Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

7,750 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
7,750
Actively exploited
213
Publication window
2007-08-28 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

7,750 entries Windows Hide N/A Clear all
CVE
CVE-2025-21217
HIGH 6.5

Windows NTLM Spoofing Vulnerability

CVE-2025-21215
HIGH 4.6

Secure Boot Security Feature Bypass Vulnerability

CVE-2025-21214
HIGH 4.2

Windows BitLocker Information Disclosure Vulnerability

CVE-2025-21213
HIGH 4.6

Secure Boot Security Feature Bypass Vulnerability

CVE-2025-21211
HIGH 6.8

Secure Boot Security Feature Bypass Vulnerability

CVE-2025-21210
HIGH 4.2

Windows BitLocker Information Disclosure Vulnerability

CVE-2025-21207
HIGH 7.5

Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability

CVE-2025-21202
HIGH 6.1

Windows Recovery Environment Agent Elevation of Privilege Vulnerability

CVE-2025-21193
HIGH 6.5

Active Directory Federation Server Spoofing Vulnerability

CVE-2025-21189
HIGH 4.3

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2024-7344
HIGH 6.7

Cert CC: CVE-2024-7344 Howyar Taiwan Secure Boot Bypass

CVE-2025-0247
CRITICAL 9.8 1 app

Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2025-0243
MEDIUM 5.1 1 app

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption a…

CVE-2025-0242
MEDIUM 6.5 1 app

Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bug…

CVE-2025-0241
HIGH 7.7 1 app

When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 1…

CVE-2025-0240
MEDIUM 4.0 1 app

Parsing a JavaScript module as JSON could, under some circumstances, cause cross-compartment access, which may result in a use-after-free. This vulnerability w…

CVE-2025-0239
MEDIUM 4.0 1 app

When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirecting to an insecure site. This vulnerability was fixed in Fi…

CVE-2025-0238
MEDIUM 5.3 1 app

Assuming a controlled failed memory allocation, an attacker could have caused a use-after-free, leading to a potentially exploitable crash. This vulnerability …

CVE-2025-0237
MEDIUM 5.4 1 app

The WebChannel API, which is used to transport various information across processes, did not check the sending principal but rather accepted the principal bein…

CVE-2024-49138
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2024-49132
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49129
HIGH 7.5

Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

CVE-2024-49128
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49127
CRITICAL 8.1

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2024-49126
CRITICAL 8.1

Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability

CVE-2024-49125
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-49124
CRITICAL 8.1

Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability

CVE-2024-49123
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49122
CRITICAL 8.1

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2024-49121
HIGH 7.5

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

CVE-2024-49120
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49119
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49118
CRITICAL 8.1

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2024-49117
CRITICAL 8.8

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2024-49116
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49115
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49114
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2024-49113
HIGH 7.5

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

CVE-2024-49112
CRITICAL 9.8

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2024-49111
HIGH 6.6

Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

CVE-2024-49110
HIGH 6.8

Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

CVE-2024-49109
HIGH 6.6

Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

CVE-2024-49108
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49107
HIGH 7.3

WmsRepair Service Elevation of Privilege Vulnerability

CVE-2024-49106
CRITICAL 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2024-49105
CRITICAL 8.4

Remote Desktop Client Remote Code Execution Vulnerability

CVE-2024-49104
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-49103
HIGH 4.3

Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability

CVE-2024-49102
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2024-49101
HIGH 6.6

Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability