Vulnerabilities
Tracked app vulnerabilities
8,456 CVEs affect a tracked app or OS (all severities, Windows). 213 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 8,456
- Actively exploited
- 213
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2019-0602
HIGH 4.7
Windows GDI Information Disclosure Vulnerability |
|
CVE-2019-0601
HIGH 4.7
HID Information Disclosure Vulnerability |
|
CVE-2019-0600
HIGH 4.7
HID Information Disclosure Vulnerability |
|
CVE-2019-0599
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0598
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0597
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0596
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0595
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2018-18505
CRITICAL 10.0
1 app
An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server pa… |
|
CVE-2018-18501
CRITICAL 9.8
1 app
Mozilla developers and community members reported memory safety bugs present in Firefox 64 and Firefox ESR 60.4. Some of these bugs showed evidence of memory c… |
|
CVE-2018-18500
CRITICAL 9.8
1 app
A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements. This results in the stream parser object being fre… |
|
CVE-2018-20252
HIGH 7.8
1 app
In WinRAR versions prior to and including 5.60, there is an out-of-bounds write vulnerability during parsing of crafted ACE and RAR archive formats. Successful… |
|
CVE-2018-20251
MEDIUM 5.5
1 app
In WinRAR versions prior to and including 5.61, there is path traversal vulnerability when crafting the filename field of the ACE format. The UNACE module (UNA… |
|
CVE-2018-20250
HIGH 7.8
KEV
1 app
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field of the ACE format (in UNACEV2.dll). When… |
|
CVE-2019-7317
MEDIUM 5.3
1 app
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute. |
|
CVE-2019-0584
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0583
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0582
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0581
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0580
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0579
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0578
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0577
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0576
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0575
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0574
HIGH 7.8
Windows Data Sharing Service Elevation of Privilege Vulnerability |
|
CVE-2019-0573
HIGH 7.8
Windows Data Sharing Service Elevation of Privilege Vulnerability |
|
CVE-2019-0572
HIGH 7.8
Windows Data Sharing Service Elevation of Privilege Vulnerability |
|
CVE-2019-0571
HIGH 7.8
Windows Data Sharing Service Elevation of Privilege Vulnerability |
|
CVE-2019-0570
HIGH 7.8
Windows Runtime Elevation of Privilege Vulnerability |
|
CVE-2019-0569
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2019-0555
HIGH 7.0
Microsoft XmlDocument Elevation of Privilege Vulnerability |
|
CVE-2019-0554
HIGH 4.7
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2019-0553
HIGH 4.7
Windows Subsystem for Linux Information Disclosure Vulnerability |
|
CVE-2019-0552
HIGH 7.0
Windows COM Elevation of Privilege Vulnerability |
|
CVE-2019-0551
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2019-0550
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2019-0549
HIGH 4.7
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2019-0547
CRITICAL 9.8
Windows DHCP Client Remote Code Execution Vulnerability |
|
CVE-2019-0543
HIGH 7.8
KEV
Microsoft Windows Elevation of Privilege Vulnerability |
|
CVE-2019-0538
HIGH 7.8
Jet Database Engine Remote Code Execution Vulnerability |
|
CVE-2019-0536
HIGH 4.7
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2018-20406
HIGH 7.5
1 app
Modules/_pickle.c in Python before 3.7.1 has an integer overflow via a large LONG_BINPUT value that is mishandled during a "resize to twice the size" attempt. … |
|
CVE-2018-8649
HIGH 5.0
Windows Denial of Service Vulnerability |
|
CVE-2018-8641
HIGH 7.0
Win32k Elevation of Privilege Vulnerability |
|
CVE-2018-8639
HIGH 7.0
KEV
Win32k Elevation of Privilege Vulnerability |
|
CVE-2018-8638
HIGH 4.7
DirectX Information Disclosure Vulnerability |
|
CVE-2018-8637
HIGH 4.7
Win32k Information Disclosure Vulnerability |
|
CVE-2018-8634
CRITICAL 4.2
Microsoft Text-To-Speech Remote Code Execution Vulnerability |
|
CVE-2018-8626
CRITICAL 9.8
Windows DNS Server Heap Overflow Vulnerability |