Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,398 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,398
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,398 entries
CVE
CVE-2025-43351
MEDIUM 5.5

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be able to access protected user data.

CVE-2025-43320
HIGH 7.8

The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.7.3, macOS Tahoe 26. An app may be able to bypass launch constraint…

CVE-2025-14174
HIGH 8.8 KEV

Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a cra…

CVE-2024-7264
MEDIUM 6.5

[Apple curl] Multiple issues in curl

CVE-2025-62557
CRITICAL 8.4 1 app

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-62554
CRITICAL 8.4 1 app

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

CVE-2025-14333
HIGH 8.1 1 app

Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruptio…

CVE-2025-14332
HIGH 7.3 1 app

Memory safety bugs present in Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2025-14331
MEDIUM 6.5 1 app

Same-origin policy bypass in the Request Handling component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 14…

CVE-2025-14330
CRITICAL 9.8 1 app

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 14…

CVE-2025-14329
HIGH 8.8 1 app

Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6.

CVE-2025-14328
HIGH 8.8 1 app

Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6.

CVE-2025-14327
HIGH 7.5 1 app

Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunderbird 146, Firefox ESR 140.7, and Thunderbird 140.7.

CVE-2025-14326
CRITICAL 9.8 1 app

Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146.

CVE-2025-14325
HIGH 7.3 1 app

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 14…

CVE-2025-14324
CRITICAL 9.8 1 app

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 146…

CVE-2025-14323
HIGH 8.8 1 app

Privilege escalation in the DOM: Notifications component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 146, …

CVE-2025-14322
HIGH 8.0 1 app

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Fi…

CVE-2025-14321
CRITICAL 9.8 1 app

Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6.

CVE-2025-64680
HIGH 7.8

Windows DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-64679
HIGH 7.8

Windows DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-64678
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-64673
HIGH 7.8

Windows Storage VSP Driver Elevation of Privilege Vulnerability

CVE-2025-64670
HIGH 6.5

Windows DirectX Information Disclosure Vulnerability

CVE-2025-64661
HIGH 7.8

Windows Shell Elevation of Privilege Vulnerability

CVE-2025-64658
HIGH 7.5

Windows File Explorer Elevation of Privilege Vulnerability

CVE-2025-62573
HIGH 7.0

DirectX Graphics Kernel Elevation of Privilege Vulnerability

CVE-2025-62572
HIGH 7.8

Application Information Service Elevation of Privilege Vulnerability

CVE-2025-62571
HIGH 7.8

Windows Installer Elevation of Privilege Vulnerability

CVE-2025-62570
HIGH 7.1

Windows Camera Frame Server Monitor Information Disclosure Vulnerability

CVE-2025-62569
HIGH 7.0

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-62567
HIGH 5.3

Windows Hyper-V Denial of Service Vulnerability

CVE-2025-62565
HIGH 7.3

Windows File Explorer Elevation of Privilege Vulnerability

CVE-2025-62549
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-62474
HIGH 7.8

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

CVE-2025-62473
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-62472
HIGH 7.8

Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

CVE-2025-62470
HIGH 7.8

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2025-62469
HIGH 7.0

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-62468
HIGH 5.5

Windows Defender Firewall Service Information Disclosure Vulnerability

CVE-2025-62467
HIGH 7.8

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2025-62466
HIGH 7.8

Windows Client-Side Caching Elevation of Privilege Vulnerability

CVE-2025-62465
HIGH 6.5

DirectX Graphics Kernel Denial of Service Vulnerability

CVE-2025-62464
HIGH 7.8

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2025-62463
HIGH 6.5

DirectX Graphics Kernel Denial of Service Vulnerability

CVE-2025-62462
HIGH 7.8

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2025-62461
HIGH 7.8

Windows Projected File System Elevation of Privilege Vulnerability

CVE-2025-62458
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2025-62457
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2025-62456
HIGH 8.8

Windows Resilient File System (ReFS) Remote Code Execution Vulnerability