Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

16,430 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
16,430
Actively exploited
286
Publication window
2002-10-04 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

16,430 entries
CVE
CVE-2024-54478
MEDIUM 6.5

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.4, macOS Sequoia 15.2, …

CVE-2024-54475
LOW 3.3

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ventu…

CVE-2024-54468
HIGH 8.2

The issue was addressed with improved checks. This issue is fixed in iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macOS Sequoia 15.2, macOS Sonoma 14.7.2, macOS Ve…

CVE-2024-44172
LOW 3.3

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15, macOS Sonoma 14.7.3, macOS Ventura…

CVE-2025-0411
HIGH 7.0 KEV 1 app

7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected installat…

CVE-2024-54535
MEDIUM 4.3

A path handling issue was addressed with improved logic. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, visionOS 2.1, watchOS 11.1. An at…

CVE-2024-54470
MEDIUM 4.6

A logic issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1. An attacker with physical acce…

CVE-2024-44136
MEDIUM 4.6

This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to a device may b…

CVE-2024-40854
MEDIUM 5.5

A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS…

CVE-2024-40839
LOW 2.4

This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device …

CVE-2024-40771
HIGH 7.8

The issue was addressed with improved memory handling. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Monterey 12.7.5, ma…

CVE-2024-27856
HIGH 7.8

The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tv…

CVE-2025-21338
HIGH 7.8 2 apps

GDI+ Remote Code Execution Vulnerability

CVE-2025-21417
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21413
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21411
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21409
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21389
HIGH 7.5

Windows Universal Plug and Play (UPnP) Device Host Denial of Service Vulnerability

CVE-2025-21382
HIGH 7.8

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2025-21378
HIGH 7.8

Windows CSC Service Elevation of Privilege Vulnerability

CVE-2025-21374
HIGH 5.5

Windows CSC Service Information Disclosure Vulnerability

CVE-2025-21372
HIGH 7.8

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-21370
HIGH 7.8

Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

CVE-2025-21343
HIGH 7.5

Windows Web Threat Defense User Service Information Disclosure Vulnerability

CVE-2025-21341
HIGH 6.6

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21340
HIGH 5.5

Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability

CVE-2025-21339
HIGH 8.8

Windows Telephony Service Remote Code Execution Vulnerability

CVE-2025-21336
HIGH 5.6

Windows Cryptographic Information Disclosure Vulnerability

CVE-2025-21335
HIGH 7.8 KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21334
HIGH 7.8 KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21333
HIGH 7.8 KEV

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

CVE-2025-21332
HIGH 4.3

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21331
HIGH 7.3

Windows Installer Elevation of Privilege Vulnerability

CVE-2025-21330
HIGH 7.5

Windows Remote Desktop Services Denial of Service Vulnerability

CVE-2025-21329
HIGH 4.3

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21328
HIGH 4.3

MapUrlToZone Security Feature Bypass Vulnerability

CVE-2025-21327
HIGH 6.6

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21326
HIGH 7.8

Internet Explorer Remote Code Execution Vulnerability

CVE-2025-21325
HIGH 7.8

Windows Secure Kernel Mode Elevation of Privilege Vulnerability

CVE-2025-21324
HIGH 6.6

Windows Digital Media Elevation of Privilege Vulnerability

CVE-2025-21323
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21321
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21320
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21319
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21318
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21317
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21316
HIGH 5.5

Windows Kernel Memory Information Disclosure Vulnerability

CVE-2025-21315
HIGH 7.8

Microsoft Brokering File System Elevation of Privilege Vulnerability

CVE-2025-21314
HIGH 6.5

Windows SmartScreen Spoofing Vulnerability

CVE-2025-21313
HIGH 6.5

Windows Security Account Manager (SAM) Denial of Service Vulnerability