Vulnerabilities
Tracked app vulnerabilities
16,453 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,453
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-54560
MEDIUM 5.5
A logic issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, watchOS 11. A malicious app may be ab… |
|
CVE-2024-54558
LOW 2.8
A clickjacking issue was addressed with improved out-of-process view handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be abl… |
|
CVE-2024-54546
HIGH 7.5
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An app may be able to cause unexpected system termination or co… |
|
CVE-2024-54473
MEDIUM 5.5
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15. An app may be able to access user-sensitive… |
|
CVE-2024-54469
MEDIUM 5.5
The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7, visionOS 2.… |
|
CVE-2024-54467
MEDIUM 6.5
A cookie management issue was addressed with improved state management. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visi… |
|
CVE-2024-54463
MEDIUM 5.5
This issue was addressed with improved entitlements. This issue is fixed in macOS Sequoia 15. An app may be able to access removable volumes without user conse… |
|
CVE-2024-44227
HIGH 7.5
The issue was addressed with improved memory handling. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15. An app may be able to cause unexpected sy… |
|
CVE-2024-44192
MEDIUM 5.5
The issue was addressed with improved checks. This issue is fixed in Safari 18, iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18, visionOS 2, watchOS 11. Proces… |
|
CVE-2024-44179
LOW 2.4
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoi… |
|
CVE-2025-1943
HIGH 8.2
1 app
Memory safety bugs present in Firefox 135 and Thunderbird 135. Some of these bugs showed evidence of memory corruption and we presume that with enough effort s… |
|
CVE-2025-1942
CRITICAL 9.8
1 app
When String.toUpperCase() caused a string to get longer it was possible for uninitialized memory to be incorporated into the result string. This vulnerability … |
|
CVE-2025-1938
MEDIUM 6.5
1 app
Memory safety bugs present in Firefox 135, Thunderbird 135, Firefox ESR 128.7, and Thunderbird 128.7. Some of these bugs showed evidence of memory corruption a… |
|
CVE-2025-1937
HIGH 7.5
1 app
Memory safety bugs present in Firefox 135, Thunderbird 135, Firefox ESR 115.20, Firefox ESR 128.7, and Thunderbird 128.7. Some of these bugs showed evidence of… |
|
CVE-2025-1936
HIGH 7.3
1 app
jar: URLs retrieve local file content packaged in a ZIP archive. The null and everything after it was ignored when retrieving the content from the archive, but… |
|
CVE-2025-1935
MEDIUM 4.3
1 app
A web page could trick a user into setting that site as the default handler for a custom URL protocol. This vulnerability was fixed in Firefox 136, Firefox ESR… |
|
CVE-2025-1934
MEDIUM 6.5
1 app
It was possible to interrupt the processing of a RegExp bailout and run additional JavaScript, potentially triggering garbage collection when the engine was no… |
|
CVE-2025-1933
HIGH 7.6
1 app
On 64-bit CPUs, when the JIT compiles WASM i32 return values they can pick up bits from left over memory. This can potentially cause them to be treated as a di… |
|
CVE-2025-1932
HIGH 8.1
1 app
An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This … |
|
CVE-2025-1931
HIGH 7.5
1 app
It was possible to cause a use-after-free in the content process side of a WebTransport connection, leading to a potentially exploitable crash. This vulnerabil… |
|
CVE-2025-1930
HIGH 8.8
1 app
On Windows, a compromised content process could use bad StreamData sent over AudioIPC to trigger a use-after-free in the Browser process. This could have led t… |
|
CVE-2025-26417
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22413
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22412
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22411
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22410
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22409
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22408
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22407
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22406
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22405
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22404
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-22403
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20645
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-20644
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0093
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0092
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0086
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0084
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0083
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0082
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0081
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0080
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0079
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0078
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0075
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2025-0074
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-53027
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-53025
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-53024
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |