Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,412
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,412 entries
CVE
CVE-2025-53133
HIGH 7.8

Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability

CVE-2025-53132
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2025-53131
HIGH 8.8

Windows Media Remote Code Execution Vulnerability

CVE-2025-50177
CRITICAL 8.1

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

CVE-2025-50176
CRITICAL 7.8

DirectX Graphics Kernel Remote Code Execution Vulnerability

CVE-2025-50173
HIGH 7.8

Windows Installer Elevation of Privilege Vulnerability

CVE-2025-50172
HIGH 6.5

DirectX Graphics Kernel Denial of Service Vulnerability

CVE-2025-50171
HIGH 9.1

Remote Desktop Spoofing Vulnerability

CVE-2025-50170
HIGH 7.8

Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

CVE-2025-50169
HIGH 7.5

Windows SMB Remote Code Execution Vulnerability

CVE-2025-50168
HIGH 7.8

Win32k Elevation of Privilege Vulnerability

CVE-2025-50167
HIGH 7.0

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-50166
HIGH 6.5

Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability

CVE-2025-50165
CRITICAL 9.8

Windows Graphics Component Remote Code Execution Vulnerability

CVE-2025-50164
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-50163
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-50162
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-50161
HIGH 7.3

Win32k Elevation of Privilege Vulnerability

CVE-2025-50160
HIGH 8.0

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-50159
HIGH 7.3

Remote Access Point-to-Point Protocol (PPP) EAP-TLS Elevation of Privilege Vulnerability

CVE-2025-50158
HIGH 7.0

Windows NTFS Information Disclosure Vulnerability

CVE-2025-50157
HIGH 5.7

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-50156
HIGH 5.7

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-50155
HIGH 7.8

Windows Push Notifications Apps Elevation of Privilege Vulnerability

CVE-2025-50154
HIGH 6.5

Microsoft Windows File Explorer Spoofing Vulnerability

CVE-2025-50153
HIGH 7.8

Desktop Window Manager Elevation of Privilege Vulnerability

CVE-2025-49762
HIGH 7.0

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2025-49761
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2025-49757
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-49751
HIGH 6.8

Windows Hyper-V Denial of Service Vulnerability

CVE-2025-49743
HIGH 6.7

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-48807
CRITICAL 6.7

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2025-55188
LOW 3.6 1 app

7-Zip before 25.01 does not always properly handle symbolic links during extraction.

CVE-2025-8088
HIGH 8.8 KEV 1 app

A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This…

CVE-2025-48533
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-48530
CRITICAL

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-27038
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-22441
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-21479
CRITICAL KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-0932
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2025-43277
HIGH 7.8

The issue was addressed with improved memory handling. This issue is fixed in iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, macOS Sonoma 14.8, tvOS 18.6, visio…

CVE-2025-43276
MEDIUM 5.3

A logic error was addressed with improved error handling. This issue is fixed in macOS Sequoia 15.6. iCloud Private Relay may not activate when more than one u…

CVE-2025-43275
CRITICAL 9.8

A race condition was addressed with additional validation. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be …

CVE-2025-43274
MEDIUM 4.4

A privacy issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.6. A sandboxed process may be able to circumvent sandbox…

CVE-2025-43273
CRITICAL 9.1

A permissions issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.8. A sandboxed process may b…

CVE-2025-43270
HIGH 8.8

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An ap…

CVE-2025-43267
MEDIUM 5.5

An injection issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.6. An app may be able to access sensitive user data.

CVE-2025-43266
MEDIUM 5.1

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app ma…

CVE-2025-43265
MEDIUM 4.0

An out-of-bounds read was addressed with improved input validation. This issue is fixed in Safari 18.6, iOS 18.6 and iPadOS 18.6, macOS Sequoia 15.6, tvOS 18.6…

CVE-2025-43261
CRITICAL 9.8

A logic issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.6, macOS Sonoma 14.7.7, macOS Ventura 13.7.7. An app may be able to b…