Vulnerabilities
Tracked app vulnerabilities
16,430 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,430
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-54478
MEDIUM 6.5
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.4, macOS Sequoia 15.2, … |
|
CVE-2024-54475
LOW 3.3
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventu… |
|
CVE-2024-54468
HIGH 8.2
The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ve… |
|
CVE-2024-44172
LOW 3.3
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.3, macOS Ventura… |
|
CVE-2025-0411
HIGH 7.0
KEV
1 app
7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected installat… |
|
CVE-2024-54535
MEDIUM 4.3
A path handling issue was addressed with improved logic. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, visionOS 2.1, watchOS 11.1. An at… |
|
CVE-2024-54470
MEDIUM 4.6
A logic issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. An attacker with physical acce… |
|
CVE-2024-44136
MEDIUM 4.6
This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to a device may b… |
|
CVE-2024-40854
MEDIUM 5.5
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS… |
|
CVE-2024-40839
LOW 2.4
This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device … |
|
CVE-2024-40771
HIGH 7.8
The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, ma… |
|
CVE-2024-27856
HIGH 7.8
The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tv… |
|
CVE-2025-21338
HIGH 7.8
2 apps
GDI+ Remote Code Execution Vulnerability |
|
CVE-2025-21417
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21413
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21411
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21409
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21389
HIGH 7.5
Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability |
|
CVE-2025-21382
HIGH 7.8
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-21378
HIGH 7.8
Windows CSC Service Elevation of Privilege Vulnerability |
|
CVE-2025-21374
HIGH 5.5
Windows CSC Service Information Disclosure Vulnerability |
|
CVE-2025-21372
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-21370
HIGH 7.8
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability |
|
CVE-2025-21343
HIGH 7.5
Windows Web Threat Defense User Service Information Disclosure Vulnerability |
|
CVE-2025-21341
HIGH 6.6
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21340
HIGH 5.5
Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
|
CVE-2025-21339
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21336
HIGH 5.6
Windows Cryptographic Information Disclosure Vulnerability |
|
CVE-2025-21335
HIGH 7.8
KEV
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21334
HIGH 7.8
KEV
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21333
HIGH 7.8
KEV
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
|
CVE-2025-21332
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21331
HIGH 7.3
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-21330
HIGH 7.5
Windows Remote Desktop Services Denial of Service Vulnerability |
|
CVE-2025-21329
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21328
HIGH 4.3
MapUrlToZone Security Feature Bypass Vulnerability |
|
CVE-2025-21327
HIGH 6.6
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21326
HIGH 7.8
Internet Explorer Remote Code Execution Vulnerability |
|
CVE-2025-21325
HIGH 7.8
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2025-21324
HIGH 6.6
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-21323
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21321
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21320
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21319
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21318
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21317
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21316
HIGH 5.5
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2025-21315
HIGH 7.8
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2025-21314
HIGH 6.5
Windows SmartScreen Spoofing Vulnerability |
|
CVE-2025-21313
HIGH 6.5
Windows Security Account Manager (SAM) Denial of Service Vulnerability |