Vulnerabilities
Tracked app vulnerabilities
11,272 CVEs affect a tracked app or OS (High, all platforms). 229 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 11,272
- Actively exploited
- 229
- Publication window
- 2010-07-30 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-48799
HIGH 7.8
Windows Update Service Elevation of Privilege Vulnerability |
|
CVE-2025-48003
HIGH 6.8
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2025-48002
HIGH 5.7
Windows Hyper-V Information Disclosure Vulnerability |
|
CVE-2025-48001
HIGH 6.8
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2025-48000
HIGH 7.8
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability |
|
CVE-2025-47999
HIGH 6.8
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2025-47998
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-47996
HIGH 7.8
Windows MBT Transport Driver Elevation of Privilege Vulnerability |
|
CVE-2025-47993
HIGH 7.8
Microsoft PC Manager Elevation of Privilege Vulnerability |
|
CVE-2025-47991
HIGH 7.8
Windows Input Method Editor (IME) Elevation of Privilege Vulnerability |
|
CVE-2025-47987
HIGH 7.8
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability |
|
CVE-2025-47986
HIGH 8.8
Universal Print Management Service Elevation of Privilege Vulnerability |
|
CVE-2025-47985
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2025-47984
HIGH 7.5
Windows GDI Information Disclosure Vulnerability |
|
CVE-2025-47982
HIGH 7.8
Windows Storage VSP Driver Elevation of Privilege Vulnerability |
|
CVE-2025-47978
HIGH 6.5
Windows Kerberos Denial of Service Vulnerability |
|
CVE-2025-47976
HIGH 7.8
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability |
|
CVE-2025-47975
HIGH 7.0
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability |
|
CVE-2025-47973
HIGH 7.8
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-47972
HIGH 8.0
Windows Input Method Editor (IME) Elevation of Privilege Vulnerability |
|
CVE-2025-47971
HIGH 7.8
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-47159
HIGH 7.8
Windows Virtualization-Based Security (VBS) Elevation of Privilege Vulnerability |
|
CVE-2025-33054
HIGH 8.1
Remote Desktop Spoofing Vulnerability |
|
CVE-2025-26636
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2025-6436
HIGH 8.1
1 app
Memory safety bugs present in Firefox 139 and Thunderbird 139. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-6435
HIGH 8.1
1 app
If a user saved a response from the Network tab in Devtools using the Save As context menu option, that file may not have been saved with the `.download` file … |
|
CVE-2025-6218
HIGH 7.8
KEV
1 app
RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected install… |
|
CVE-2025-47969
HIGH 4.4
Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability |
|
CVE-2025-47955
HIGH 7.8
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
|
CVE-2025-47160
HIGH 5.4
Windows Shortcut Files Security Feature Bypass Vulnerability |
|
CVE-2025-33075
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-33073
HIGH 8.8
KEV
Windows SMB Client Elevation of Privilege Vulnerability |
|
CVE-2025-33069
HIGH 5.1
Windows App Control for Business Security Feature Bypass Vulnerability |
|
CVE-2025-33068
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-33067
HIGH 8.4
Windows Task Scheduler Elevation of Privilege Vulnerability |
|
CVE-2025-33066
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-33065
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33064
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-33063
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33062
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33061
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33060
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33059
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33058
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33057
HIGH 6.5
Windows Local Security Authority (LSA) Denial of Service Vulnerability |
|
CVE-2025-33056
HIGH 7.5
Windows Local Security Authority (LSA) Denial of Service Vulnerability |
|
CVE-2025-33055
HIGH 5.5
Windows Storage Management Provider Information Disclosure Vulnerability |
|
CVE-2025-33053
HIGH 8.8
KEV
Internet Shortcut Files Remote Code Execution Vulnerability |
|
CVE-2025-33052
HIGH 5.5
Windows DWM Core Library Information Disclosure Vulnerability |
|
CVE-2025-33050
HIGH 7.5
DHCP Server Service Denial of Service Vulnerability |