Vulnerabilities
Tracked app vulnerabilities
16,427 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,427
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-27
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2021-1670
HIGH 5.5
Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
|
CVE-2021-1669
HIGH 8.8
Windows Remote Desktop Security Feature Bypass Vulnerability |
|
CVE-2021-1668
CRITICAL 7.8
Microsoft DTV-DVD Video Decoder Remote Code Execution Vulnerability |
|
CVE-2021-1667
CRITICAL 8.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2021-1666
CRITICAL 8.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2021-1665
CRITICAL 7.8
GDI+ Remote Code Execution Vulnerability |
|
CVE-2021-1664
HIGH 8.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2021-1663
HIGH 5.5
Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
|
CVE-2021-1662
HIGH 7.8
Windows Event Tracing Elevation of Privilege Vulnerability |
|
CVE-2021-1661
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2021-1660
CRITICAL 8.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2021-1659
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2021-1658
CRITICAL 8.8
Remote Procedure Call Runtime Remote Code Execution Vulnerability |
|
CVE-2021-1657
HIGH 7.8
Windows Fax Compose Form Remote Code Execution Vulnerability |
|
CVE-2021-1656
HIGH 5.5
TPM Device Driver Information Disclosure Vulnerability |
|
CVE-2021-1655
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2021-1654
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2021-1653
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2021-1652
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2021-1651
HIGH 7.8
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability |
|
CVE-2021-1650
HIGH 7.8
Windows Runtime C++ Template Library Elevation of Privilege Vulnerability |
|
CVE-2021-1649
HIGH 7.8
Active Template Library Elevation of Privilege Vulnerability |
|
CVE-2021-1648
HIGH 7.8
Microsoft splwow64 Elevation of Privilege Vulnerability |
|
CVE-2021-1646
HIGH 6.6
Windows WLAN Service Elevation of Privilege Vulnerability |
|
CVE-2021-1645
HIGH 5.0
Windows Docker Information Disclosure Vulnerability |
|
CVE-2021-1642
HIGH 7.8
Windows AppX Deployment Extensions Elevation of Privilege Vulnerability |
|
CVE-2021-1638
HIGH 7.7
Windows Bluetooth Security Feature Bypass Vulnerability |
|
CVE-2021-1637
HIGH 5.5
Windows DNS Query Information Disclosure Vulnerability |
|
CVE-2021-23253
MEDIUM 5.3
1 app
Opera Mini for Android below 53.1 displays URL left-aligned in the address field. This allows a malicious attacker to craft a URL with a long domain name, e.g.… |
|
CVE-2020-35113
HIGH 8.8
1 app
Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evidence of memory corruption and we presu… |
|
CVE-2020-35112
HIGH 8.8
1 app
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads d… |
|
CVE-2020-35111
MEDIUM 4.3
1 app
When an extension with the proxy permission registered to receive <all_urls>, the proxy.onRequest callback was not triggered for view-source URLs. While web co… |
|
CVE-2020-26978
MEDIUM 6.1
1 app
Using techniques that built on the slipstream research, a malicious webpage could have exposed both an internal network's hosts as well as services running on … |
|
CVE-2020-26974
HIGH 8.8
1 app
When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object could have been incorrectly cast to the wrong type. This resulted in a heap user-af… |
|
CVE-2020-26973
HIGH 8.8
1 app
Certain input to the CSS Sanitizer confused it, resulting in incorrect components being removed. This could have been used as a sanitizer bypass. This vulnerab… |
|
CVE-2020-26971
HIGH 8.8
1 app
Certain blit values provided by the user were not properly constrained leading to a heap buffer overflow on some video drivers. This vulnerability affects Fire… |
|
CVE-2021-0322
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0321
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0320
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0319
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0318
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0317
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0316
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0315
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0313
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0312
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0311
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0310
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0309
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2021-0308
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |