IT
56.960 CVE tracked
777 Exploited now
183 Used by ransomware
Last sync

CVE Tracker

56.960 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2024-31156 HIGH 8.0 f5 big-ip_access_policy_manager A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility that allows an attacker to run JavaScript in the context of the currently logged-in user.  Note: Software versions which have reached End of Te 0.6%
CVE-2024-30092 HIGH 8.0 microsoft windows_10_1507 Windows Hyper-V Remote Code Execution Vulnerability 0.7%
CVE-2024-30077 HIGH 8.0 microsoft windows_10_1507 Windows OLE Remote Code Execution Vulnerability 1.8%
CVE-2024-30075 HIGH 8.0 microsoft windows_server_2008 Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability 0.9%
CVE-2024-30074 HIGH 8.0 microsoft windows_server_2008 Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability 1.2%
CVE-2024-28925 HIGH 8.0 microsoft windows_10_1507 Secure Boot Security Feature Bypass Vulnerability 1.2%
CVE-2024-27398 HIGH 8.0 debian debian_linux In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout When the sco connection is established and then, the sco socket is releasing, timeout_work will be scheduled to judge whether th 0.8%
CVE-2024-26240 HIGH 8.0 microsoft windows_10_1507 Secure Boot Security Feature Bypass Vulnerability 1.1%
CVE-2024-26189 HIGH 8.0 microsoft windows_10_1507 Secure Boot Security Feature Bypass Vulnerability 1.4%
CVE-2024-26180 HIGH 8.0 microsoft windows_10_1507 Secure Boot Security Feature Bypass Vulnerability 1.5%
CVE-2024-23112 HIGH 8.0 fortinet fortios An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS version 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.1 through 7.0.13, 6.4.7 through 6.4.14, and FortiProxy version 7.4.0 through 7.4.2, 7.2.0 through 7.2.8, 7.0.0 through 0.7%
CVE-2024-21380 HIGH 8.0 microsoft dynamics_365_business_central Microsoft Dynamics Business Central/NAV Information Disclosure Vulnerability 1.7%
CVE-2024-20676 HIGH 8.0 microsoft azure_storage_mover Azure Storage Mover Remote Code Execution Vulnerability 2.6%
CVE-2024-20654 HIGH 8.0 microsoft windows_10_1507 Microsoft ODBC Driver Remote Code Execution Vulnerability 2.0%
CVE-2023-40273 HIGH 8.0 apache airflow The session fixation vulnerability allowed the authenticated user to continue accessing Airflow webserver even after the password of the user has been reset by the admin - up until the expiry of the session of the user. Other than manually cleaning the session 1.8%
CVE-2023-38182 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 5.9%
CVE-2023-36892 HIGH 8.0 microsoft sharepoint_server Microsoft SharePoint Server Spoofing Vulnerability 2.0%
CVE-2023-36891 HIGH 8.0 microsoft sharepoint_server Microsoft SharePoint Server Spoofing Vulnerability 2.0%
CVE-2023-36778 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 3.7%
CVE-2023-36757 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability 68.6%
CVE-2023-36756 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 74.7%
CVE-2023-36745 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 81.1%
CVE-2023-36744 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 81.7%
CVE-2023-36439 HIGH 8.0 microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability 4.9%
CVE-2023-36425 HIGH 8.0 microsoft windows_10_1507 Windows Distributed File System (DFS) Remote Code Execution Vulnerability 1.5%