All apps
V
Latest versions
Stable
macOSWindowsLinux
1.136.1Actively exploited
0
CISA KEV
Affecting latest
0
v1.136.1
+15 unverified
Known CVEs
77
across all versions, as matched by PemSync
Last checked
6 Sep 2026, 0:15
Of 77 recorded CVEs, 62 are fixed in versions you're past. 15 could not be evaluated against 1.136.1 — treat them as unknown rather than resolved. They are listed first in the table below.
| CVE | Severity | EPSS pct | Status | Score source | |
|---|---|---|---|---|---|
| CRITICALvendor | 65% | Impact unverified | — | 8 Oct 2024 | |
| HIGHvendor | 79% | Impact unverified | — | 11 Oct 2022 | |
| — | 60% | Impact unverified | — | 13 Sep 2022 | |
| — | 47% | Impact unverified | — | 15 Apr 2022 | |
| — | 80% | Impact unverified | — | 9 Feb 2022 | |
| — | 85% | Impact unverified | — | 15 Dec 2021 | |
| — | 82% | Impact unverified | — | 15 Sep 2021 | |
| HIGHvendor | 87% | Impact unverified | — | 11 Mar 2021 | |
| — | 79% | Impact unverified | — | 25 Feb 2021 | |
| — | 89% | Impact unverified | — | 11 Nov 2020 | |
| — | 91% | Impact unverified | — | 16 Oct 2020 | |
| — | 88% | Impact unverified | — | 16 Oct 2020 | |
| CRITICALvendor | 90% | Impact unverified | Vendor advisory | 21 May 2020 | |
| — | 98% | Impact unverified | — | 5 Mar 2019 | |
| — | 92% | Impact unverified | — | 26 Jun 2018 | |
| HIGHvendor | 47% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 35% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 38% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 34% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 22% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 51% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 22% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGHvendor | 56% | Fixed in 1.135 | Vendor advisory | 11 Aug 2026 | |
| HIGH 8.8 | 55% | Fixed in 1.128.1 | Vendor advisory | 14 Jul 2026 | |
| HIGH 7.1 | 40% | Fixed in 1.128.1 | Vendor advisory | 14 Jul 2026 |
Showing 1–25 of 77
Page 1 of 4
PemSync reports known, cataloged exploited vulnerabilities (CISA KEV) and published CVEs. It is not a zero-day detection or threat-intelligence system — a vulnerability may be exploited before it appears here. Absence of data does not mean an app is secure.