57.415 CVE tracked
782 Exploited now
187 Used by ransomware
Last sync
CVE Tracker
57.415 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sorted descending |
|---|---|---|---|---|
| CVE-2024-21323 | HIGH 8.8 | microsoft defender_for_iot Microsoft Defender for IoT Remote Code Execution Vulnerability | 3.2% | — |
| CVE-2024-21322 | HIGH 7.2 | microsoft defender_for_iot Microsoft Defender for IoT Remote Code Execution Vulnerability | 3.1% | — |
| CVE-2024-21320 | MED 6.5 | microsoft windows_10_1507 Windows Themes Spoofing Vulnerability | 22.8% | — |
| CVE-2024-21319 | MED 6.8 | microsoft .net Microsoft Identity Denial of service vulnerability | 2.9% | — |
| CVE-2024-21318 | HIGH 8.8 | microsoft sharepoint_server Microsoft SharePoint Server Remote Code Execution Vulnerability | 30.8% | — |
| CVE-2024-21317 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1.6% | — |
| CVE-2024-21316 | MED 6.1 | microsoft windows_10_1607 Windows Server Key Distribution Service Security Feature Bypass | 1.5% | — |
| CVE-2024-21315 | HIGH 7.8 | microsoft defender_for_endpoint Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability | 0.6% | — |
| CVE-2024-21314 | MED 6.5 | microsoft windows_10_1507 Microsoft Message Queuing Information Disclosure Vulnerability | 2.1% | — |
| CVE-2024-21313 | MED 5.3 | microsoft windows_10_1507 Windows TCP/IP Information Disclosure Vulnerability | 1.5% | — |
| CVE-2024-21312 | HIGH 7.5 | microsoft .net_framework .NET Framework Denial of Service Vulnerability | 3.6% | — |
| CVE-2024-21311 | MED 5.5 | microsoft windows_10_1507 Windows Cryptographic Services Information Disclosure Vulnerability | 0.8% | — |
| CVE-2024-21310 | HIGH 7.8 | microsoft windows_10_1809 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | 11.5% | — |
| CVE-2024-21309 | HIGH 7.8 | microsoft windows_11_21h2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability | 0.8% | — |
| CVE-2024-21308 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1.6% | — |
| CVE-2024-21307 | HIGH 7.5 | microsoft windows_10_1507 Remote Desktop Client Remote Code Execution Vulnerability | 2.0% | — |
| CVE-2024-21306 | MED 5.7 | microsoft windows_10_21h2 Microsoft Bluetooth Driver Spoofing Vulnerability | 5.8% | — |
| CVE-2024-21305 | MED 4.4 | microsoft windows_10_1809 Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability | 1.5% | — |
| CVE-2024-21304 | MED 4.1 | microsoft windows_10_1809 Trusted Compute Base Elevation of Privilege Vulnerability | 0.5% | — |
| CVE-2024-21303 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1.5% | — |
| CVE-2024-21302 | MED 6.7 | microsoft windows_10_1507 Summary: As of July 8, 2025 Microsoft has completed mitigations to address this vulnerability. See KB5042562: Guidance for blocking rollback of virtualization-based security related updates and the Recommended Actions section of this CVE for guidance on how to | 1.6% | — |
| CVE-2024-21116 | HIGH 7.8 | oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Orac | 0.4% | — |
| CVE-2024-21111 | HIGH 7.8 | oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Orac | 1.8% | — |
| CVE-2024-21107 | MED 6.7 | oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.16. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Ora | 0.4% | — |
| CVE-2024-20798 | MED 5.5 | adobe illustrator Illustrator versions 28.3, 27.9.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue re | 0.2% | — |