57.469 CVE tracked
782 Exploited now
187 Used by ransomware
Last sync
CVE Tracker
57.469 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sorted ascending |
|---|---|---|---|---|
| CVE-2023-36403 | HIGH 7.0 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 0.5% | — |
| CVE-2023-36402 | HIGH 8.8 | microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1.8% | — |
| CVE-2023-36401 | HIGH 7.2 | microsoft windows_10_1507 Microsoft Remote Registry Service Remote Code Execution Vulnerability | 1.9% | — |
| CVE-2023-36400 | HIGH 8.8 | microsoft windows_10_1507 Windows HMAC Key Derivation Elevation of Privilege Vulnerability | 4.3% | — |
| CVE-2023-3640 | HIGH 7.0 | linux linux_kernel A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the previous CVE-2023-0597, the 'Randomize pe | 0.8% | — |
| CVE-2023-36399 | HIGH 7.1 | microsoft windows_11_21h2 Windows Storage Elevation of Privilege Vulnerability | 8.3% | — |
| CVE-2023-36398 | MED 6.5 | microsoft windows_10_1507 Windows NTFS Information Disclosure Vulnerability | 0.8% | — |
| CVE-2023-36397 | CRIT 9.8 | microsoft windows_10_1507 Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability | 17.5% | — |
| CVE-2023-36396 | HIGH 7.8 | microsoft windows_11_22h2 Windows Compressed Folder Remote Code Execution Vulnerability | 1.7% | — |
| CVE-2023-36395 | HIGH 7.5 | microsoft windows_server_2008 Windows Deployment Services Denial of Service Vulnerability | 2.5% | — |
| CVE-2023-36394 | HIGH 7.0 | microsoft windows_10_1507 Windows Search Service Elevation of Privilege Vulnerability | 6.7% | — |
| CVE-2023-36393 | HIGH 7.8 | microsoft windows_10_1507 Windows User Interface Application Core Remote Code Execution Vulnerability | 1.0% | — |
| CVE-2023-36392 | HIGH 7.5 | microsoft windows_server_2012 DHCP Server Service Denial of Service Vulnerability | 2.5% | — |
| CVE-2023-36391 | HIGH 7.8 | microsoft windows_11_23h2 Local Security Authority Subsystem Service Elevation of Privilege Vulnerability | 7.2% | — |
| CVE-2023-36388 | MED 4.3 | apache superset Improper REST API permission in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma users to test network connections, possible SSRF. | 0.8% | — |
| CVE-2023-36387 | MED 5.4 | apache superset An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections. | 0.8% | — |
| CVE-2023-3611 | HIGH 7.8 | debian debian_linux An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. The qfq_change_agg() function in net/sched/sch_qfq.c allows an out-of-bounds write because lmax is updated accordin | 0.3% | — |
| CVE-2023-3610 | HIGH 7.8 | debian debian_linux A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in the error handling of bound chains causes a use-after-free in the abort path of NFT_MSG_NEWRULE. The vulnerabil | 0.3% | — |
| CVE-2023-3609 | HIGH 7.8 | debian debian_linux A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrementing the re | 0.5% | — |
| CVE-2023-36052 | HIGH 8.6 | microsoft azure_command-line_interface Azure CLI REST Command Information Disclosure Vulnerability | 21.1% | — |
| CVE-2023-36050 | HIGH 8.0 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 39.2% | — |
| CVE-2023-36049 | HIGH 7.6 | microsoft .net .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability | 12.5% | — |
| CVE-2023-36047 | HIGH 7.8 | microsoft windows_10_1809 Windows Authentication Elevation of Privilege Vulnerability | 1.1% | — |
| CVE-2023-36046 | HIGH 7.1 | microsoft windows_11_21h2 Windows Authentication Denial of Service Vulnerability | 0.7% | — |
| CVE-2023-36045 | HIGH 7.8 | microsoft 365_apps Microsoft Office Graphics Remote Code Execution Vulnerability | 1.0% | — |