57.970 CVE tracked
784 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
57.970 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sorted descending |
|---|---|---|---|---|
| CVE-2023-32029 | HIGH 7.8 | microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability | 53.5% | — |
| CVE-2023-32028 | HIGH 7.8 | microsoft ole_db_driver_for_sql_server Microsoft SQL OLE DB Remote Code Execution Vulnerability | 0.7% | — |
| CVE-2023-32027 | HIGH 7.8 | microsoft odbc_driver_for_sql_server Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 0.6% | — |
| CVE-2023-32026 | HIGH 7.8 | microsoft odbc_driver_for_sql_server Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 0.7% | — |
| CVE-2023-32025 | HIGH 7.8 | microsoft odbc_driver_for_sql_server Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 0.6% | — |
| CVE-2023-32024 | LOW 3.0 | microsoft power_apps Microsoft Power Apps Spoofing Vulnerability | 1.5% | — |
| CVE-2023-32022 | HIGH 7.6 | microsoft windows_server_2012 Windows Server Service Security Feature Bypass Vulnerability | 0.8% | — |
| CVE-2023-32021 | HIGH 7.1 | microsoft windows_server_2012 Windows SMB Witness Service Security Feature Bypass Vulnerability | 1.2% | — |
| CVE-2023-32020 | MED 5.6 | microsoft windows_server_2008 Windows DNS Spoofing Vulnerability | 0.7% | — |
| CVE-2023-32019 | MED 4.7 | microsoft windows_10_1607 Windows Kernel Information Disclosure Vulnerability | 1.4% | — |
| CVE-2023-32018 | HIGH 7.8 | microsoft windows_11_22h2 Windows Hello Remote Code Execution Vulnerability | 0.7% | — |
| CVE-2023-32017 | HIGH 7.8 | microsoft windows_10_1507 Microsoft PostScript Printer Driver Remote Code Execution Vulnerability | 0.5% | — |
| CVE-2023-32016 | MED 5.5 | microsoft windows_10_1507 Windows Installer Information Disclosure Vulnerability | 0.7% | — |
| CVE-2023-32015 | CRIT 9.8 | microsoft windows_10_1507 Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability | 2.0% | — |
| CVE-2023-32014 | CRIT 9.8 | microsoft windows_10_1507 Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability | 1.9% | — |
| CVE-2023-32013 | MED 5.3 | microsoft windows_10_1809 Windows Hyper-V Denial of Service Vulnerability | 1.6% | — |
| CVE-2023-32012 | HIGH 7.8 | microsoft windows_10_21h2 Windows Container Manager Service Elevation of Privilege Vulnerability | 0.5% | — |
| CVE-2023-32011 | HIGH 7.5 | microsoft windows_10_1507 Windows iSCSI Discovery Service Denial of Service Vulnerability | 1.9% | — |
| CVE-2023-32010 | HIGH 7.0 | microsoft windows_11_22h2 Windows Bus Filter Driver Elevation of Privilege Vulnerability | 0.3% | — |
| CVE-2023-32009 | HIGH 8.8 | microsoft windows_10_1607 Windows Collaborative Translation Framework Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-32008 | HIGH 7.8 | microsoft windows_10_1507 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability | 0.7% | — |
| CVE-2023-32007 | HIGH 8.8 | apache spark ** UNSUPPORTED WHEN ASSIGNED ** The Apache Spark UI offers the possibility to enable ACLs via the configuration option spark.acls.enable. With an authentication filter, this checks whether a user has access permissions to view or modify the application. If ACL | 76.0% | — |
| CVE-2023-3181 | HIGH 7.8 | splashtop mirroring360_receiver The C:\Program Files (x86)\Splashtop\Splashtop Software Updater\uninst.exe process creates a folder at C:\Windows\Temp~nsu.tmp and copies itself to it as Au_.exe. The C:\Windows\Temp~nsu.tmp\Au_.exe file is automatically launched as SYSTEM when the system rebo | 0.2% | — |
| CVE-2023-3161 | MED 5.5 | fedoraproject fedora A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater than 32 to fbcon_set_font, since there are no checks in place, a shift-out-of-bounds occurs leading to undefined behavior and possible | 0.2% | — |
| CVE-2023-3159 | MED 6.7 | linux linux_kernel A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this flaw a local attacker with special privilege may cause a use after free problem when queue_event() fails. | 0.2% | — |