Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,412
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,412 entries
CVE
CVE-2023-21228
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21227
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21218
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21217
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21216
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21215
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21166
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21164
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21163
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-21162
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48461
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48459
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48458
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48457
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48456
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48455
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-48454
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-40507
CRITICAL

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-22076
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-42917
HIGH 8.8 KEV

A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2.…

CVE-2023-42916
MEDIUM 6.5 KEV

An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Pr…

CVE-2023-6212
HIGH 8.8 1 app

Memory safety bugs present in Firefox 119, Firefox ESR 115.4, and Thunderbird 115.4. Some of these bugs showed evidence of memory corruption and we presume tha…

CVE-2023-6209
MEDIUM 6.5 1 app

Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be used to override the specified host. T…

CVE-2023-6208
HIGH 8.8 1 app

When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a temporary storage not unlike the clipboa…

CVE-2023-6207
HIGH 8.8 1 app

Ownership mismanagement led to a use-after-free in ReadableByteStreams This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.

CVE-2023-6206
MEDIUM 5.4 1 app

The black fade animation when exiting fullscreen is roughly the length of the anti-clickjacking delay on permission prompts. It was possible to use this fact t…

CVE-2023-6205
MEDIUM 6.5 1 app

It was possible to cause the use of a MessagePort after it had already been freed, which could potentially have led to an exploitable crash. This vulnerability…

CVE-2023-6204
MEDIUM 6.5 1 app

On some systems—depending on the graphics settings and drivers—it was possible to force an out-of-bounds read and leak memory data into the images created on t…

CVE-2023-43588
LOW 3.5 1 app

Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.

CVE-2023-43582
MEDIUM 5.5 3 apps

Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.

CVE-2023-39206
LOW 3.7 3 apps

Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.

CVE-2023-39205
MEDIUM 4.3 3 apps

Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.

CVE-2023-39204
MEDIUM 4.3 3 apps

Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.

CVE-2023-39199
MEDIUM 4.9 3 apps

Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.

CVE-2023-36719
HIGH 7.8

Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability

CVE-2023-36705
HIGH 7.8

Windows Installer Elevation of Privilege Vulnerability

CVE-2023-36428
HIGH 5.5

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

CVE-2023-36427
HIGH 7.0

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-36425
HIGH 8.0

Windows Distributed File System (DFS) Remote Code Execution Vulnerability

CVE-2023-36424
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-36423
HIGH 8.8

Microsoft Remote Registry Service Remote Code Execution Vulnerability

CVE-2023-36408
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-36407
HIGH 7.8

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-36406
HIGH 5.5

Windows Hyper-V Information Disclosure Vulnerability

CVE-2023-36405
HIGH 7.0

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-36404
HIGH 5.5

Windows Kernel Information Disclosure Vulnerability

CVE-2023-36403
HIGH 7.0

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-36402
HIGH 8.8

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

CVE-2023-36401
HIGH 7.2

Microsoft Remote Registry Service Remote Code Execution Vulnerability

CVE-2023-36400
CRITICAL 8.8

Windows HMAC Key Derivation Elevation of Privilege Vulnerability