IT
57.056 CVE tracked
777 Exploited now
184 Used by ransomware
Last sync

CVE Tracker

57.056 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2025-21315 HIGH 7.8 microsoft windows_11_24h2 Microsoft Brokering File System Elevation of Privilege Vulnerability 0.6%
CVE-2025-21304 HIGH 7.8 microsoft windows_10_1607 Microsoft DWM Core Library Elevation of Privilege Vulnerability 0.6%
CVE-2025-21287 HIGH 7.8 microsoft windows_10_1507 Windows Installer Elevation of Privilege Vulnerability 0.5%
CVE-2025-21281 HIGH 7.8 microsoft windows_10_1507 Microsoft COM for Windows Elevation of Privilege Vulnerability 0.6%
CVE-2025-21275 HIGH 7.8 microsoft windows_10_21h2 Windows App Package Installer Elevation of Privilege Vulnerability 0.6%
CVE-2025-21271 HIGH 7.8 microsoft windows_10_1809 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability 0.5%
CVE-2025-21235 HIGH 7.8 microsoft windows_10_21h2 Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability 0.6%
CVE-2025-21234 HIGH 7.8 microsoft windows_10_21h2 Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability 0.6%
CVE-2025-21204 HIGH 7.8 microsoft windows_10_1507 Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally. 7.0%
CVE-2025-21187 HIGH 7.8 microsoft power_automate_for_desktop Microsoft Power Automate Remote Code Execution Vulnerability 0.7%
CVE-2025-21186 HIGH 7.8 microsoft 365_apps Microsoft Access Remote Code Execution Vulnerability 1.1%
CVE-2025-21180 HIGH 7.8 microsoft windows_10_1507 Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to execute code locally. 0.9%
CVE-2025-21163 HIGH 7.8 adobe illustrator Illustrator versions 29.1, 28.7.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim mu 0.4%
CVE-2025-21160 HIGH 7.8 adobe illustrator Illustrator versions 29.1, 28.7.3 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that 0.4%
CVE-2025-21159 HIGH 7.8 adobe illustrator Illustrator versions 29.1, 28.7.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mal 0.4%
CVE-2025-21158 HIGH 7.8 adobe indesign InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interactio 0.3%
CVE-2025-21157 HIGH 7.8 adobe indesign InDesign Desktop versions ID20.0, ID19.5.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim 0.3%
CVE-2025-21156 HIGH 7.8 adobe incopy InCopy versions 20.0, 19.5.1 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a vi 0.3%
CVE-2025-21135 HIGH 7.8 adobe animate Animate versions 24.0.6, 23.0.9 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a 0.3%
CVE-2025-21132 HIGH 7.8 adobe substance_3d_stager Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op 0.2%
CVE-2025-21131 HIGH 7.8 adobe substance_3d_stager Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op 0.2%
CVE-2025-21130 HIGH 7.8 adobe substance_3d_stager Substance3D - Stager versions 3.0.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op 0.2%
CVE-2025-21129 HIGH 7.8 adobe substance_3d_stager Substance3D - Stager versions 3.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim m 0.3%
CVE-2025-21128 HIGH 7.8 adobe substance_3d_stager Substance3D - Stager versions 3.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim 0.3%
CVE-2025-21127 HIGH 7.8 adobe photoshop Photoshop Desktop versions 25.12, 26.1 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could lead to arbitrary code execution. An attacker could manipulate the search path environment variable to point to a malicious library, 0.3%