Skip to content
Appaloosa Scout

Annual recap

Mobile security · 2023

2023 review indexed by Appaloosa Scout: 1 380 mobile CVE published, 38 added to the CISA KEV catalog (exploited in real attacks), 3 mobile apps affected by at least one KEV.

See multi-year trends in the Threat Observatory

CVE indexed this year
1 380
CISA KEV added
38
Tracked apps affected
3

Severity distribution

CRITICAL 126
HIGH 1 147
MEDIUM 100
LOW 7

Top 10 mobile KEV of the year

Sorted by number of mobile apps affected (CVSS as tiebreaker).

CVE Severity
CVE-2023-5217
2 apps
HIGH 8.8
CVE-2023-4863
1 apps
HIGH 8.8
CVE-2023-38831
1 apps
HIGH 7.8
CVE-2016-9079
1 apps
HIGH 7.5
CVE-2023-23397
0 apps
CRITICAL 9.8
CVE-2023-36025
0 apps
HIGH 8.8
CVE-2023-32049
0 apps
HIGH 8.8
CVE-2023-35311
0 apps
HIGH 8.8
CVE-2022-41080
0 apps
CRITICAL 8.8
CVE-2023-21674
0 apps
HIGH 8.8

Top vendors by KEV this year

  1. 1 Mozilla 3 KEV · 2 apps
  2. 2 win.rar GmbH 1 KEV · 1 apps

Most affected apps

Methodology

KEV: added to the CISA catalog during the year (kev_added_date). CVE: NVD publication date. Apps: those indexed in Scout at query time; the history evolves as new mappings are added.