Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,412
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,412 entries
CVE
CVE-2026-3783
MEDIUM 5.3

token leak with redirect and netrc

CVE-2026-26132
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2026-26128
HIGH 7.8

Windows SMB Server Elevation of Privilege Vulnerability

CVE-2026-26111
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2026-25190
HIGH 7.8

Windows GDI Remote Code Execution Vulnerability

CVE-2026-25189
HIGH 7.8

Windows DWM Core Library Elevation of Privilege Vulnerability

CVE-2026-25188
HIGH 8.8

Windows Telephony Service Elevation of Privilege Vulnerability

CVE-2026-25187
HIGH 7.8

Winlogon Elevation of Privilege Vulnerability

CVE-2026-25186
HIGH 5.5

Windows Accessibility Infrastructure (ATBroker.exe) Information Disclosure Vulnerability

CVE-2026-25185
HIGH 5.3

Windows Shell Link Processing Spoofing Vulnerability

CVE-2026-25181
HIGH 7.5

GDI+ Information Disclosure Vulnerability

CVE-2026-25179
HIGH 7.0

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2026-25178
HIGH 7.0

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2026-25177
HIGH 8.8

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2026-25176
HIGH 7.8

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2026-25175
HIGH 7.8

Windows NTFS Elevation of Privilege Vulnerability

CVE-2026-25174
HIGH 7.8

Windows Extensible File Allocation Table Elevation of Privilege Vulnerability

CVE-2026-25173
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2026-25172
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2026-25171
HIGH 7.0

Windows Authentication Elevation of Privilege Vulnerability

CVE-2026-25170
HIGH 7.0

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2026-25169
HIGH 6.2

Windows Graphics Component Denial of Service Vulnerability

CVE-2026-25168
HIGH 6.2

Windows Graphics Component Denial of Service Vulnerability

CVE-2026-25167
HIGH 7.4

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2026-25165
HIGH 7.8

Performance Counters for Windows Elevation of Privilege Vulnerability

CVE-2026-24297
HIGH 6.5

Windows Kerberos Security Feature Bypass Vulnerability

CVE-2026-24296
HIGH 7.0

Windows Device Association Service Elevation of Privilege Vulnerability

CVE-2026-24295
HIGH 7.0

Windows Device Association Service Elevation of Privilege Vulnerability

CVE-2026-24292
HIGH 7.8

Windows Connected Devices Platform Service Elevation of Privilege Vulnerability

CVE-2026-24291
HIGH 7.8

Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability

CVE-2026-24290
HIGH 7.8

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2026-24288
HIGH 6.8

Windows Mobile Broadband Driver Remote Code Execution Vulnerability

CVE-2026-24287
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2026-24283
HIGH 8.8

Multiple UNC Provider Kernel Driver Elevation of Privilege Vulnerability

CVE-2026-24282
HIGH 5.5

Push message Routing Service Elevation of Privilege Vulnerability

CVE-2026-23674
HIGH 7.5

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2026-23673
HIGH 7.8

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

CVE-2026-23672
HIGH 7.8

Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability

CVE-2026-23671
HIGH 7.0

Windows Bluetooth RFCOM Protocol Driver Elevation of Privilege Vulnerability

CVE-2026-23669
HIGH 8.8

RPC Runtime Library Remote Code Execution Vulnerability

CVE-2026-23668
HIGH 7.0

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2026-23667
HIGH 7.0

Broadcast DVR Elevation of Privilege Vulnerability

CVE-2026-3537
HIGH 8.8 1 app

Object lifecycle issue in PowerVR in Google Chrome on Android prior to 145.0.7632.159 allowed a remote attacker to potentially exploit heap corruption via a cr…

CVE-2026-0013
HIGH 8.4

In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy. This could lead to local esca…

CVE-2026-0011
HIGH 8.4

In enableSystemPackageLPw of Settings.java, there is a possible way to prevent location access from working due to a logic error in the code. This could lead t…

CVE-2026-0010
HIGH 8.4

In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privileg…

CVE-2026-21385
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2026-20434
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2026-20428
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2026-20427
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.