Vulnerabilities
Tracked app vulnerabilities
16,398 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,398
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-43351
MEDIUM 5.5
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Tahoe 26.1. An app may be able to access protected user data. |
|
CVE-2025-43320
HIGH 7.8
The issue was addressed by adding additional logic. This issue is fixed in macOS Sequoia 15.7.3, macOS Tahoe 26. An app may be able to bypass launch constraint… |
|
CVE-2025-14174
HIGH 8.8
KEV
Out of bounds memory access in ANGLE in Google Chrome on Mac prior to 143.0.7499.110 allowed a remote attacker to perform out of bounds memory access via a cra… |
|
CVE-2024-7264
MEDIUM 6.5
[Apple curl] Multiple issues in curl |
|
CVE-2025-62557
CRITICAL 8.4
1 app
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-62554
CRITICAL 8.4
1 app
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-14333
HIGH 8.1
1 app
Memory safety bugs present in Firefox ESR 140.5, Thunderbird ESR 140.5, Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruptio… |
|
CVE-2025-14332
HIGH 7.3
1 app
Memory safety bugs present in Firefox 145 and Thunderbird 145. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-14331
MEDIUM 6.5
1 app
Same-origin policy bypass in the Request Handling component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 14… |
|
CVE-2025-14330
CRITICAL 9.8
1 app
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 14… |
|
CVE-2025-14329
HIGH 8.8
1 app
Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6. |
|
CVE-2025-14328
HIGH 8.8
1 app
Privilege escalation in the Netmonitor component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6. |
|
CVE-2025-14327
HIGH 7.5
1 app
Spoofing issue in the Downloads Panel component. This vulnerability was fixed in Firefox 146, Thunderbird 146, Firefox ESR 140.7, and Thunderbird 140.7. |
|
CVE-2025-14326
CRITICAL 9.8
1 app
Use-after-free in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 146 and Thunderbird 146. |
|
CVE-2025-14325
HIGH 7.3
1 app
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 14… |
|
CVE-2025-14324
CRITICAL 9.8
1 app
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 146… |
|
CVE-2025-14323
HIGH 8.8
1 app
Privilege escalation in the DOM: Notifications component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Firefox ESR 140.6, Thunderbird 146, … |
|
CVE-2025-14322
HIGH 8.0
1 app
Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 146, Firefox ESR 115.31, Fi… |
|
CVE-2025-14321
CRITICAL 9.8
1 app
Use-after-free in the WebRTC: Signaling component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6. |
|
CVE-2025-64680
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-64679
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-64678
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-64673
HIGH 7.8
Windows Storage VSP Driver Elevation of Privilege Vulnerability |
|
CVE-2025-64670
HIGH 6.5
Windows DirectX Information Disclosure Vulnerability |
|
CVE-2025-64661
HIGH 7.8
Windows Shell Elevation of Privilege Vulnerability |
|
CVE-2025-64658
HIGH 7.5
Windows File Explorer Elevation of Privilege Vulnerability |
|
CVE-2025-62573
HIGH 7.0
DirectX Graphics Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-62572
HIGH 7.8
Application Information Service Elevation of Privilege Vulnerability |
|
CVE-2025-62571
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-62570
HIGH 7.1
Windows Camera Frame Server Monitor Information Disclosure Vulnerability |
|
CVE-2025-62569
HIGH 7.0
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-62567
HIGH 5.3
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2025-62565
HIGH 7.3
Windows File Explorer Elevation of Privilege Vulnerability |
|
CVE-2025-62549
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-62474
HIGH 7.8
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
|
CVE-2025-62473
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-62472
HIGH 7.8
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
|
CVE-2025-62470
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-62469
HIGH 7.0
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-62468
HIGH 5.5
Windows Defender Firewall Service Information Disclosure Vulnerability |
|
CVE-2025-62467
HIGH 7.8
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2025-62466
HIGH 7.8
Windows Client-Side Caching Elevation of Privilege Vulnerability |
|
CVE-2025-62465
HIGH 6.5
DirectX Graphics Kernel Denial of Service Vulnerability |
|
CVE-2025-62464
HIGH 7.8
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2025-62463
HIGH 6.5
DirectX Graphics Kernel Denial of Service Vulnerability |
|
CVE-2025-62462
HIGH 7.8
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2025-62461
HIGH 7.8
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2025-62458
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-62457
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2025-62456
HIGH 8.8
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability |