Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

15,601 CVEs affect a tracked app or OS (High, all platforms). 294 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
15,601
Actively exploited
294
Publication window
2004-07-27 → 2026-09-17

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

15,601 entries High Clear all
CVE
CVE-2026-62880
HIGH 7.8

Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-62877
HIGH 7.8

Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62876
HIGH 7.8

Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVE-2026-62832
HIGH 7.8

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

CVE-2026-62824
HIGH 8.8

Stack-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVE-2026-62823
HIGH 8.8

Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62822
HIGH 8.8

Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network.

CVE-2026-62820
HIGH 8.1

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to execute code over…

CVE-2026-62819
HIGH 8.1

Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine

CVE-2026-62818
HIGH 8.8

Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network.

CVE-2026-62817
HIGH 8.8

Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62816
HIGH 8.8

Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network.

CVE-2026-62812
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62811
HIGH 7.8

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

CVE-2026-62807
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62803
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62800
HIGH 8.8

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network.

CVE-2026-62799
HIGH 7.8

Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.

CVE-2026-62797
HIGH 7.8

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

CVE-2026-62795
HIGH 8.8

Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

CVE-2026-62792
HIGH 8.1

Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network.

CVE-2026-62790
HIGH 8.8

Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network.

CVE-2026-62788
HIGH 7.0

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-62787
HIGH 7.5

Use after free in Windows DNS allows an authorized attacker to execute code over a network.

CVE-2026-62785
HIGH 8.8

Heap-based buffer overflow in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.

CVE-2026-62784
HIGH 8.8

Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to execute code over a network.

CVE-2026-62783
HIGH 7.8

Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

CVE-2026-62781
HIGH 8.1

Heap-based buffer overflow in RPC Runtime allows an unauthorized attacker to execute code over a network.

CVE-2026-62780
HIGH 7.0

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-62779
HIGH 7.8

Use after free in Windows Schannel allows an authorized attacker to elevate privileges locally.

CVE-2026-62778
HIGH 8.1

Use after free in Windows DNS allows an unauthorized attacker to elevate privileges over a network.

CVE-2026-62777
HIGH 7.8

Missing authentication for critical function in Windows License Manager allows an authorized attacker to elevate privileges locally.

CVE-2026-62776
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62774
HIGH 7.0

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-62773
HIGH 7.0

Use after free in Windows Kerberos allows an authorized attacker to elevate privileges locally.

CVE-2026-62772
HIGH 7.8

Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to elevate privileges locally.

CVE-2026-62771
HIGH 7.8

Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.

CVE-2026-62770
HIGH 7.8

Heap-based buffer overflow in Windows Shell allows an authorized attacker to elevate privileges locally.

CVE-2026-62768
HIGH 7.8

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2026-62766
HIGH 7.0

Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally.

CVE-2026-62761
HIGH 7.8

Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.

CVE-2026-62758
HIGH 7.8

Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

CVE-2026-62755
HIGH 7.8

Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.

CVE-2026-62754
HIGH 7.8

Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.

CVE-2026-62753
HIGH 7.0

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

CVE-2026-62752
HIGH 7.8

Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.

CVE-2026-62751
HIGH 7.8

Integer overflow or wraparound in Windows Projected File System allows an authorized attacker to elevate privileges locally.

CVE-2026-62749
HIGH 7.0

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVE-2026-62748
HIGH 7.0

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to eleva…

CVE-2026-62747
HIGH 7.8

Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

Manage your fleet with Appaloosa

Appaloosa pushes OS updates, apps and policies to your Windows, macOS, iOS and Android devices from one console.

Discover Appaloosa MDM