Vulnerabilities
Tracked app vulnerabilities
11,272 CVEs affect a tracked app or OS (High, all platforms). 229 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 11,272
- Actively exploited
- 229
- Publication window
- 2010-07-30 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-27728
HIGH 7.8
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
|
CVE-2025-27727
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-27492
HIGH 7.0
Windows Secure Channel Elevation of Privilege Vulnerability |
|
CVE-2025-27490
HIGH 7.8
Windows Bluetooth Service Elevation of Privilege Vulnerability |
|
CVE-2025-27487
HIGH 8.0
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2025-27486
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-27485
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-27484
HIGH 7.5
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability |
|
CVE-2025-27483
HIGH 7.8
NTFS Elevation of Privilege Vulnerability |
|
CVE-2025-27481
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-27479
HIGH 7.5
Kerberos Key Distribution Proxy Service Denial of Service Vulnerability |
|
CVE-2025-27478
HIGH 7.0
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability |
|
CVE-2025-27477
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-27476
HIGH 7.8
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-27475
HIGH 7.0
Windows Update Stack Elevation of Privilege Vulnerability |
|
CVE-2025-27474
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-27473
HIGH 7.5
HTTP.sys Denial of Service Vulnerability |
|
CVE-2025-27471
HIGH 5.9
Microsoft Streaming Service Denial of Service Vulnerability |
|
CVE-2025-27470
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-27469
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2025-26688
HIGH 7.8
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-26681
HIGH 6.7
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-26680
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-26679
HIGH 7.8
RPC Endpoint Mapper Service Elevation of Privilege Vulnerability |
|
CVE-2025-26678
HIGH 8.4
Windows Defender Application Control Security Feature Bypass Vulnerability |
|
CVE-2025-26676
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26675
HIGH 7.8
Windows Subsystem for Linux Elevation of Privilege Vulnerability |
|
CVE-2025-26674
HIGH 7.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-26673
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2025-26672
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26671
HIGH 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-26669
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26668
HIGH 7.5
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-26667
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26666
HIGH 7.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-26665
HIGH 7.0
Windows upnphost.dll Elevation of Privilege Vulnerability |
|
CVE-2025-26664
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26652
HIGH 7.5
Windows Standards-Based Storage Management Service Denial of Service Vulnerability |
|
CVE-2025-26651
HIGH 6.5
Windows Local Session Manager (LSM) Denial of Service Vulnerability |
|
CVE-2025-26649
HIGH 7.0
Windows Secure Channel Elevation of Privilege Vulnerability |
|
CVE-2025-26648
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-26647
HIGH 8.8
Windows Kerberos Elevation of Privilege Vulnerability |
|
CVE-2025-26644
HIGH 5.1
Windows Hello Spoofing Vulnerability |
|
CVE-2025-26641
HIGH 7.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2025-26640
HIGH 7.0
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-26639
HIGH 7.8
Windows USB Print Driver Elevation of Privilege Vulnerability |
|
CVE-2025-26637
HIGH 6.8
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2025-26635
HIGH 6.5
Windows Hello Security Feature Bypass Vulnerability |
|
CVE-2025-24074
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24073
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |