Vulnerabilities
Tracked app vulnerabilities
16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,412
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-53133
HIGH 7.8
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability |
|
CVE-2025-53132
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-53131
HIGH 8.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-50177
CRITICAL 8.1
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2025-50176
CRITICAL 7.8
DirectX Graphics Kernel Remote Code Execution Vulnerability |
|
CVE-2025-50173
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-50172
HIGH 6.5
DirectX Graphics Kernel Denial of Service Vulnerability |
|
CVE-2025-50171
HIGH 9.1
Remote Desktop Spoofing Vulnerability |
|
CVE-2025-50170
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2025-50169
HIGH 7.5
Windows SMB Remote Code Execution Vulnerability |
|
CVE-2025-50168
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-50167
HIGH 7.0
Windows Hyper-V Elevation of Privilege Vulnerability |
|
CVE-2025-50166
HIGH 6.5
Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability |
|
CVE-2025-50165
CRITICAL 9.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2025-50164
HIGH 8.0
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-50163
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-50162
HIGH 8.0
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-50161
HIGH 7.3
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-50160
HIGH 8.0
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-50159
HIGH 7.3
Remote Access Point-to-Point Protocol (PPP) EAP-TLS Elevation of Privilege Vulnerability |
|
CVE-2025-50158
HIGH 7.0
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2025-50157
HIGH 5.7
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-50156
HIGH 5.7
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-50155
HIGH 7.8
Windows Push Notifications Apps Elevation of Privilege Vulnerability |
|
CVE-2025-50154
HIGH 6.5
Microsoft Windows File Explorer Spoofing Vulnerability |
|
CVE-2025-50153
HIGH 7.8
Desktop Window Manager Elevation of Privilege Vulnerability |
|
CVE-2025-49762
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2025-49761
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-49757
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49751
HIGH 6.8
Windows Hyper-V Denial of Service Vulnerability |
|
CVE-2025-49743
HIGH 6.7
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-48807
CRITICAL 6.7
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2025-55188
LOW 3.6
1 app
7-Zip before 25.01 does not always properly handle symbolic links during extraction. |
|
CVE-2025-8088
HIGH 8.8
KEV
1 app
A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This… |
|
CVE-2025-48533
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-48530
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-27038
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22441
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-21479
CRITICAL
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0932
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-43277
HIGH 7.8
The issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, macOS Sonoma 14.8, tvOS 18.6, visio… |
|
CVE-2025-43276
MEDIUM 5.3
A logic error was addressed with improved error handling. This issue is fixed in macOS Sequoia 15.6. iCloud Private Relay may not activate when more than one u… |
|
CVE-2025-43275
CRITICAL 9.8
A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be … |
|
CVE-2025-43274
MEDIUM 4.4
A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6. A sandboxed process may be able to circumvent sandbox… |
|
CVE-2025-43273
CRITICAL 9.1
A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.8. A sandboxed process may b… |
|
CVE-2025-43270
HIGH 8.8
An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An ap… |
|
CVE-2025-43267
MEDIUM 5.5
An injection issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. An app may be able to access sensitive user data. |
|
CVE-2025-43266
MEDIUM 5.1
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app ma… |
|
CVE-2025-43265
MEDIUM 4.0
An out-of-bounds read was addressed with improved input validation. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6… |
|
CVE-2025-43261
CRITICAL 9.8
A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to b… |