IT
57.479 CVE tracked
782 Exploited now
187 Used by ransomware
Last sync

CVE Tracker

57.479 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sorted ascending
CVE-2023-36387 MED 5.4 apache superset An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections. 0.8%
CVE-2023-3611 HIGH 7.8 debian debian_linux An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. The qfq_change_agg() function in net/sched/sch_qfq.c allows an out-of-bounds write because lmax is updated accordin 0.3%
CVE-2023-3610 HIGH 7.8 debian debian_linux A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in the error handling of bound chains causes a use-after-free in the abort path of NFT_MSG_NEWRULE. The vulnerabil 0.3%
CVE-2023-3609 HIGH 7.8 debian debian_linux A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrementing the re 0.5%
CVE-2023-36052 HIGH 8.6 microsoft azure_command-line_interface Azure CLI REST Command Information Disclosure Vulnerability 21.1%
CVE-2023-36050 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability 39.2%
CVE-2023-36049 HIGH 7.6 microsoft .net .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability 12.5%
CVE-2023-36047 HIGH 7.8 microsoft windows_10_1809 Windows Authentication Elevation of Privilege Vulnerability 1.1%
CVE-2023-36046 HIGH 7.1 microsoft windows_11_21h2 Windows Authentication Denial of Service Vulnerability 0.7%
CVE-2023-36045 HIGH 7.8 microsoft 365_apps Microsoft Office Graphics Remote Code Execution Vulnerability 1.0%
CVE-2023-36043 MED 6.5 microsoft system_center_operations_manager Open Management Infrastructure Information Disclosure Vulnerability 1.4%
CVE-2023-36042 MED 6.2 microsoft visual_studio_2019 Visual Studio Denial of Service Vulnerability 0.8%
CVE-2023-36041 HIGH 7.8 microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability 56.7%
CVE-2023-36039 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability 73.0%
CVE-2023-36038 HIGH 8.2 microsoft asp.net_core ASP.NET Core Denial of Service Vulnerability 2.8%
CVE-2023-36037 HIGH 7.8 microsoft 365_apps Microsoft Excel Security Feature Bypass Vulnerability 1.2%
CVE-2023-36035 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability 86.6%
CVE-2023-36034 HIGH 7.3 microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability 2.7%
CVE-2023-36031 HIGH 7.6 microsoft dynamics_365 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability 0.9%
CVE-2023-36030 MED 6.1 microsoft dynamics_365 Microsoft Dynamics 365 Sales Spoofing Vulnerability 0.9%
CVE-2023-36029 MED 4.3 microsoft edge Microsoft Edge (Chromium-based) Spoofing Vulnerability 1.0%
CVE-2023-36028 CRIT 9.8 microsoft windows_10_1507 Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability 2.8%
CVE-2023-36027 HIGH 7.1 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 1.1%
CVE-2023-36026 MED 4.3 microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability 0.8%
CVE-2023-36024 HIGH 7.1 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 1.1%