1,619 totalEPSS avg 51.6%

KEVKnown Exploited Vulnerabilities

CISA’s actively-exploited catalogue · refreshed weekly · authored by Adam Lundqvist

Showing 1,619 of 1,619 · page 20 of 33

CVEVendor / ProductTitleKEV addedEPSS
CVE-2019-8720WebKitGTK / WebKitGTKWebKitGTK Memory Corruption Vulnerability2022-05-23
1.6%
CVE-2020-0638Microsoft / Update Notification ManagerMicrosoft Update Notification Manager Privilege Escalation Vulnerability2022-05-23
3.0%
CVE-2020-1027Microsoft / WindowsMicrosoft Windows Kernel Privilege Escalation Vulnerability2022-05-23
4.5%
CVE-2021-0920Android / KernelAndroid Kernel Race Condition Vulnerability2022-05-23
0.8%
CVE-2021-1048Android / KernelAndroid Kernel Use-After-Free Vulnerability2022-05-23
1.0%
CVE-2021-30883Apple / Multiple ProductsApple Multiple Products Memory Corruption Vulnerability2022-05-23
14.7%
CVE-2022-20821Cisco / IOS XRCisco IOS XR Open Port Vulnerability2022-05-23
11.8%
CVE-2022-22947VMware / Spring Cloud GatewayVMware Spring Cloud Gateway Code Injection Vulnerability2022-05-16
98.3%
CVE-2022-30525Zyxel / Multiple FirewallsZyxel Multiple Firewalls OS Command Injection Vulnerability2022-05-16
99.9%
CVE-2022-1388F5 / BIG-IPF5 BIG-IP Missing Authentication Vulnerability2022-05-10
100.0%
CVE-2014-0160OpenSSL / OpenSSLOpenSSL Information Disclosure Vulnerability2022-05-04
100.0%
CVE-2014-0322Microsoft / Internet ExplorerMicrosoft Internet Explorer Use-After-Free Vulnerability2022-05-04
85.2%
CVE-2014-4113Microsoft / Win32kMicrosoft Win32k Privilege Escalation Vulnerability2022-05-04
87.0%
CVE-2019-8506Apple / Multiple ProductsApple Multiple Products Type Confusion Vulnerability2022-05-04
18.2%
CVE-2021-1789Apple / Multiple ProductsApple Multiple Products Type Confusion Vulnerability2022-05-04
14.5%
CVE-2019-1003029Jenkins / Script Security PluginJenkins Script Security Plugin Sandbox Bypass Vulnerability2022-04-25
74.3%
CVE-2021-40450Microsoft / Win32kMicrosoft Win32k Privilege Escalation Vulnerability2022-04-25
2.0%
CVE-2021-41357Microsoft / Win32kMicrosoft Win32k Privilege Escalation Vulnerability2022-04-25
2.0%
CVE-2022-0847Linux / KernelLinux Kernel Privilege Escalation Vulnerability2022-04-25
89.1%
CVE-2022-21919Microsoft / WindowsMicrosoft Windows User Profile Service Privilege Escalation Vulnerability2022-04-25
2.9%
CVE-2022-26904Microsoft / WindowsMicrosoft Windows User Profile Service Privilege Escalation Vulnerability2022-04-25
9.7%
CVE-2022-29464WSO2 / Multiple ProductsWSO2 Multiple Products Unrestrictive Upload of File Vulnerability2022-04-25
100.0%
CVE-2018-6882Synacor / Zimbra Collaboration Suite (ZCS)Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerabi…2022-04-19
23.7%
CVE-2019-3568Meta Platforms / WhatsAppWhatsApp VOIP Stack Buffer Overflow Vulnerability2022-04-19
39.2%
CVE-2022-22718Microsoft / WindowsMicrosoft Windows Print Spooler Privilege Escalation Vulnerability2022-04-19
18.5%
CVE-2007-3010Alcatel / OmniPCX EnterpriseAlcatel OmniPCX Enterprise Remote Code Execution Vulnerability2022-04-15
97.4%
CVE-2010-5330Ubiquiti / AirOSUbiquiti AirOS Command Injection Vulnerability2022-04-15
34.0%
CVE-2014-0780InduSoft / Web StudioInduSoft Web Studio NTWebServer Directory Traversal Vulnerability2022-04-15
74.5%
CVE-2016-4523Trihedral / VTScada (formerly VTS)Trihedral VTScada (formerly VTS) Denial-of-Service Vulnerability2022-04-15
31.4%
CVE-2018-7841Schneider Electric / U.motion BuilderSchneider Electric U.motion Builder SQL Injection Vulnerability2022-04-15
72.5%
CVE-2019-16057D-Link / DNS-320 Storage DeviceD-Link DNS-320 Remote Code Execution Vulnerability2022-04-15
87.2%
CVE-2019-3929Crestron / Multiple ProductsCrestron Multiple Products Command Injection Vulnerability2022-04-15
99.0%
CVE-2022-1364Google / Chromium V8Google Chromium V8 Type Confusion Vulnerability2022-04-15
13.7%
CVE-2022-22960VMware / Multiple ProductsVMware Multiple Products Privilege Escalation Vulnerability2022-04-15
37.2%
CVE-2022-22954VMware / Workspace ONE Access and Identity ManagerVMware Workspace ONE Access and Identity Manager Server-Side Template Injecti…2022-04-14
100.0%
CVE-2014-9163Adobe / Flash PlayerAdobe Flash Player Stack-Based Buffer Overflow Vulnerability2022-04-13
20.4%
CVE-2015-0311Adobe / Flash PlayerAdobe Flash Player Remote Code Execution Vulnerability2022-04-13
85.8%
CVE-2015-0313Adobe / Flash PlayerAdobe Flash Player Use-After-Free Vulnerability2022-04-13
95.7%
CVE-2015-2502Microsoft / Internet ExplorerMicrosoft Internet Explorer Memory Corruption Vulnerability2022-04-13
51.1%
CVE-2015-3113Adobe / Flash PlayerAdobe Flash Player Heap-Based Buffer Overflow Vulnerability2022-04-13
99.9%
CVE-2015-5122Adobe / Flash PlayerAdobe Flash Player Use-After-Free Vulnerability2022-04-13
93.7%
CVE-2015-5123Adobe / Flash PlayerAdobe Flash Player Use-After-Free Vulnerability2022-04-13
18.5%
CVE-2018-20753Kaseya / Virtual System/Server Administrator (VSA)Kaseya VSA Remote Code Execution Vulnerability2022-04-13
29.6%
CVE-2018-7602Drupal / CoreDrupal Core Remote Code Execution Vulnerability2022-04-13
99.1%
CVE-2022-24521Microsoft / WindowsMicrosoft Windows CLFS Driver Privilege Escalation Vulnerability2022-04-13
7.3%
CVE-2017-11317Telerik / User Interface (UI) for ASP.NET AJAXTelerik UI for ASP.NET AJAX Unrestricted File Upload Vulnerability2022-04-11
83.5%
CVE-2020-2509QNAP / QNAP Network-Attached Storage (NAS)QNAP Network-Attached Storage (NAS) Command Injection Vulnerability2022-04-11
34.2%
CVE-2021-22600Linux / KernelLinux Kernel Privilege Escalation Vulnerability2022-04-11
5.9%
CVE-2021-27852Checkbox / Checkbox SurveyCheckbox Survey Deserialization of Untrusted Data Vulnerability2022-04-11
31.9%
CVE-2021-39793Google / PixelGoogle Pixel Out-of-Bounds Write Vulnerability2022-04-11
0.7%
Sourced from CISA Known Exploited Vulnerabilities — current weekly refresh. EPSS scores from FIRST.org via epss.cyentia.com. Curated by Adam Lundqvist, Founder at SQUR.