Vulnerabilities
Tracked app vulnerabilities
16,453 CVEs affect a tracked app or OS (all severities, all platforms). 286 of them are in the CISA KEV catalog, meaning exploitation is confirmed.
- Matching CVEs
- 16,453
- Actively exploited
- 286
- Publication window
- 2002-10-04 → 2026-08-19
Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.
| CVE |
|---|
|
CVE-2024-43085
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43084
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43083
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43082
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43081
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43080
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-43047
HIGH
KEV
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-40671
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-40661
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-40660
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38424
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38423
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38422
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38421
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38415
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38408
CRITICAL
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38405
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38403
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-38402
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34747
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34729
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-34719
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-31337
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-29779
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-23715
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-23385
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-21455
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-20106
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-20104
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2023-35686
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2023-35659
HIGH
Indexed via Android Security Bulletin; full NVD metadata pending. |
|
CVE-2024-10468
MEDIUM 5.3
1 app
Potential race conditions in IndexedDB could have caused memory corruption, leading to a potentially exploitable crash. This vulnerability affects Firefox < 13… |
|
CVE-2024-10467
HIGH 8.8
1 app
Memory safety bugs present in Firefox 131, Firefox ESR 128.3, and Thunderbird 128.3. Some of these bugs showed evidence of memory corruption and we presume tha… |
|
CVE-2024-10466
HIGH 7.5
1 app
By sending a specially crafted push message, a remote server could have hung the parent process, causing the browser to become unresponsive. This vulnerability… |
|
CVE-2024-10465
MEDIUM 6.5
1 app
A clipboard "paste" button could persist across tabs which allowed a spoofing attack. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Thunderbir… |
|
CVE-2024-10464
MEDIUM 6.5
1 app
Repeated writes to history interface attributes could have been used to cause a Denial of Service condition in the browser. This was addressed by introducing r… |
|
CVE-2024-10463
MEDIUM 6.5
1 app
Video frames could have been leaked between origins in some situations. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR < 115.17, Th… |
|
CVE-2024-10462
MEDIUM 6.5
1 app
Truncation of a long URL could have allowed origin spoofing in a permission prompt. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Thunderbird … |
|
CVE-2024-10461
MEDIUM 6.1
1 app
In multipart/x-mixed-replace responses, `Content-Disposition: attachment` in the response header was not respected and did not force a download, which could al… |
|
CVE-2024-10460
MEDIUM 5.3
1 app
The origin of an external protocol handler prompt could have been obscured using a data: URL within an `iframe`. This vulnerability affects Firefox < 132, Fire… |
|
CVE-2024-10459
HIGH 7.5
1 app
An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects Firefox <… |
|
CVE-2024-10458
HIGH 7.5
1 app
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox < 132, Fire… |
|
CVE-2024-44295
MEDIUM 5.5
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. An app may b… |
|
CVE-2024-44283
MEDIUM 5.5
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. Parsin… |
|
CVE-2024-44260
MEDIUM 4.4
This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. A malicious app… |
|
CVE-2024-44257
MEDIUM 5.5
This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1… |
|
CVE-2024-44256
HIGH 8.6
The issue was addressed with improved input sanitization. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1. An app may be a… |
|
CVE-2024-44240
MEDIUM 5.5
The issue was addressed with improved checks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1, macOS Sonoma 1… |
|
CVE-2024-44237
MEDIUM 5.5
An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in macOS Sequoia 15.1, macOS Sonoma 14.7.1, macOS Ventura 13.7.1… |
|
CVE-2024-44217
CRITICAL 9.1
A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in iOS 18 and iPadOS 18. Password autofill may … |