Skip to content
Appaloosa Scout

CISA KEV

Actively exploited vulnerabilities (CISA KEV)

12 entries

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

CVE
CVE-2026-21525
MEDIUM 6.2 KEV

Windows Remote Access Connection Manager Denial of Service Vulnerability

CVE-2026-20805
MEDIUM 5.5 KEV Local

Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.

CVE-2024-43573
MEDIUM 6.5 KEV

Windows MSHTML Platform Spoofing Vulnerability

CVE-2024-38217
MEDIUM 5.4 KEV Network

Windows Mark of the Web Security Feature Bypass Vulnerability

CVE-2024-38213
MEDIUM 6.5 KEV

Windows Mark of the Web Security Feature Bypass Vulnerability

CVE-2023-24880
MEDIUM 4.4 KEV

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2022-44698
MEDIUM 5.4 KEV

Windows SmartScreen Security Feature Bypass Vulnerability

CVE-2022-41091
MEDIUM 5.4 KEV Network

Windows Mark of the Web Security Feature Bypass Vulnerability

CVE-2022-41049
MEDIUM 5.4 KEV Network

Windows Mark of the Web Security Feature Bypass Vulnerability

CVE-2013-3900
MEDIUM 5.5 KEV

WinVerifyTrust Signature Validation Vulnerability

CVE-2021-34448
MEDIUM 6.8 KEV Network

Scripting Engine Memory Corruption Vulnerability

CVE-2013-1675
MEDIUM 6.5 KEV Network 1 apps

Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data …