Threat observatory
Threat observatory
A multi-year read of the vulnerabilities in the apps and OSes Scout tracks (iOS, Android, macOS, Windows). We lead with the share of CVEs actually exploited (CISA KEV), a signal robust to NVD coverage effects, then add volume context and attack vectors.
Year 2017
- KEV share
- 0.0 %
- CVEs published
- 1,232
- KEV added
- 0
- Apps affected
- 0
Distribution by severity
Critical
258
High
743
Medium
214
Low
16
Unrated
1
Methodology
- Sources: NVD (NIST) for CVEs and CVSS scoring, CISA KEV for the "actively exploited" status. Scope: apps tracked by Scout (iOS, Android, macOS, Windows) and documented OS releases.
- KEV share: number of CVEs published in the year and present in the CISA KEV catalog, divided by the total number of CVEs published in the year (Scope: Scout).
- Dates: CVEs are counted by NVD publication year; KEV by year added to the CISA catalog. We never count a present "open" status; a time series relies on immutable event dates.
- Limitation (coverage): CVE volume depends on NVD coverage and the size of the Scout catalog, both of which change over time. Raw volume is context, not a risk measure.
- Current year: marked with an asterisk (*) and excluded from year-over-year comparisons: its figures are not yet consolidated.
Data recomputed on 2026-08-11 15:21 UTC.