57.971 CVE tracked
788 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
57.971 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted ascending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2023-38176 | HIGH 7.0 | microsoft azure_arc-enabled_servers Azure Arc-Enabled Servers Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-38159 | HIGH 7.0 | microsoft windows_10_1507 Windows Graphics Component Elevation of Privilege Vulnerability | 5.6% | — |
| CVE-2023-38155 | HIGH 7.0 | microsoft azure_devops_server Azure DevOps Server Remote Code Execution Vulnerability | 1.3% | — |
| CVE-2023-38041 | HIGH 7.0 | ivanti secure_access_client A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized elevated privileges on the affected system. | 0.7% | — |
| CVE-2023-36902 | HIGH 7.0 | microsoft windows_10_1607 Windows Runtime Remote Code Execution Vulnerability | 0.6% | — |
| CVE-2023-36805 | HIGH 7.0 | microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability | 1.8% | — |
| CVE-2023-36776 | HIGH 7.0 | microsoft windows_10_1507 Win32k Elevation of Privilege Vulnerability | 2.4% | — |
| CVE-2023-36721 | HIGH 7.0 | microsoft windows_10_1809 Windows Error Reporting Service Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-36568 | HIGH 7.0 | microsoft 365_apps Microsoft Office Click-To-Run Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-36565 | HIGH 7.0 | microsoft 365_copilot Microsoft Office Graphics Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-36427 | HIGH 7.0 | microsoft windows_10_1809 Windows Hyper-V Elevation of Privilege Vulnerability | 1.5% | — |
| CVE-2023-36405 | HIGH 7.0 | microsoft windows_10_1607 Windows Kernel Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-36403 | HIGH 7.0 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 0.5% | — |
| CVE-2023-3640 | HIGH 7.0 | linux linux_kernel A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to memory, where a user may guess the location of exception stacks or other important data. Based on the previous CVE-2023-0597, the 'Randomize pe | 0.8% | — |
| CVE-2023-36394 | HIGH 7.0 | microsoft windows_10_1507 Windows Search Service Elevation of Privilege Vulnerability | 6.7% | — |
| CVE-2023-35829 | HIGH 7.0 | linux linux_kernel An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in rkvdec_remove in drivers/staging/media/rkvdec/rkvdec.c. | 0.4% | — |
| CVE-2023-35828 | HIGH 7.0 | linux linux_kernel An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in renesas_usb3_remove in drivers/usb/gadget/udc/renesas_usb3.c. | 0.5% | — |
| CVE-2023-35827 | HIGH 7.0 | linux linux_kernel An issue was discovered in the Linux kernel through 6.3.8. A use-after-free was found in ravb_remove in drivers/net/ethernet/renesas/ravb_main.c. | 0.2% | — |
| CVE-2023-35826 | HIGH 7.0 | linux linux_kernel An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging/media/sunxi/cedrus/cedrus.c. | 0.2% | — |
| CVE-2023-35824 | HIGH 7.0 | debian debian_linux An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in dm1105_remove in drivers/media/pci/dm1105/dm1105.c. | 0.2% | — |
| CVE-2023-35823 | HIGH 7.0 | debian debian_linux An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c. | 0.2% | — |
| CVE-2023-35378 | HIGH 7.0 | microsoft windows_10_1809 Windows Projected File System Elevation of Privilege Vulnerability | 0.4% | — |
| CVE-2023-35361 | HIGH 7.0 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 0.3% | — |
| CVE-2023-35360 | HIGH 7.0 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 0.3% | — |
| CVE-2023-3397 | HIGH 7.0 | linux linux_kernel A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different threads. This flaw allows a local attacker with normal user privileges to crash the system or leak internal kernel information. | 0.2% | — |