54098
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-54097
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-54096
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-54095
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-54094
HIGH 6.7

Windows Defender Firewall Service Elevation of Privilege Vulnerability

CVE-2025-54093
HIGH 7.0

Windows TCP/IP Driver Elevation of Privilege Vulnerability

CVE-2025-54092
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-54091
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-53810
HIGH 6.7

Windows Defender Firewall Service Elevation of Privilege Vulnerability

CVE-2025-53809
HIGH 6.5

Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability

CVE-2025-53808
HIGH 6.7

Windows Defender Firewall Service Elevation of Privilege Vulnerability

CVE-2025-53807
HIGH 7.0

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-53806
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-53805
HIGH 7.5

HTTP.sys Denial of Service Vulnerability

CVE-2025-53804
HIGH 5.5

Windows Kernel-Mode Driver Information Disclosure Vulnerability

CVE-2025-53803
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-53802
HIGH 7.0

Windows Bluetooth Service Elevation of Privilege Vulnerability

CVE-2025-53801
HIGH 7.8

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-53800
CRITICAL 7.8

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-53798
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-53797
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-53796
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-49734
HIGH 7.0

PowerShell Direct Elevation of Privilege Vulnerability

CVE-2023-24023
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-9187
CRITICAL 9.8 1 app

Memory safety bugs present in Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2025-9185
HIGH 8.1 1 app

Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunder…

CVE-2025-9184
HIGH 8.1 1 app

Memory safety bugs present in Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruptio…

CVE-2025-9182
HIGH 7.5 1 app

Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderbird 142, a…

CVE-2025-9181
MEDIUM 6.5 1 app

Uninitialized memory in the JavaScript Engine component. This vulnerability was fixed in Firefox 142, Firefox ESR 128.14, Firefox ESR 140.2, Thunderbird 142, T…

CVE-2025-9180
HIGH 8.1 1 app

Same-origin policy bypass in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 142, Firefox ESR 115.27, Firefox ESR 128.14, Firefox ESR…

CVE-2025-9179
CRITICAL 9.8 1 app

An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed, but represents sl…

CVE-2025-53766
CRITICAL 9.8 1 app

Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.

CVE-2025-55231
HIGH 7.5

Windows Storage-based Management Service Remote Code Execution Vulnerability

CVE-2025-55230
HIGH 7.8

Windows MBT Transport Driver Elevation of Privilege Vulnerability

CVE-2025-55229
HIGH 5.3

Windows Certificate Spoofing Vulnerability

CVE-2025-53789
HIGH 7.8

Windows StateRepository API Server file Elevation of Privilege Vulnerability

CVE-2025-53779
MEDIUM 7.2

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2025-53778
CRITICAL 8.8

Windows NTLM Elevation of Privilege Vulnerability

CVE-2025-53726
HIGH 7.8

Windows Push Notifications Apps Elevation of Privilege Vulnerability

CVE-2025-53725
HIGH 7.8

Windows Push Notifications Apps Elevation of Privilege Vulnerability

CVE-2025-53724
HIGH 7.8

Windows Push Notifications Apps Elevation of Privilege Vulnerability

CVE-2025-53723
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-53722
HIGH 7.5

Windows Remote Desktop Services Denial of Service Vulnerability

CVE-2025-53721
HIGH 7.0

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

CVE-2025-53720
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-53719
HIGH 5.7

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability