IT
58.306 CVE tracked
790 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sorted descending
CVE-2021-36954 HIGH 8.8 microsoft windows_10 Windows Bind Filter Driver Elevation of Privilege Vulnerability 0.5% —
CVE-2021-36953 HIGH 7.5 microsoft windows_10 Windows TCP/IP Denial of Service Vulnerability 5.0% —
CVE-2021-36952 HIGH 7.8 microsoft visual_studio_2017 Visual Studio Remote Code Execution Vulnerability 51.2% —
CVE-2021-36950 MED 5.4 microsoft dynamics_365 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability 1.0% —
CVE-2021-36949 HIGH 7.1 microsoft azure_active_directory_connect Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability 1.4% —
CVE-2021-36947 HIGH 8.8 microsoft windows_10 Windows Print Spooler Remote Code Execution Vulnerability 7.5% —
CVE-2021-36946 MED 5.4 microsoft dynamics_365_business_central Microsoft Dynamics Business Central Cross-site Scripting Vulnerability 1.0% —
CVE-2021-36945 HIGH 7.3 microsoft windows_10_update_assistant Windows 10 Update Assistant Elevation of Privilege Vulnerability 1.9% —
CVE-2021-36943 MED 4.0 microsoft azure_cyclecloud Azure CycleCloud Elevation of Privilege Vulnerability 0.8% —
CVE-2021-36941 HIGH 7.8 microsoft 365_apps Microsoft Word Remote Code Execution Vulnerability 2.2% —
CVE-2021-36940 HIGH 7.6 microsoft sharepoint_enterprise_server Microsoft SharePoint Server Spoofing Vulnerability 4.0% —
CVE-2021-36938 MED 5.5 microsoft windows_10 Windows Cryptographic Primitives Library Information Disclosure Vulnerability 0.9% —
CVE-2021-36937 HIGH 7.8 microsoft windows_10 Windows Media MPEG-4 Video Decoder Remote Code Execution Vulnerability 2.3% —
CVE-2021-36936 HIGH 8.8 microsoft windows_10 Windows Print Spooler Remote Code Execution Vulnerability 7.4% —
CVE-2021-36933 HIGH 7.5 microsoft windows_10 Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability 3.5% —
CVE-2021-36932 HIGH 7.5 microsoft windows_10 Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability 3.5% —
CVE-2021-36931 MED 4.4 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 1.3% —
CVE-2021-36930 MED 5.3 microsoft edge Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 1.1% —
CVE-2021-36929 MED 6.3 microsoft edge_chromium Microsoft Edge (Chromium-based) Information Disclosure Vulnerability 3.2% —
CVE-2021-36928 MED 6.0 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 0.9% —
CVE-2021-36927 HIGH 7.8 microsoft windows_7 Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability 0.5% —
CVE-2021-36926 HIGH 7.5 microsoft windows_10 Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability 3.5% —
CVE-2021-3679 MED 5.5 debian debian_linux A lack of CPU resource in the Linux kernel tracing module functionality in versions prior to 5.14-rc3 was found in the way user uses trace ring buffer in a specific way. Only privileged local users (with CAP_SYS_ADMIN capability) could use this flaw to starve 0.8% —
CVE-2021-36774 MED 6.5 apache kylin Apache Kylin allows users to read data from other database systems using JDBC. The MySQL JDBC driver supports certain properties, which, if left unmitigated, can allow an attacker to execute arbitrary code from a hacker-controlled malicious MySQL server within 1.9% —
CVE-2021-36749 MED 6.5 apache druid In the Druid ingestion system, the InputSource is used for reading data from a certain data source. However, the HTTP InputSource allows authenticated users to read data from other sources than intended, such as the local file system, with the privileges of th 80.9% —