Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,427 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,427
Actively exploited
286
Publication window
2002-10-04 → 2026-08-27

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,427 entries
CVE
CVE-2021-1670
HIGH 5.5

Windows Projected File System FS Filter Driver Information Disclosure Vulnerability

CVE-2021-1669
HIGH 8.8

Windows Remote Desktop Security Feature Bypass Vulnerability

CVE-2021-1668
CRITICAL 7.8

Microsoft DTV-DVD Video Decoder Remote Code Execution Vulnerability

CVE-2021-1667
CRITICAL 8.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2021-1666
CRITICAL 8.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2021-1665
CRITICAL 7.8

GDI+ Remote Code Execution Vulnerability

CVE-2021-1664
HIGH 8.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2021-1663
HIGH 5.5

Windows Projected File System FS Filter Driver Information Disclosure Vulnerability

CVE-2021-1662
HIGH 7.8

Windows Event Tracing Elevation of Privilege Vulnerability

CVE-2021-1661
HIGH 7.8

Windows Installer Elevation of Privilege Vulnerability

CVE-2021-1660
CRITICAL 8.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2021-1659
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2021-1658
CRITICAL 8.8

Remote Procedure Call Runtime Remote Code Execution Vulnerability

CVE-2021-1657
HIGH 7.8

Windows Fax Compose Form Remote Code Execution Vulnerability

CVE-2021-1656
HIGH 5.5

TPM Device Driver Information Disclosure Vulnerability

CVE-2021-1655
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2021-1654
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2021-1653
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2021-1652
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2021-1651
HIGH 7.8

Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability

CVE-2021-1650
HIGH 7.8

Windows Runtime C++ Template Library Elevation of Privilege Vulnerability

CVE-2021-1649
HIGH 7.8

Active Template Library Elevation of Privilege Vulnerability

CVE-2021-1648
HIGH 7.8

Microsoft splwow64 Elevation of Privilege Vulnerability

CVE-2021-1646
HIGH 6.6

Windows WLAN Service Elevation of Privilege Vulnerability

CVE-2021-1645
HIGH 5.0

Windows Docker Information Disclosure Vulnerability

CVE-2021-1642
HIGH 7.8

Windows AppX Deployment Extensions Elevation of Privilege Vulnerability

CVE-2021-1638
HIGH 7.7

Windows Bluetooth Security Feature Bypass Vulnerability

CVE-2021-1637
HIGH 5.5

Windows DNS Query Information Disclosure Vulnerability

CVE-2021-23253
MEDIUM 5.3 1 app

Opera Mini for Android below 53.1 displays URL left-aligned in the address field. This allows a malicious attacker to craft a URL with a long domain name, e.g.…

CVE-2020-35113
HIGH 8.8 1 app

Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evidence of memory corruption and we presu…

CVE-2020-35112
HIGH 8.8 1 app

If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads d…

CVE-2020-35111
MEDIUM 4.3 1 app

When an extension with the proxy permission registered to receive <all_urls>, the proxy.onRequest callback was not triggered for view-source URLs. While web co…

CVE-2020-26978
MEDIUM 6.1 1 app

Using techniques that built on the slipstream research, a malicious webpage could have exposed both an internal network's hosts as well as services running on …

CVE-2020-26974
HIGH 8.8 1 app

When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object could have been incorrectly cast to the wrong type. This resulted in a heap user-af…

CVE-2020-26973
HIGH 8.8 1 app

Certain input to the CSS Sanitizer confused it, resulting in incorrect components being removed. This could have been used as a sanitizer bypass. This vulnerab…

CVE-2020-26971
HIGH 8.8 1 app

Certain blit values provided by the user were not properly constrained leading to a heap buffer overflow on some video drivers. This vulnerability affects Fire…

CVE-2021-0322
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0321
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0320
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0319
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0318
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0317
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0316
CRITICAL

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0315
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0313
CRITICAL

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0312
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0311
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0310
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0309
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0308
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.