IT
56.960 CVE tracked
777 Exploited now
183 Used by ransomware
Last sync

CVE Tracker

56.960 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sorted ascending In KEV since, sort descending
CVE-2020-10742 MED 6.0 linux linux_kernel A flaw was found in the Linux kernel. An index buffer overflow during Direct IO write leading to the NFS client to crash. In some cases, a reach out of the index after one memory allocation by kmalloc will cause a kernel panic. The highest threat from this vul 0.3%
CVE-2019-5804 MED 5.5 google chrome Incorrect command line processing in Chrome in Google Chrome prior to 73.0.3683.75 allowed a local attacker to perform domain spoofing via a crafted domain name. 0.3%
CVE-2019-1810 MED 6.7 cisco nx-os A vulnerability in the Image Signature Verification feature used in an NX-OS CLI command in Cisco Nexus 3000 Series and 9000 Series Switches could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image 0.3%
CVE-2017-6874 HIGH 7.0 linux linux_kernel Race condition in kernel/ucount.c in the Linux kernel through 4.10.2 allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other impact via crafted system calls that leverage certain decrement behavior t 0.3%
CVE-2009-4895 MED 4.7 canonical ubuntu_linux Race condition in the tty_fasync function in drivers/char/tty_io.c in the Linux kernel before 2.6.32.6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via unknown vectors, re 0.3%
CVE-2026-9262 MED 6.5 canon eos_network_setting_tool Use of a non-secure protocol as the default FTP configuration in Canon EOS Network Setting Tool Version 1.5.0 or earlier 0.3%
CVE-2026-58637 HIGH 7.0 microsoft windows_10_1607 Use after free in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-58629 HIGH 7.0 microsoft windows_10_1607 Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-58619 HIGH 7.0 microsoft windows_10_1607 Use after free in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-58544 HIGH 7.0 microsoft windows_11_24h2 Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-56183 HIGH 7.0 microsoft windows_11_24h2 Use after free in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-56173 HIGH 7.0 microsoft windows_10_1809 Use after free in Windows WebView allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50449 HIGH 7.0 microsoft windows_10_1809 Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50410 HIGH 7.0 microsoft windows_10_1809 Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50397 HIGH 7.0 microsoft windows_10_1607 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50392 HIGH 7.0 microsoft windows_11_24h2 Use after free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50372 HIGH 7.0 microsoft windows_10_1607 Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50323 HIGH 7.0 microsoft windows_11_24h2 Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-50296 HIGH 7.0 microsoft windows_10_1607 Use after free in Graphics Kernel allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-49162 HIGH 7.0 microsoft windows_11_24h2 Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-48571 HIGH 7.0 microsoft windows_11_23h2 Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-47622 MED 5.3 nvidia dynamo NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of this vulnerability might lead to information disclosure. 0.3%
CVE-2026-3931 HIGH 8.8 google chrome Heap buffer overflow in Skia in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: Medium) 0.3%
CVE-2026-33771 HIGH 7.4 juniper ctp_operating_system A Weak Password Requirements vulnerability in the password management function of Juniper Networks CTP OS might allow an unauthenticated, network-based attacker to exploit weak passwords of local accounts and potentially take full control of the device. The p 0.3%
CVE-2026-30612 CRIT 9.8 An issue in Time4 Popcorn for Windows <= 6.2.1.18 and Time4Popcorn for MacOS <= 6.2.1.17 and Time4Popcorn for Android <= 3.5.0.173 allows a remote attacker to execute arbitrary code via the updater.exe for windows, PT.updd on MacOS components 0.3%