58.127 CVE tracked
788 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.127 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sorted ascending |
|---|---|---|---|---|
| CVE-2021-28554 | HIGH 7.8 | adobe acrobat Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitr | 46.0% | — |
| CVE-2021-28553 | HIGH 8.8 | adobe acrobat Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by an Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary | 3.5% | — |
| CVE-2021-28552 | HIGH 7.8 | adobe acrobat Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary | 4.7% | — |
| CVE-2021-28551 | HIGH 7.8 | adobe acrobat Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Out-of-bounds read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitr | 3.4% | — |
| CVE-2021-28549 | HIGH 7.8 | adobe photoshop Adobe Photoshop versions 21.2.6 (and earlier) and 22.3 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted JSX file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in | 6.5% | — |
| CVE-2021-28548 | HIGH 7.8 | adobe photoshop Adobe Photoshop versions 21.2.6 (and earlier) and 22.3 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially crafted JSX file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in | 6.4% | — |
| CVE-2021-28547 | HIGH 7.8 | adobe creative_cloud_desktop_application Adobe Creative Cloud Desktop Application for macOS version 5.3 (and earlier) is affected by a privilege escalation vulnerability that could allow a normal user to delete the OOBE directory and get permissions of any directory under the administrator authority. | 0.5% | — |
| CVE-2021-28546 | MED 6.5 | adobe acrobat Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are missing support for an integrity check. An unauthenticated attacker could leverage this vulnerability to modify content in a cer | 1.4% | — |
| CVE-2021-28545 | HIGH 8.1 | adobe acrobat Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are missing support for an integrity check. An unauthenticated attacker would have the ability to completely manipulate data in a ce | 2.3% | — |
| CVE-2021-28544 | MED 4.3 | apache subversion Apache Subversion SVN authz protected copyfrom paths regression Subversion servers reveal 'copyfrom' paths that should be hidden according to configured path-based authorization (authz) rules. When a node has been copied from a protected location, users with a | 2.8% | — |
| CVE-2021-28483 | CRIT 9.0 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 1.2% | — |
| CVE-2021-28482 | HIGH 8.8 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 83.2% | — |
| CVE-2021-28481 | CRIT 9.8 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 36.2% | — |
| CVE-2021-28480 | CRIT 9.8 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 71.2% | — |
| CVE-2021-28479 | MED 5.5 | microsoft windows_10 Windows CSC Service Information Disclosure Vulnerability | 0.8% | — |
| CVE-2021-28478 | HIGH 7.6 | microsoft sharepoint_foundation Microsoft SharePoint Server Spoofing Vulnerability | 1.6% | — |
| CVE-2021-28477 | HIGH 7.0 | microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability | 2.3% | — |
| CVE-2021-28476 | CRIT 9.9 | microsoft windows_10 Windows Hyper-V Remote Code Execution Vulnerability | 38.6% | — |
| CVE-2021-28475 | HIGH 7.8 | microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability | 2.7% | — |
| CVE-2021-28474 | HIGH 8.8 | microsoft sharepoint_foundation Microsoft SharePoint Server Remote Code Execution Vulnerability | 50.8% | — |
| CVE-2021-28473 | HIGH 7.8 | microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability | 2.7% | — |
| CVE-2021-28472 | HIGH 7.8 | microsoft vscode-maven Visual Studio Code Maven for Java Extension Remote Code Execution Vulnerability | 61.8% | — |
| CVE-2021-28471 | HIGH 7.8 | microsoft visual_studio_code Remote Development Extension for Visual Studio Code Remote Code Execution Vulnerability | 4.1% | — |
| CVE-2021-28470 | HIGH 7.8 | microsoft visual_studio_code_github_pull_requests_and_issues Visual Studio Code GitHub Pull Requests and Issues Extension Remote Code Execution Vulnerability | 2.3% | — |
| CVE-2021-28469 | HIGH 7.8 | microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability | 2.7% | — |