Vulnerabilities
Tracked app vulnerabilities
16,427 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,427
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-27
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2020-11308
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11299
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11290
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11228
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11227
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11226
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11223
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11222
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11221
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11220
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11218
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11204
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11199
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11198
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11195
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11194
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11192
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11190
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11189
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11188
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11186
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11178
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11171
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11166
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2020-11165
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2017-14491
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-23978
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-23964
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 84 and Firefox ESR 78.6. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2021-23960
HIGH 8.8
1 app
Performing garbage collection on re-declared JavaScript variables resulted in a user-after-poison, and a potentially exploitable crash. This vulnerability affe… |
|
CVE-2021-23954
HIGH 8.8
1 app
Using the new logical assignment operators in a JavaScript switch statement could have caused a type confusion, leading to a memory corruption and a potentiall… |
|
CVE-2021-23953
MEDIUM 4.3
1 app
If a user clicked into a specifically crafted PDF, the PDF reader could be confused into leaking cross-origin information, when said information is served as c… |
|
CVE-2021-23973
MEDIUM 6.5
1 app
When trying to load a cross-origin resource in an audio/video context a decoding error may have resulted, and the content of that error may have revealed infor… |
|
CVE-2021-23969
MEDIUM 4.3
1 app
As specified in the W3C Content Security Policy draft, when creating a violation report, "User agents need to ensure that the source file is the URL requested … |
|
CVE-2021-23968
MEDIUM 4.3
1 app
If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to… |
|
CVE-2021-24114
MEDIUM 5.7
1 app
Microsoft Teams iOS Information Disclosure Vulnerability |
|
CVE-2021-24100
MEDIUM 5.0
1 app
Microsoft Edge for Android Information Disclosure Vulnerability |
|
CVE-2021-1732
HIGH 7.8
KEV
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2021-23336
MEDIUM 5.9
1 app
The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to W… |
|
CVE-2021-27205
MEDIUM 5.5
2 apps
Telegram before 7.4 (212543) Stable on macOS stores the local copy of self-destructed messages in a sandbox path, leading to sensitive information disclosure. |
|
CVE-2021-27204
MEDIUM 5.5
2 apps
Telegram before 7.4 (212543) Stable on macOS stores the local passcode in cleartext, leading to information disclosure. |
|
CVE-2021-3347
HIGH 7.8
Microsoft Security Update Guide entry — NVD enrichira. |
|
CVE-2021-25195
HIGH 7.8
Windows PKU2U Elevation of Privilege Vulnerability |
|
CVE-2021-24106
HIGH 5.5
Windows DirectX Information Disclosure Vulnerability |
|
CVE-2021-24103
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2021-24102
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2021-24098
HIGH 5.5
Windows Console Driver Denial of Service Vulnerability |
|
CVE-2021-24096
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2021-24094
CRITICAL 9.8
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2021-24093
CRITICAL 8.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2021-24091
CRITICAL 7.8
Windows Camera Codec Pack Remote Code Execution Vulnerability |