IT
56.959 CVE tracked
777 Exploited now
183 Used by ransomware
Last sync

CVE Tracker

56.959 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sorted ascending
CVE-2025-21419 HIGH 7.1 microsoft windows_10_1507 Windows Setup Files Cleanup Elevation of Privilege Vulnerability 0.7%
CVE-2025-21417 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.2%
CVE-2025-21416 HIGH 8.5 microsoft azure_virtual_desktop Missing authorization in Azure Virtual Desktop allows an authorized attacker to elevate privileges over a network. 0.7%
CVE-2025-21415 CRIT 9.9 microsoft azure_ai_face_service Authentication bypass by spoofing in Azure AI Face Service allows an authorized attacker to elevate privileges over a network. 0.9%
CVE-2025-21414 HIGH 7.0 microsoft windows_10_1507 Windows Core Messaging Elevation of Privileges Vulnerability 0.6%
CVE-2025-21413 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.1%
CVE-2025-21411 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.1%
CVE-2025-21410 HIGH 8.8 microsoft windows_server_2008 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability 1.8%
CVE-2025-21409 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.1%
CVE-2025-21408 HIGH 8.8 microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability 1.3%
CVE-2025-21407 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.8%
CVE-2025-21406 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Service Remote Code Execution Vulnerability 1.8%
CVE-2025-21405 HIGH 7.3 microsoft visual_studio_2022 Visual Studio Elevation of Privilege Vulnerability 0.5%
CVE-2025-21404 MED 4.3 microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability 1.1%
CVE-2025-21403 MED 6.4 microsoft on-prem_data_gateway On-Premises Data Gateway Information Disclosure Vulnerability 0.6%
CVE-2025-21402 HIGH 7.8 microsoft office Microsoft Office OneNote Remote Code Execution Vulnerability 0.7%
CVE-2025-21401 MED 4.5 microsoft edge_chromium Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability 0.3%
CVE-2025-21400 HIGH 8.0 microsoft sharepoint_server Microsoft SharePoint Server Remote Code Execution Vulnerability 34.5%
CVE-2025-2140 MED 5.7 ibm engineering_requirements_management_doors_next IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to spoof email identity of the sender due to improper verification of source data. 0.1%
CVE-2025-21399 HIGH 7.4 microsoft edge_update Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability 0.7%
CVE-2025-21397 HIGH 7.8 microsoft 365_apps Microsoft Office Remote Code Execution Vulnerability 0.8%
CVE-2025-21396 HIGH 8.2 microsoft account Missing authorization in Microsoft Account allows an unauthorized attacker to elevate privileges over a network. 0.7%
CVE-2025-21395 HIGH 7.8 microsoft 365_apps Microsoft Access Remote Code Execution Vulnerability 1.0%
CVE-2025-21394 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 0.8%
CVE-2025-21393 MED 6.3 microsoft sharepoint_server Microsoft SharePoint Server Spoofing Vulnerability 1.1%