Vulnerabilities
Tracked app vulnerabilities
7,770 CVEs affect a tracked app or OS (all severities, Windows). 214 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 7,770
- Actively exploited
- 214
- Publication window
- 2007-08-28 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2022-24483
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2022-24482
HIGH 7.0
Windows ALPC Elevation of Privilege Vulnerability |
|
CVE-2022-24481
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2022-24479
HIGH 7.8
Connected User Experiences and Telemetry Elevation of Privilege Vulnerability |
|
CVE-2022-24474
HIGH 7.8
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2022-23268
HIGH 6.5
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2022-23257
CRITICAL 8.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2022-22009
HIGH 7.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2022-22008
CRITICAL 7.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2022-21983
HIGH 7.5
Win32 Stream Enumeration Remote Code Execution Vulnerability |
|
CVE-2018-25032
HIGH 7.5
1 app
zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input has many distant matches. |
|
CVE-2022-26488
HIGH 7.0
1 app
In Python before 3.10.3 on Windows, local users can gain privileges because the search path is inadequately secured. The installer may allow a local attacker t… |
|
CVE-2021-3733
MEDIUM 6.5
1 app
There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP client (such as web browser) connects … |
|
CVE-2022-24525
HIGH 7.0
Windows Update Stack Elevation of Privilege Vulnerability |
|
CVE-2022-24508
HIGH 8.8
Win32 File Enumeration Remote Code Execution Vulnerability |
|
CVE-2022-24507
HIGH 7.8
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2022-24505
HIGH 7.0
Windows ALPC Elevation of Privilege Vulnerability |
|
CVE-2022-24503
HIGH 5.4
Remote Desktop Protocol Client Information Disclosure Vulnerability |
|
CVE-2022-24502
HIGH 4.3
Windows HTML Platforms Security Feature Bypass Vulnerability |
|
CVE-2022-24460
HIGH 7.0
Tablet Windows User Interface Application Elevation of Privilege Vulnerability |
|
CVE-2022-24459
HIGH 7.8
Windows Fax and Scan Service Elevation of Privilege Vulnerability |
|
CVE-2022-24455
HIGH 7.8
Windows CD-ROM Driver Elevation of Privilege Vulnerability |
|
CVE-2022-24454
HIGH 7.8
Windows Security Support Provider Interface Elevation of Privilege Vulnerability |
|
CVE-2022-23299
HIGH 7.8
Windows PDEV Elevation of Privilege Vulnerability |
|
CVE-2022-23298
HIGH 7.0
Windows NT OS Kernel Elevation of Privilege Vulnerability |
|
CVE-2022-23297
HIGH 5.5
Windows NT Lan Manager Datagram Receiver Driver Information Disclosure Vulnerability |
|
CVE-2022-23296
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2022-23294
HIGH 8.8
Windows Event Tracing Remote Code Execution Vulnerability |
|
CVE-2022-23293
HIGH 7.8
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability |
|
CVE-2022-23291
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2022-23290
HIGH 7.8
Windows Inking COM Elevation of Privilege Vulnerability |
|
CVE-2022-23288
HIGH 7.0
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2022-23287
HIGH 7.0
Windows ALPC Elevation of Privilege Vulnerability |
|
CVE-2022-23286
HIGH 7.0
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2022-23285
HIGH 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2022-23284
HIGH 7.2
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2022-23283
HIGH 7.0
Windows ALPC Elevation of Privilege Vulnerability |
|
CVE-2022-23281
HIGH 5.5
Windows Common Log File System Driver Information Disclosure Vulnerability |
|
CVE-2022-23253
HIGH 6.5
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability |
|
CVE-2022-22010
HIGH 4.4
Media Foundation Information Disclosure Vulnerability |
|
CVE-2022-21990
HIGH 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2022-21977
HIGH 3.3
Media Foundation Information Disclosure Vulnerability |
|
CVE-2022-21975
HIGH 4.7
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2022-21967
HIGH 7.0
Xbox Live Auth Manager for Windows Elevation of Privilege Vulnerability |
|
CVE-2021-3737
HIGH 7.5
1 app
A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to… |
|
CVE-2022-24975
HIGH 7.5
1 app
The --mirror documentation for Git through 2.35.1 does not mention the availability of deleted content, aka the "GitBleed" issue. This could present a security… |
|
CVE-2022-0391
HIGH 7.5
1 app
A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The is… |
|
CVE-2022-22718
HIGH 7.8
KEV
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2022-22717
HIGH 7.0
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2022-22715
HIGH 7.8
Named Pipe File System Elevation of Privilege Vulnerability |