Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,453 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,453
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,453 entries
CVE
CVE-2025-26681
HIGH 6.7

Win32k Elevation of Privilege Vulnerability

CVE-2025-26680
HIGH 7.5

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

CVE-2025-26679
HIGH 7.8

RPC Endpoint Mapper Service Elevation of Privilege Vulnerability

CVE-2025-26678
HIGH 8.4

Windows Defender Application Control Security Feature Bypass Vulnerability

CVE-2025-26676
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-26675
HIGH 7.8

Windows Subsystem for Linux Elevation of Privilege Vulnerability

CVE-2025-26674
HIGH 7.8

Windows Media Remote Code Execution Vulnerability

CVE-2025-26673
HIGH 7.5

Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

CVE-2025-26672
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-26671
HIGH 8.1

Windows Remote Desktop Services Remote Code Execution Vulnerability

CVE-2025-26670
CRITICAL 8.1

Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability

CVE-2025-26669
HIGH 8.8

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-26668
HIGH 7.5

Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability

CVE-2025-26667
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-26666
HIGH 7.8

Windows Media Remote Code Execution Vulnerability

CVE-2025-26665
HIGH 7.0

Windows upnphost.dll Elevation of Privilege Vulnerability

CVE-2025-26664
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-26663
CRITICAL 8.1

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

CVE-2025-26652
HIGH 7.5

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

CVE-2025-26651
HIGH 6.5

Windows Local Session Manager (LSM) Denial of Service Vulnerability

CVE-2025-26649
HIGH 7.0

Windows Secure Channel Elevation of Privilege Vulnerability

CVE-2025-26648
HIGH 7.8

Windows Kernel Elevation of Privilege Vulnerability

CVE-2025-26647
HIGH 8.8

Windows Kerberos Elevation of Privilege Vulnerability

CVE-2025-26644
HIGH 5.1

Windows Hello Spoofing Vulnerability

CVE-2025-26641
HIGH 7.5

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

CVE-2025-26640
HIGH 7.0

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-26639
HIGH 7.8

Windows USB Print Driver Elevation of Privilege Vulnerability

CVE-2025-26637
HIGH 6.8

Windows BitLocker Security Feature Bypass Vulnerability

CVE-2025-26635
HIGH 6.5

Windows Hello Security Feature Bypass Vulnerability

CVE-2025-24074
HIGH 7.8

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-24073
HIGH 7.8

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-24062
HIGH 7.8

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-24060
HIGH 7.8

Microsoft DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-24058
HIGH 7.8

Windows DWM Core Library Elevation of Privilege Vulnerability

CVE-2025-21222
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21221
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21205
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21204
HIGH 7.8

Windows Process Activation Elevation of Privilege Vulnerability

CVE-2025-21203
HIGH 6.5

Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability

CVE-2025-21197
HIGH 6.5

Windows NTFS Information Disclosure Vulnerability

CVE-2025-21191
HIGH 7.0

Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability

CVE-2025-21174
HIGH 7.5

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

CVE-2025-29796
MEDIUM 4.7 1 app

User interface (ui) misrepresentation of critical information in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network.

CVE-2025-25001
MEDIUM 4.3 1 app

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perf…

CVE-2025-31334
MEDIUM 6.8 1 app

Issue that bypasses the "Mark of the Web" security warning function for files when opening a symbolic link that points to an executable file exists in WinRAR v…

CVE-2025-3034
HIGH 8.1 1 app

Memory safety bugs present in Firefox 136 and Thunderbird 136. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s…

CVE-2025-3033
HIGH 7.7 1 app

After selecting a malicious Windows `.url` shortcut from the local filesystem, an unexpected file could be uploaded. *This bug only affects Firefox on Window…

CVE-2025-3032
HIGH 7.4 1 app

Leaking of file descriptors from the fork server to web content processes could allow for privilege escalation attacks. This vulnerability was fixed in Firefox…

CVE-2025-3031
MEDIUM 6.5 1 app

An attacker could read 32 bits of values spilled onto the stack in a JIT compiled function. This vulnerability was fixed in Firefox 137 and Thunderbird 137.

CVE-2025-3030
HIGH 8.1 1 app

Memory safety bugs present in Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird 128.8. Some of these bugs showed evidence of memory corruption a…