Vulnerabilities
Tracked app vulnerabilities
16,412 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,412
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2025-49702
CRITICAL 7.8
1 app
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49697
CRITICAL 8.4
1 app
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49696
CRITICAL 8.4
1 app
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-49695
CRITICAL 8.4
1 app
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. |
|
CVE-2025-38236
HIGH 7.8
In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't leave consecutive consumed OOB skbs. Jann Horn reported a use-after-free i… |
|
CVE-2025-49760
MEDIUM 3.5
Windows Storage Spoofing Vulnerability |
|
CVE-2025-49753
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49744
HIGH 7.0
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-49742
HIGH 7.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2025-49740
HIGH 8.8
Windows SmartScreen Security Feature Bypass Vulnerability |
|
CVE-2025-49735
CRITICAL 8.1
Windows KDC Proxy Service (KPSSVC) Remote Code Execution Vulnerability |
|
CVE-2025-49733
HIGH 7.8
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-49732
HIGH 7.8
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-49730
HIGH 7.8
Microsoft Windows QoS Scheduler Driver Elevation of Privilege Vulnerability |
|
CVE-2025-49729
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49727
HIGH 7.0
Win32k Elevation of Privilege Vulnerability |
|
CVE-2025-49726
HIGH 7.8
Windows Notification Elevation of Privilege Vulnerability |
|
CVE-2025-49725
HIGH 7.8
Windows Notification Elevation of Privilege Vulnerability |
|
CVE-2025-49724
HIGH 8.8
Windows Connected Devices Platform Service Remote Code Execution Vulnerability |
|
CVE-2025-49723
HIGH 8.8
Windows StateRepository API Server file Tampering Vulnerability |
|
CVE-2025-49722
HIGH 5.7
Windows Print Spooler Denial of Service Vulnerability |
|
CVE-2025-49721
HIGH 7.8
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-49716
HIGH 7.5
Windows Netlogon Denial of Service Vulnerability |
|
CVE-2025-49694
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-49693
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-49691
HIGH 8.0
Windows Miracast Wireless Display Remote Code Execution Vulnerability |
|
CVE-2025-49690
HIGH 7.4
Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability |
|
CVE-2025-49689
HIGH 7.8
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-49688
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49687
HIGH 8.8
Windows Input Method Editor (IME) Elevation of Privilege Vulnerability |
|
CVE-2025-49686
HIGH 7.8
Windows TCP/IP Driver Elevation of Privilege Vulnerability |
|
CVE-2025-49685
HIGH 7.0
Windows Search Service Elevation of Privilege Vulnerability |
|
CVE-2025-49684
HIGH 5.5
Windows Storage Port Driver Information Disclosure Vulnerability |
|
CVE-2025-49683
HIGH 7.8
Microsoft Virtual Hard Disk Remote Code Execution Vulnerability |
|
CVE-2025-49682
HIGH 7.3
Windows Media Elevation of Privilege Vulnerability |
|
CVE-2025-49681
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-49680
HIGH 7.3
Windows Performance Recorder (WPR) Denial of Service Vulnerability |
|
CVE-2025-49679
HIGH 7.8
Windows Shell Elevation of Privilege Vulnerability |
|
CVE-2025-49678
HIGH 7.0
NTFS Elevation of Privilege Vulnerability |
|
CVE-2025-49677
HIGH 7.0
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-49676
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49675
HIGH 7.8
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
|
CVE-2025-49674
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49673
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49672
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49671
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-49670
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49669
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49668
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-49667
HIGH 7.8
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |