Vulnerabilities
Tracked app vulnerabilities
7,750 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 7,750
- Actively exploited
- 213
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-21217
HIGH 6.5
Windows NTLM Spoofing Vulnerability |
|
CVE-2025-21215
HIGH 4.6
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2025-21214
HIGH 4.2
Windows BitLocker Information Disclosure Vulnerability |
|
CVE-2025-21213
HIGH 4.6
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2025-21211
HIGH 6.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2025-21210
HIGH 4.2
Windows BitLocker Information Disclosure Vulnerability |
|
CVE-2025-21207
HIGH 7.5
Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability |
|
CVE-2025-21202
HIGH 6.1
Windows Recovery Environment Agent Elevation of Privilege Vulnerability |
|
CVE-2025-21193
HIGH 6.5
Active Directory Federation Server Spoofing Vulnerability |
|
CVE-2025-21189
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2024-7344
HIGH 6.7
Cert CC: CVE-2024-7344 Howyar Taiwan Secure Boot Bypass |
|
CVE-2025-0247
CRITICAL 9.8
1 app
Memory safety bugs present in Firefox 133 and Thunderbird 133. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-0243
MEDIUM 5.1
1 app
Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption a… |
|
CVE-2025-0242
MEDIUM 6.5
1 app
Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bug… |
|
CVE-2025-0241
HIGH 7.7
1 app
When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 1… |
|
CVE-2025-0240
MEDIUM 4.0
1 app
Parsing a JavaScript module as JSON could, under some circumstances, cause cross-compartment access, which may result in a use-after-free. This vulnerability w… |
|
CVE-2025-0239
MEDIUM 4.0
1 app
When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirecting to an insecure site. This vulnerability was fixed in Fi… |
|
CVE-2025-0238
MEDIUM 5.3
1 app
Assuming a controlled failed memory allocation, an attacker could have caused a use-after-free, leading to a potentially exploitable crash. This vulnerability … |
|
CVE-2025-0237
MEDIUM 5.4
1 app
The WebChannel API, which is used to transport various information across processes, did not check the sending principal but rather accepted the principal bein… |
|
CVE-2024-49138
HIGH 7.8
KEV
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2024-49132
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49129
HIGH 7.5
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability |
|
CVE-2024-49128
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49127
CRITICAL 8.1
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2024-49126
CRITICAL 8.1
Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability |
|
CVE-2024-49125
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-49124
CRITICAL 8.1
Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability |
|
CVE-2024-49123
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49122
CRITICAL 8.1
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2024-49121
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2024-49120
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49119
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49118
CRITICAL 8.1
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2024-49117
CRITICAL 8.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2024-49116
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49115
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49114
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2024-49113
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2024-49112
CRITICAL 9.8
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2024-49111
HIGH 6.6
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability |
|
CVE-2024-49110
HIGH 6.8
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability |
|
CVE-2024-49109
HIGH 6.6
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability |
|
CVE-2024-49108
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49107
HIGH 7.3
WmsRepair Service Elevation of Privilege Vulnerability |
|
CVE-2024-49106
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2024-49105
CRITICAL 8.4
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2024-49104
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-49103
HIGH 4.3
Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability |
|
CVE-2024-49102
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2024-49101
HIGH 6.6
Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability |