Skip to content
Appaloosa Scout

CISA KEV

Actively exploited vulnerabilities (CISA KEV)

229 entries

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

CVE
CVE-2023-36802
HIGH 7.8 KEV

Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability

CVE-2023-35674
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-38831
HIGH 7.8 KEV Local 1 apps

RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because …

CVE-2023-36884
HIGH 7.5 KEV Network

Windows Search Remote Code Execution Vulnerability

CVE-2023-36874
HIGH 7.8 KEV

Windows Error Reporting Service Elevation of Privilege Vulnerability

CVE-2023-32049
HIGH 8.8 KEV

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2023-32046
HIGH 7.8 KEV

Windows MSHTML Platform Elevation of Privilege Vulnerability

CVE-2021-29256
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-29360
HIGH 8.4 KEV

Microsoft Streaming Service Elevation of Privilege Vulnerability

CVE-2022-22706
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-29336
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2023-0266
HIGH 7.8 KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2022-0847
HIGH 7.8 KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-22600
HIGH 7.0 KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-28252
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-28229
HIGH 7.0 KEV

Windows CNG Key Isolation Service Elevation of Privilege Vulnerability

CVE-2022-38181
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-20963
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2023-23376
HIGH 7.8 KEV Local

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-21823
HIGH 7.8 KEV

Windows Graphics Component Remote Code Execution Vulnerability

CVE-2023-21674
HIGH 8.8 KEV

Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability

CVE-2022-26485
HIGH 8.8 KEV Network 1 apps

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. Th…

CVE-2022-41128
HIGH 8.8 KEV Network

Windows Scripting Languages Remote Code Execution Vulnerability

CVE-2022-41125
HIGH 7.8 KEV Local

Windows CNG Key Isolation Service Elevation of Privilege Vulnerability

CVE-2022-41073
HIGH 7.8 KEV Local

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-41033
HIGH 7.8 KEV

Windows COM+ Event System Service Elevation of Privilege Vulnerability

CVE-2022-38028
HIGH 7.8 KEV

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-37969
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2022-34713
HIGH 7.8 KEV

Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability

CVE-2022-22047
HIGH 7.8 KEV

Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

CVE-2022-30190
HIGH 7.8 KEV Local

A remote code execution vulnerability exists when MSDT is called using the URL protocol from a calling application such as Word. An attacker who successfully e…

CVE-2022-26925
HIGH 8.1 KEV

Windows LSA Spoofing Vulnerability

CVE-2022-26904
HIGH 7.0 KEV

Windows User Profile Service Elevation of Privilege Vulnerability

CVE-2022-24521
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2022-22718
HIGH 7.8 KEV

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-21999
HIGH 7.8 KEV

Windows Print Spooler Elevation of Privilege Vulnerability

CVE-2022-21971
HIGH 7.8 KEV

Windows Runtime Remote Code Execution Vulnerability

CVE-2022-21919
HIGH 7.0 KEV

Windows User Profile Service Elevation of Privilege Vulnerability

CVE-2022-21882
HIGH 7.0 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2021-43226
HIGH 7.8 KEV

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2021-42287
HIGH 7.5 KEV Network

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2021-42278
HIGH 7.5 KEV Network

Active Directory Domain Services Elevation of Privilege Vulnerability

CVE-2021-41379
HIGH 5.5 KEV

Windows Installer Elevation of Privilege Vulnerability

CVE-2021-1048
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-0920
HIGH KEV

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2021-41357
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2021-40450
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2021-40449
HIGH 7.8 KEV

Win32k Elevation of Privilege Vulnerability

CVE-2021-40444
HIGH 8.8 KEV Network

Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks th…

CVE-2021-36955
HIGH 7.8 KEV Local

Windows Common Log File System Driver Elevation of Privilege Vulnerability