Vulnerabilities
Tracked app vulnerabilities
11,279 CVEs affect a tracked app or OS (High, all platforms). 229 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 11,279
- Actively exploited
- 229
- Publication window
- 2010-07-30 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-40781
HIGH 7.8
The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8. A local attacker may be ab… |
|
CVE-2024-40774
HIGH 7.1
A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Monterey 12.7.6, macOS Sonoma… |
|
CVE-2024-27826
HIGH 7.8
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.6, macOS Sonoma 14.5, macOS Ventura… |
|
CVE-2024-23261
HIGH 7.5
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.4, macOS Ventura 13.6.8. An attacker … |
|
CVE-2024-7014
HIGH 8.1
1 app
EvilVideo vulnerability allows sending malicious apps disguised as videos in Telegram for Android application affecting versions 10.14.4 and older. |
|
CVE-2024-6615
HIGH 8.8
1 app
Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2024-6609
HIGH 8.8
1 app
When almost out-of-memory an elliptic curve key which was never allocated could have been freed again. This vulnerability affects Firefox < 128 and Thunderbird… |
|
CVE-2024-6607
HIGH 8.8
1 app
It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a `<select>` element ove… |
|
CVE-2024-6604
HIGH 7.5
1 app
Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume t… |
|
CVE-2024-38112
HIGH 7.5
KEV
Windows MSHTML Platform Spoofing Vulnerability |
|
CVE-2024-38105
HIGH 6.5
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability |
|
CVE-2024-38104
HIGH 8.8
Windows Fax Service Remote Code Execution Vulnerability |
|
CVE-2024-38102
HIGH 6.5
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability |
|
CVE-2024-38101
HIGH 6.5
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability |
|
CVE-2024-38100
HIGH 7.8
Windows File Explorer Elevation of Privilege Vulnerability |
|
CVE-2024-38099
HIGH 5.9
Windows Remote Desktop Licensing Service Denial of Service Vulnerability |
|
CVE-2024-38091
HIGH 7.5
Microsoft WS-Discovery Denial of Service Vulnerability |
|
CVE-2024-38085
HIGH 7.8
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2024-38080
HIGH 7.8
KEV
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2024-38079
HIGH 7.8
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2024-38078
HIGH 7.5
Xbox Wireless Adapter Remote Code Execution Vulnerability |
|
CVE-2024-38073
HIGH 7.5
Windows Remote Desktop Licensing Service Denial of Service Vulnerability |
|
CVE-2024-38072
HIGH 7.5
Windows Remote Desktop Licensing Service Denial of Service Vulnerability |
|
CVE-2024-38071
HIGH 7.5
Windows Remote Desktop Licensing Service Denial of Service Vulnerability |
|
CVE-2024-38070
HIGH 7.8
Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability |
|
CVE-2024-38069
HIGH 7.0
Windows Enroll Engine Security Feature Bypass Vulnerability |
|
CVE-2024-38068
HIGH 7.5
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability |
|
CVE-2024-38067
HIGH 7.5
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability |
|
CVE-2024-38066
HIGH 7.8
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2024-38065
HIGH 6.8
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2024-38064
HIGH 7.5
Windows TCP/IP Information Disclosure Vulnerability |
|
CVE-2024-38062
HIGH 7.8
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38061
HIGH 7.5
DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability |
|
CVE-2024-38059
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2024-38058
HIGH 6.8
BitLocker Security Feature Bypass Vulnerability |
|
CVE-2024-38057
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38056
HIGH 5.5
Microsoft Windows Codecs Library Information Disclosure Vulnerability |
|
CVE-2024-38055
HIGH 5.5
Microsoft Windows Codecs Library Information Disclosure Vulnerability |
|
CVE-2024-38054
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38053
HIGH 8.8
Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability |
|
CVE-2024-38052
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2024-38051
HIGH 7.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2024-38050
HIGH 7.8
Windows Workstation Service Elevation of Privilege Vulnerability |
|
CVE-2024-38049
HIGH 6.6
Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability |
|
CVE-2024-38048
HIGH 6.5
Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability |
|
CVE-2024-38047
HIGH 7.8
PowerShell Elevation of Privilege Vulnerability |
|
CVE-2024-38044
HIGH 7.2
DHCP Server Service Remote Code Execution Vulnerability |
|
CVE-2024-38043
HIGH 7.8
PowerShell Elevation of Privilege Vulnerability |
|
CVE-2024-38041
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2024-38034
HIGH 7.8
Windows Filtering Platform Elevation of Privilege Vulnerability |