Vulnerabilities
Tracked app vulnerabilities
11,272 CVEs affect a tracked app or OS (High, all platforms). 229 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 11,272
- Actively exploited
- 229
- Publication window
- 2010-07-30 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-31271
HIGH 7.5
This issue was addressed through improved state management. This issue is fixed in macOS Tahoe 26. Incoming FaceTime calls can appear or be accepted on a locke… |
|
CVE-2025-24088
HIGH 7.5
The issue was addressed by adding additional logic. This issue is fixed in macOS Tahoe 26. An app may be able to override MDM-enforced settings from profiles. |
|
CVE-2025-9086
HIGH 7.5
1. A cookie is set using the `secure` keyword for `https://target` 2. curl is redirected to or otherwise made to speak with `http://target` (same hostnam… |
|
CVE-2025-59220
HIGH 7.0
Windows Bluetooth Service Elevation of Privilege Vulnerability |
|
CVE-2025-59216
HIGH 7.0
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-59215
HIGH 7.0
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-55234
HIGH 8.8
Windows SMB Elevation of Privilege Vulnerability |
|
CVE-2025-55225
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-55223
HIGH 7.0
DirectX Graphics Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-54919
HIGH 7.5
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2025-54917
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-54916
HIGH 7.8
Windows NTFS Remote Code Execution Vulnerability |
|
CVE-2025-54915
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-54913
HIGH 7.8
Windows UI XAML Maps MapControlSettings Elevation of Privilege Vulnerability |
|
CVE-2025-54912
HIGH 7.8
Windows BitLocker Elevation of Privilege Vulnerability |
|
CVE-2025-54911
HIGH 7.3
Windows BitLocker Elevation of Privilege Vulnerability |
|
CVE-2025-54895
HIGH 7.8
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Elevation of Privilege Vulnerability |
|
CVE-2025-54894
HIGH 7.8
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability |
|
CVE-2025-54116
HIGH 7.3
Windows MultiPoint Services Elevation of Privilege Vulnerability |
|
CVE-2025-54115
HIGH 7.0
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2025-54114
HIGH 7.0
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability |
|
CVE-2025-54113
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-54112
HIGH 7.0
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-54111
HIGH 7.8
Windows UI XAML Phone DatePickerFlyout Elevation of Privilege Vulnerability |
|
CVE-2025-54110
HIGH 8.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-54109
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-54108
HIGH 7.0
Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability |
|
CVE-2025-54107
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-54106
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-54105
HIGH 7.0
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-54104
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-54103
HIGH 7.4
Windows Management Service Elevation of Privilege Vulnerability |
|
CVE-2025-54102
HIGH 7.8
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability |
|
CVE-2025-54101
HIGH 4.8
Windows SMB Client Remote Code Execution Vulnerability |
|
CVE-2025-54099
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2025-54098
HIGH 7.8
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2025-54097
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-54096
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-54095
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-54094
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-54093
HIGH 7.0
Windows TCP/IP Driver Elevation of Privilege Vulnerability |
|
CVE-2025-54092
HIGH 7.8
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2025-54091
HIGH 7.8
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2025-53810
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-53809
HIGH 6.5
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability |
|
CVE-2025-53808
HIGH 6.7
Windows Defender Firewall Service Elevation of Privilege Vulnerability |
|
CVE-2025-53807
HIGH 7.0
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-53806
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-53805
HIGH 7.5
HTTP.sys Denial of Service Vulnerability |
|
CVE-2025-53804
HIGH 5.5
Windows Kernel-Mode Driver Information Disclosure Vulnerability |