58.290 CVE tracked
789 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.290 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2022-21912 | HIGH 7.8 | microsoft windows_10 DirectX Graphics Kernel Remote Code Execution Vulnerability | 0.7% | — |
| CVE-2022-21910 | HIGH 7.8 | microsoft windows_server Microsoft Cluster Port Driver Elevation of Privilege Vulnerability | 0.6% | — |
| CVE-2022-21908 | HIGH 7.8 | microsoft windows_10 Windows Installer Elevation of Privilege Vulnerability | 0.9% | — |
| CVE-2022-21902 | HIGH 7.8 | microsoft windows_10 Windows DWM Core Library Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21898 | HIGH 7.8 | microsoft windows_10 DirectX Graphics Kernel Remote Code Execution Vulnerability | 2.4% | — |
| CVE-2022-21897 | HIGH 7.8 | microsoft windows_10 Windows Common Log File System Driver Elevation of Privilege Vulnerability | 1.1% | — |
| CVE-2022-21895 | HIGH 7.8 | microsoft windows_10 Windows User Profile Service Elevation of Privilege Vulnerability | 1.2% | — |
| CVE-2022-21888 | HIGH 7.8 | microsoft windows_10 Windows Modern Execution Server Remote Code Execution Vulnerability | 2.5% | — |
| CVE-2022-21885 | HIGH 7.8 | microsoft windows_10 Windows Remote Access Connection Manager Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21884 | HIGH 7.8 | microsoft windows_server Local Security Authority Subsystem Service Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21878 | HIGH 7.8 | microsoft windows_10 Windows Geolocation Service Remote Code Execution Vulnerability | 2.7% | — |
| CVE-2022-21874 | HIGH 7.8 | microsoft windows_10 Windows Security Center API Remote Code Execution Vulnerability | 2.3% | — |
| CVE-2022-21858 | HIGH 7.8 | microsoft windows_10 Windows Bind Filter Driver Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21852 | HIGH 7.8 | microsoft windows_10 Windows DWM Core Library Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21844 | HIGH 7.8 | microsoft hevc_video_extensions HEVC Video Extensions Remote Code Execution Vulnerability | 2.3% | — |
| CVE-2022-21842 | HIGH 7.8 | microsoft sharepoint_enterprise_server Microsoft Word Remote Code Execution Vulnerability | 2.3% | — |
| CVE-2022-21841 | HIGH 7.8 | microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability | 2.6% | — |
| CVE-2022-21836 | HIGH 7.8 | microsoft windows_10 Windows Certificate Spoofing Vulnerability | 0.7% | — |
| CVE-2022-21835 | HIGH 7.8 | microsoft windows_10 Microsoft Cryptographic Services Elevation of Privilege Vulnerability | 0.7% | — |
| CVE-2022-21833 | HIGH 7.8 | microsoft windows_10 Virtual Machine IDE Drive Elevation of Privilege Vulnerability | 0.6% | — |
| CVE-2022-21825 | HIGH 7.8 | citrix workspace An Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacker to perform local privilege escalation. | 0.2% | — |
| CVE-2022-21821 | HIGH 7.8 | nvidia cuda_toolkit NVIDIA CUDA Toolkit SDK contains an integer overflow vulnerability in cuobjdump.To exploit this vulnerability, a remote attacker would require a local user to download a specially crafted, corrupted file and locally execute cuobjdump against the file. Such an | 2.1% | — |
| CVE-2022-20929 | HIGH 7.8 | cisco enterprise_nfv_infrastructure_software A vulnerability in the upgrade signature verification of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, local attacker to provide an unauthentic upgrade file for upload. This vulnerability is due to insufficient cryptogr | 0.2% | — |
| CVE-2022-20818 | HIGH 7.8 | cisco sd-wan Multiple vulnerabilities in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. These vulnerabilities are due to improper access controls on commands within the application CLI. An attacker could exploit t | 0.6% | — |
| CVE-2022-20775 | HIGH 7.8 | cisco catalyst_sd-wan_manager A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. This vulnerability is due to improper access controls on commands within the application CLI. An attacker could exploit this vulner | 12.5% |