Vulnerabilities
Tracked app vulnerabilities
16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,412
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2026-20670
MEDIUM 5.5
An authorization issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An app… |
|
CVE-2026-20668
MEDIUM 5.5
A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.5… |
|
CVE-2026-20665
MEDIUM 6.5
This issue was addressed through improved state management. This issue is fixed in Safari 26.4, iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS T… |
|
CVE-2026-20664
MEDIUM 4.3
The issue was addressed with improved memory handling. This issue is fixed in Safari 26.4, iOS 26.4 and iPadOS 26.4, macOS Tahoe 26.4, visionOS 26.4. Processin… |
|
CVE-2026-20657
MEDIUM 6.5
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.4 and iPadOS 26.4, macOS Sequo… |
|
CVE-2026-20651
MEDIUM 6.2
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An… |
|
CVE-2026-20639
HIGH 7.5
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.3. Processin… |
|
CVE-2026-20637
MEDIUM 6.2
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.3 and iPadOS 26.3, macOS Sequ… |
|
CVE-2026-20633
MEDIUM 5.5
This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. An app may be … |
|
CVE-2026-20632
MEDIUM 5.3
A parsing issue in the handling of directory paths was addressed with improved path validation. This issue is fixed in macOS Tahoe 26.4. An app may be able to … |
|
CVE-2026-20631
HIGH 8.8
A logic issue was addressed with improved checks. This issue is fixed in macOS Tahoe 26.4. A user may be able to elevate privileges. |
|
CVE-2026-20622
HIGH 7.5
A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3. An… |
|
CVE-2026-20607
MEDIUM 4.0
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. An app may … |
|
CVE-2025-43534
MEDIUM 6.8
A path handling issue was addressed with improved validation. This issue is fixed in iOS 18.7.7 and iPadOS 18.7.7, iOS 26.2 and iPadOS 26.2. A user with physic… |
|
CVE-2026-4371
HIGH 7.4
1 app
A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connectio… |
|
CVE-2026-3889
MEDIUM 6.5
1 app
Spoofing issue in Thunderbird. This vulnerability was fixed in Thunderbird 149 and Thunderbird 140.9. |
|
CVE-2026-4729
CRITICAL 9.8
1 app
Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2026-4728
MEDIUM 6.5
1 app
Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. |
|
CVE-2026-4727
HIGH 7.5
1 app
Denial-of-service in the Libraries component in NSS. This vulnerability was fixed in Firefox 149 and Thunderbird 149. |
|
CVE-2026-4726
HIGH 7.5
1 app
Denial-of-service in the XML component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. |
|
CVE-2026-4724
CRITICAL 9.1
1 app
Undefined behavior in the Audio/Video component. This vulnerability was fixed in Firefox 149 and Thunderbird 149. |
|
CVE-2026-4721
CRITICAL 9.8
1 app
Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence… |
|
CVE-2026-4720
CRITICAL 9.8
1 app
Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruptio… |
|
CVE-2026-4718
HIGH 8.1
1 app
Undefined behavior in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9. |
|
CVE-2026-4710
CRITICAL 9.8
1 app
Incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 14… |
|
CVE-2026-4694
HIGH 7.5
1 app
Incorrect boundary conditions, integer overflow in the Graphics component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, … |
|
CVE-2026-4692
CRITICAL 10.0
1 app
Sandbox escape in the Responsive Design Mode component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149, an… |
|
CVE-2026-4689
CRITICAL 10.0
1 app
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, … |
|
CVE-2025-66200
MEDIUM 5.4
[Apple apache] Multiple issues in Apache |
|
CVE-2025-65082
MEDIUM 6.5
[Apple apache] Multiple issues in Apache |
|
CVE-2025-59775
HIGH 7.5
[Apple apache] Multiple issues in Apache |
|
CVE-2025-58098
HIGH 8.3
[Apple apache] Multiple issues in Apache |
|
CVE-2025-55753
MEDIUM 7.5
[Apple apache] Multiple issues in Apache |
|
CVE-2026-4519
LOW 3.3
1 app
The webbrowser.open() API would accept leading dashes in the URL which could be handled as command line options for certain web browsers. New behavior reject… |
|
CVE-2026-4424
HIGH 7.5
A flaw was found in libarchive. This heap out-of-bounds read vulnerability exists in the RAR archive processing logic due to improper validation of the LZSS sl… |
|
CVE-2026-20643
MEDIUM 5.4
A cross-origin issue in the Navigation API was addressed with improved input validation. This issue is fixed in Background Security Improvements for iOS, iPadO… |
|
CVE-2026-4224
HIGH 7.5
1 app
When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow… |
|
CVE-2026-3644
HIGH 7.5
1 app
The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths wer… |
|
CVE-2026-26133
HIGH 7.1
13 apps
AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. |
|
CVE-2025-13462
LOW 3.3
1 app
The "tarfile" module would still apply normalization of AREGTYPE (\x00) blocks to DIRTYPE, even while processing a multi-block member such as GNUTYPE_LONGNAME … |
|
CVE-2023-43010
HIGH 8.8
The issue was addressed with improved memory handling. This issue is fixed in iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2, Safari 17.2, iOS 16.7.15 and iPadOS … |
|
CVE-2026-3784
MEDIUM 6.5
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. Th… |
|
CVE-2026-26123
MEDIUM 5.5
2 apps
Cwe is not in rca categories in Microsoft Authenticator allows an unauthorized attacker to disclose information locally. |
|
CVE-2026-26134
HIGH 7.8
1 app
Integer overflow or wraparound in Microsoft Office allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-26110
CRITICAL 8.4
1 app
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2026-25180
HIGH 5.5
1 app
Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to disclose information locally. |
|
CVE-2026-24294
HIGH 7.8
Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-24293
HIGH 7.8
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-24289
HIGH 7.8
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-24285
HIGH 7.0
1 app
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. |