Vulnerabilities
Tracked app vulnerabilities
7,770 CVEs affect a tracked app or OS (all severities, Windows). 214 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 7,770
- Actively exploited
- 214
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-21377
MEDIUM 5.5
Windows DNS Information Disclosure Vulnerability |
|
CVE-2024-21375
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21372
HIGH 8.8
Windows OLE Remote Code Execution Vulnerability |
|
CVE-2024-21371
HIGH 7.0
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-21370
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21369
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21368
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21367
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21366
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21365
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21363
HIGH 7.8
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2024-21362
MEDIUM 5.5
Windows Kernel Security Feature Bypass Vulnerability |
|
CVE-2024-21361
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21360
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21359
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21358
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21357
HIGH 8.1
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability |
|
CVE-2024-21356
MEDIUM 6.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2024-21355
HIGH 7.0
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability |
|
CVE-2024-21354
HIGH 7.8
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability |
|
CVE-2024-21352
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21351
HIGH 7.6
KEV
Windows SmartScreen Security Feature Bypass Vulnerability |
|
CVE-2024-21350
HIGH 8.8
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |
|
CVE-2024-21349
HIGH 8.8
Microsoft ActiveX Data Objects Remote Code Execution Vulnerability |
|
CVE-2024-21348
HIGH 7.5
Internet Connection Sharing (ICS) Denial of Service Vulnerability |
|
CVE-2024-21347
HIGH 7.5
Microsoft ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-21346
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2024-21344
MEDIUM 5.9
Windows Network Address Translation (NAT) Denial of Service Vulnerability |
|
CVE-2024-21343
MEDIUM 5.9
Windows Network Address Translation (NAT) Denial of Service Vulnerability |
|
CVE-2024-21341
MEDIUM 6.8
Windows Kernel Remote Code Execution Vulnerability |
|
CVE-2024-21340
MEDIUM 4.6
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2024-21339
MEDIUM 6.4
Windows USB Generic Parent Driver Remote Code Execution Vulnerability |
|
CVE-2024-21338
HIGH 7.8
KEV
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-21304
MEDIUM 4.1
Trusted Compute Base Elevation of Privilege Vulnerability |
|
CVE-2024-20684
MEDIUM 6.5
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2024-21353
HIGH 8.8
Microsoft WDAC ODBC Driver Remote Code Execution Vulnerability |
|
CVE-2024-21345
HIGH 8.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2024-21342
HIGH 7.5
Windows DNS Client Denial of Service Vulnerability |
|
CVE-2023-50387
HIGH
MITRE: CVE-2023-50387 DNSSEC verification complexity can be exploited to exhaust CPU resources and stall DNS resolvers |
|
CVE-2024-23743
LOW 3.3
2 apps
Notion through 3.1.0 on macOS might allow code execution because of RunAsNode and enableNodeClilnspectArguments. NOTE: the vendor states "the attacker must lau… |
|
CVE-2023-40547
HIGH 8.3
A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allow… |
|
CVE-2024-0755
HIGH 8.8
1 app
Memory safety bugs present in Firefox 121, Firefox ESR 115.6, and Thunderbird 115.6. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-0753
MEDIUM 6.5
1 app
In specific HSTS configurations an attacker could have bypassed HSTS on a subdomain. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunder… |
|
CVE-2024-0751
HIGH 8.8
1 app
A malicious devtools extension could have been used to escalate privileges. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 11… |
|
CVE-2024-0750
HIGH 8.8
1 app
A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affect… |
|
CVE-2024-0749
MEDIUM 4.3
1 app
A phishing site could have repurposed an `about:` dialog to show phishing content with an incorrect origin in the address bar. This vulnerability affects Firef… |
|
CVE-2024-0747
MEDIUM 6.5
1 app
When a parent page loaded a child in an iframe with `unsafe-inline`, the parent Content Security Policy could have overridden the child Content Security Policy… |
|
CVE-2024-0746
MEDIUM 6.5
1 app
A Linux user opening the print preview dialog could have caused the browser to crash. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunde… |
|
CVE-2024-0742
MEDIUM 4.3
1 app
It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to an incorrect timestamp used to prevent … |
|
CVE-2024-0741
MEDIUM 6.5
1 app
An out of bounds write in ANGLE could have allowed an attacker to corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox… |