| Vulnerability | Status | |||||
|---|---|---|---|---|---|---|
| in 13d2026-09-23 | CVE-2026-87491 | Google / Chromium V8 | Google Chromium V8 Out of Bounds Write Vulnerability | 2026-09-09 | 8.8 | active |
| in 2d2026-09-12 | CVE-2026-20079 | Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management | Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-09-09 | 10.0 | active |
| in 2d2026-09-12 | CVE-2026-19490 | Citrix / NetScaler | Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-09-09 | 9.3 | active |
| in 2d2026-09-12 | CVE-2025-25249 | Fortinet / Multiple Products | Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability | 2026-09-09 | 9.8 | active |
| in 1d2026-09-11 | CVE-2026-86218 | N-able / N-central | N-able N-central Static Code Injection Vulnerability | 2026-09-08 | 10.0 | active |
| in 12d2026-09-22 | CVE-2026-85880 | Microsoft / Windows | Microsoft Windows Heap-Based Buffer Overflow Vulnerability | 2026-09-08 | 7.8 | active |
| in 12d2026-09-22 | CVE-2026-81963 | Microsoft / Windows | Microsoft Windows Link Following Vulnerability | 2026-09-08 | 7.8 | active |
| in 1d2026-09-11 | CVE-2026-75650 | Adobe / Commerce and Magento | Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability | 2026-09-08 | 10.0 | active |
| in 8d2026-09-18 | CVE-2026-85046 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2026-09-04 | 8.8 | active |
| overdue 5d2026-09-05 | CVE-2026-9586 | Sangoma / Switchvox | Sangoma Switchvox SQL Injection Vulnerability | 2026-09-02 | 9.3 | past due |
| overdue 5d2026-09-05 | CVE-2026-83549 | SonicWall / SMA1000 Appliances | SonicWall SMA1000 Appliances OS Command Injection Vulnerability | 2026-09-02 | 7.8 | past due |
| overdue 5d2026-09-05 | CVE-2026-83548 | SonicWall / SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability | 2026-09-02 | 10.0 | past due |
| overdue 5d2026-09-05 | CVE-2026-82329 | JFrog / Artifactory | JFrog Artifactory Improper Authentication Vulnerability | 2026-09-02 | 9.8 | past due |
| in 6d2026-09-16 | CVE-2026-59822 | BerriAI / LiteLLM | BerriAI LiteLLM Improper Authentication Vulnerability | 2026-09-02 | 8.8 | active |
| overdue 5d2026-09-05 | CVE-2026-49869 | Kestra / Kestra OSS | Kestra OSS OS Command Injection Vulnerability | 2026-09-02 | 10.0 | past due |
| in 6d2026-09-16 | CVE-2026-48710 | Kludex / Starlette | Kludex Starlette HTTP Request/Response Smuggling Vulnerability | 2026-09-02 | 6.5 | active |
| in 4d2026-09-14 | CVE-2026-82078 | PaperCut / NG/MF | PaperCut NG/MF Unsafe Reflection Vulnerability | 2026-08-31 | 9.4 | active |
| in 4d2026-09-14 | CVE-2026-81578 | PaperCut / NG/MF | PaperCut NG/MF Missing Authentication for Critical Function Vulnerability | 2026-08-31 | 8.8 | active |
| in 0d2026-09-10 | CVE-2026-66384 | JFrog / Artifactory | JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability | 2026-08-27 | 5.3 | active |
| overdue 11d2026-08-30 | CVE-2026-53362 | Linux / Kernel | Linux Kernel Unspecified Vulnerability | 2026-08-27 | 7.8 | past due |
| overdue 11d2026-08-30 | CVE-2023-49105 | ownCloud / ownCloud | ownCloud Improper Authentication Vulnerability | 2026-08-27 | 9.8 | past due |
| overdue 12d2026-08-29 | CVE-2026-8452 | Citrix / NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability | 2026-08-26 | 8.8 | past due |
| overdue 1d2026-09-09 | CVE-2022-0995 | Linux / Kernel | Linux Kernel Out-of-Bounds Write Vulnerability | 2026-08-26 | 7.8 | past due |
| overdue 1d2026-09-09 | CVE-2021-23758 | Ajax.NET Professional / Ajax.NET Professional | Ajax.NET Professional Deserialization of Untrusted Data Vulnerability | 2026-08-26 | 9.8 | past due |
| overdue 12d2026-08-29 | CVE-2019-1068 | Microsoft / SQL Server | Microsoft SQL Server Remote Code Execution Vulnerability | 2026-08-26 | 8.8 | past due |
| overdue 1d2026-09-09 | CVE-2015-5287 | Red Hat / Automatic Bug Reporting Tool | Red Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability | 2026-08-26 | 7.8 | past due |
| overdue 1d2026-09-09 | CVE-2015-3246 | Red Hat / Libuser | Red Hat Libuser Race Condition Vulnerability | 2026-08-26 | 5.1 | past due |
| overdue 13d2026-08-28 | CVE-2026-60004 | Gitea / Gitea | Gitea Code Injection Vulnerability | 2026-08-25 | 9.8 | past due |
| overdue 14d2026-08-27 | CVE-2026-21962 | Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-in | Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability | 2026-08-24 | 10.0 | past due |
| overdue 17d2026-08-24 | CVE-2026-73570 | Synacor / Zimbra Collaboration Suite (ZCS) | Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability | 2026-08-21 | 8.9 | past due |
| overdue 7d2026-09-03 | CVE-2026-72530 | TrueConf / Server | TrueConf Server Code Injection Vulnerability | 2026-08-20 | 9.5 | past due |
| overdue 18d2026-08-23 | CVE-2026-72529 | TrueConf / Server | TrueConf Server Missing Authentication for Critical Function Vulnerability | 2026-08-20 | 9.3 | past due |
| overdue 8d2026-09-02 | CVE-2026-64849 | MLflow / MLflow | MLflow Server-Side Request Forgery Vulnerability | 2026-08-19 | 9.3 | past due |
| overdue 20d2026-08-21 | CVE-2026-65400 | Apple / macOS | Apple macOS Improper Authentication Vulnerability | 2026-08-18 | 9.8 | past due |
| overdue 20d2026-08-21 | CVE-2026-59310 | Broadcom / VMware vCenter | Broadcom VMware vCenter Path Traversal Vulnerability | 2026-08-18 | 9.8 | past due |
| overdue 20d2026-08-21 | CVE-2026-55040 | Microsoft / SharePoint | Microsoft SharePoint Weak Authentication Vulnerability | 2026-08-18 | 9.1 | past due |
| overdue 20d2026-08-21 | CVE-2026-33824 | Microsoft / Internet Key Exchange (IKE) Service Extensions | Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability | 2026-08-18 | 9.8 | past due |
| overdue 21d2026-08-20 | CVE-2025-62593 | Ray-Project / Ray | Ray-Project Ray Code Injection Vulnerability | 2026-08-17 | 9.4 | past due |
| overdue 27d2026-08-14 | CVE-2026-72898 | Metabase / Metabase | Metabase SQL Injection Vulnerability | 2026-08-11 | 10.0 | past due |
| overdue 16d2026-08-25 | CVE-2026-68820 | Microsoft / Windows Ancillary Function Driver for WinSock | Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability | 2026-08-11 | 7.0 | past due |
| overdue 27d2026-08-14 | CVE-2026-20349 | Cisco / Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) | Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability | 2026-08-11 | 8.6 | past due |
| overdue 31d2026-08-10 | CVE-2026-8037 | Progress / LoadMaster | Progress LoadMaster Command Injection Vulnerability | 2026-08-07 | 9.8 | past due |
| overdue 33d2026-08-08 | CVE-2026-63077 | JetBrains / TeamCity | JetBrains TeamCity Deserialization of Untrusted Data Vulnerability | 2026-08-05 | 9.8 | past due |
| overdue 34d2026-08-07 | CVE-2026-9198 | IBM / Langflow | IBM Langflow Code Injection Vulnerability | 2026-08-04 | 9.8 | past due |
| overdue 34d2026-08-07 | CVE-2026-34486 | Apache / Tomcat | Apache Tomcat Missing Encryption of Sensitive Data Vulnerability | 2026-08-04 | 7.5 | past due |
| overdue 34d2026-08-07 | CVE-2026-18556 | N-able / N-central | N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-08-04 | 8.2 | past due |
| overdue 35d2026-08-06 | CVE-2026-18577 | N-able / N-central | N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-08-03 | 8.2 | past due |
| overdue 40d2026-08-01 | CVE-2026-20316 | Cisco / Secure Firewall Management Center (FMC) | Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability | 2026-07-29 | 5.3 | past due |
| overdue 42d2026-07-30 | CVE-2026-16812 | Arista / VeloCloud Orchestrator | Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability | 2026-07-27 | 10.0 | past due |
| overdue 31d2026-08-10 | CVE-2025-68686 | Fortinet / FortiOS | Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability | 2026-07-27 | 5.9 | past due |
| overdue 47d2026-07-25 | CVE-2026-50522 | Microsoft / SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2026-07-22 | 9.8 | past due |
| overdue 47d2026-07-25 | CVE-2026-16232 | Check Point / SmartConsole | Check Point SmartConsole Improper Authentication Vulnerability | 2026-07-22 | 9.3 | past due |
| overdue 48d2026-07-24 | CVE-2026-63030 | WordPress / Core | WordPress Core Interpretation Conflict Vulnerability | 2026-07-21 | 9.8 | past due |
| overdue 37d2026-08-04 | CVE-2026-60137 | WordPress / Core | WordPress Core SQL Injection Vulnerability | 2026-07-21 | 5.9 | past due |
| overdue 48d2026-07-24 | CVE-2026-0770 | Langflow / Langflow | Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability | 2026-07-21 | 9.8 | past due |
| overdue 48d2026-07-24 | CVE-2021-27137 | DD-WRT / DD-WRT | DD-WRT Stack-Based Buffer Overflow Vulnerability | 2026-07-21 | 8.1 | past due |
| overdue 53d2026-07-19 | CVE-2026-58644 | Microsoft / SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2026-07-16 | 9.8 | past due |
| overdue 53d2026-07-19 | CVE-2026-39808 | Fortinet / FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | 9.8 | past due |
| overdue 53d2026-07-19 | CVE-2026-25089 | Fortinet / FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | 9.8 | past due |
| overdue 54d2026-07-18 | CVE-2026-46817 | Oracle / E-Business Suite | Oracle E-Business Suite Improper Privilege Management Vulnerability | 2026-07-15 | 9.8 | past due |
| overdue 43d2026-07-29 | CVE-2023-4346 | KNX Association / KNX Protocol Connection Authorization Option 1 | KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability | 2026-07-15 | 7.5 | past due |
| overdue 55d2026-07-17 | CVE-2026-56164 | Microsoft / SharePoint Server | Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability | 2026-07-14 | 9.8 | past due |
| overdue 44d2026-07-28 | CVE-2026-56155 | Microsoft / Active Directory Federation Services | Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability | 2026-07-14 | 7.8 | past due |
| overdue 55d2026-07-17 | CVE-2026-15410 | SonicWall / SMA1000 Appliances | SonicWall SMA1000 Appliances Code Injection Vulnerability | 2026-07-14 | 7.2 | past dueransomware |
| overdue 55d2026-07-17 | CVE-2026-15409 | SonicWall / SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability | 2026-07-14 | 10.0 | past dueransomware |
| overdue 56d2026-07-16 | CVE-2008-4128 | Cisco / IOS | Cisco IOS Cross-Site Request Forgery Vulnerability | 2026-07-13 | 4.3 | past due |
| overdue 59d2026-07-13 | CVE-2026-56291 | Balbooa / Forms | Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | 10.0 | past due |
| overdue 59d2026-07-13 | CVE-2026-48939 | iCagenda / iCagenda | iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | 10.0 | past due |
| overdue 62d2026-07-10 | CVE-2026-56290 | Joomlack / Page Builder | Joomlack Page Builder Improper Access Control Vulnerability | 2026-07-07 | 10.0 | past due |
| overdue 62d2026-07-10 | CVE-2026-55255 | Langflow / Langflow | Langflow Authorization Bypass Through User-Controlled Key Vulnerability | 2026-07-07 | 8.4 | past due |
| overdue 62d2026-07-10 | CVE-2026-48908 | JoomShaper / SP Page Builder | JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-07 | 10.0 | past due |
| overdue 62d2026-07-10 | CVE-2026-48282 | Adobe / ColdFusion | Adobe ColdFusion Path Traversal Vulnerability | 2026-07-07 | 10.0 | past due |
| overdue 68d2026-07-04 | CVE-2026-45659 | Microsoft / SharePoint Server | Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability | 2026-07-01 | 8.8 | past dueransomware |
| overdue 70d2026-07-02 | CVE-2026-48558 | SimpleHelp / SimpleHelp | SimpleHelp Authentication Bypass Vulnerability | 2026-06-29 | 9.5 | past due |
| overdue 74d2026-06-28 | CVE-2026-20230 | Cisco / Unified Communications Manager | Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability | 2026-06-25 | 8.6 | past due |
| overdue 74d2026-06-28 | CVE-2026-12569 | PTC / Windchill and FlexPLM | PTC Windchill and FlexPLM Improper Input Validation Vulnerability | 2026-06-25 | 9.3 | past dueransomware |
| overdue 76d2026-06-26 | CVE-2026-34910 | Ubiquiti / UniFi OS | Ubiquiti UniFi OS Improper Input Validation Vulnerability | 2026-06-23 | 10.0 | past due |
| overdue 76d2026-06-26 | CVE-2026-34909 | Ubiquiti / UniFi OS | Ubiquiti UniFi OS Path Traversal Vulnerability | 2026-06-23 | 10.0 | past due |
| overdue 76d2026-06-26 | CVE-2026-34908 | Ubiquiti / UniFi OS | Ubiquiti UniFi OS Improper Access Control Vulnerability | 2026-06-23 | 10.0 | past due |
| overdue 76d2026-06-26 | CVE-2025-67038 | Lantronix / EDS5000 | Lantronix EDS5000 Code Injection Vulnerability | 2026-06-23 | 9.8 | past due |
| overdue 81d2026-06-21 | CVE-2026-20253 | Splunk / Enterprise | Splunk Enterprise Missing Authentication for Critical Function Vulnerability | 2026-06-18 | 9.8 | past due |
| overdue 83d2026-06-19 | CVE-2026-48907 | Widget Factory / Joomla Content Editor | Widget Factory Joomla Content Editor Improper Access Control Vulnerability | 2026-06-16 | 10.0 | past due |
| overdue 84d2026-06-18 | CVE-2026-54420 | LiteSpeed / cPanel Plugin | LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability | 2026-06-15 | 8.5 | past due |
| overdue 73d2026-06-29 | CVE-2026-20262 | Cisco / Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability | 2026-06-15 | 6.5 | past due |
| overdue 87d2026-06-15 | CVE-2026-35273 | Oracle / PeopleSoft Enterprise PeopleTools | Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability | 2026-06-12 | 9.8 | past dueransomware |
| overdue 88d2026-06-14 | CVE-2026-10520 | Ivanti / Sentry | Ivanti Sentry OS Command Injection Vulnerability | 2026-06-11 | 10.0 | past due |
| overdue 79d2026-06-23 | CVE-2026-7473 | Arista / Extensible Operating System | Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability | 2026-06-09 | 6.9 | past due |
| overdue 79d2026-06-23 | CVE-2026-20245 | Cisco / Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability | 2026-06-09 | 7.8 | past due |
| overdue 79d2026-06-23 | CVE-2026-11645 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Read and Write Vulnerability | 2026-06-09 | 8.8 | past due |
| overdue 91d2026-06-11 | CVE-2026-50751 | Check Point / Security Gateway | Check Point Security Gateway Improper Authentication Vulnerability | 2026-06-08 | 9.3 | past dueransomware |
| overdue 80d2026-06-22 | CVE-2026-42271 | BerriAI / LiteLLM | BerriAI LiteLLM Command Injection Vulnerability | 2026-06-08 | 8.7 | past due |
| overdue 83d2026-06-19 | CVE-2026-28318 | SolarWinds / Serv-U | SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability | 2026-06-05 | 7.5 | past due |
| overdue 96d2026-06-06 | CVE-2026-45247 | Mirasvit / Mirasvit Full Page Cache Warmer | Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability | 2026-06-03 | 9.3 | past due |
| overdue 97d2026-06-05 | CVE-2025-48595 | Android / Framework | Android Framework Integer Overflow Vulnerability | 2026-06-02 | 8.4 | past due |
| overdue 97d2026-06-05 | CVE-2022-0492 | Linux / Kernel | Linux Kernel Improper Authentication Vulnerability | 2026-06-02 | 7.8 | past due |
| overdue 98d2026-06-04 | CVE-2024-21182 | Oracle / WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2026-06-01 | 7.5 | past due |
| overdue 101d2026-06-01 | CVE-2026-0257 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2026-05-29 | 7.8 | past dueransomware |
| overdue 103d2026-05-30 | CVE-2026-8398 | Daemon / Daemon Tools Lite | Daemon Tools Lite Embedded Malicious Code Vulnerability | 2026-05-27 | 9.3 | past due |
| overdue 92d2026-06-10 | CVE-2026-48027 | Nx / Nx Console | Nx Console Embedded Malicious Code Vulnerability | 2026-05-27 | 9.3 | past dueransomware |
| overdue 92d2026-06-10 | CVE-2026-45321 | TanStack / TanStack | TanStack Unspecified Vulnerability | 2026-05-27 | 9.6 | past dueransomware |
| overdue 104d2026-05-29 | CVE-2026-48172 | LiteSpeed / cPanel Plugin | LiteSpeed cPanel Plugin Privilege Escalation Vulnerability | 2026-05-26 | 10.0 | past due |
| overdue 106d2026-05-27 | CVE-2026-9082 | Drupal / Core | Drupal Core SQL Injection Vulnerability | 2026-05-22 | 9.8 | past due |
| overdue 98d2026-06-04 | CVE-2026-34926 | Trend Micro / Apex One | Trend Micro Apex One (On-Premise) Directory Traversal Vulnerability | 2026-05-21 | 6.7 | past due |
| overdue 98d2026-06-04 | CVE-2025-34291 | Langflow / Langflow | Langflow Origin Validation Error Vulnerability | 2026-05-21 | 9.4 | past due |
| overdue 99d2026-06-03 | CVE-2026-45498 | Microsoft / Defender | Microsoft Defender Denial of Service Vulnerability | 2026-05-20 | 7.5 | past due |
| overdue 99d2026-06-03 | CVE-2026-41091 | Microsoft / Defender | Microsoft Defender Link Following Vulnerability | 2026-05-20 | 7.8 | past due |
| overdue 99d2026-06-03 | CVE-2010-0806 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2026-05-20 | 8.8 | past due |
| overdue 99d2026-06-03 | CVE-2010-0249 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2026-05-20 | 8.8 | past due |
| overdue 99d2026-06-03 | CVE-2009-3459 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Heap-Based Buffer Overflow Vulnerability | 2026-05-20 | 8.8 | past due |
| overdue 99d2026-06-03 | CVE-2009-1537 | Microsoft / DirectX | Microsoft DirectX NULL Byte Overwrite Vulnerability | 2026-05-20 | 8.8 | past due |
| overdue 99d2026-06-03 | CVE-2008-4250 | Microsoft / Windows | Microsoft Windows Buffer Overflow Vulnerability | 2026-05-20 | 9.8 | past due |
| overdue 104d2026-05-29 | CVE-2026-42897 | Microsoft / Microsoft | Microsoft Exchange Server Cross-Site Scripting Vulnerability | 2026-05-15 | 6.1 | past due |
| overdue 116d2026-05-17 | CVE-2026-20182 | Cisco / Catalyst SD-WAN | Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability | 2026-05-14 | 10.0 | past due |
| overdue 122d2026-05-11 | CVE-2026-42208 | BerriAI / LiteLLM | BerriAI LiteLLM SQL Injection Vulnerability | 2026-05-08 | 9.3 | past due |
| overdue 123d2026-05-10 | CVE-2026-6973 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Improper Input Validation Vulnerability | 2026-05-07 | 7.2 | past due |
| overdue 124d2026-05-09 | CVE-2026-0300 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Out-of-bounds Write Vulnerability | 2026-05-06 | 9.3 | past due |
| overdue 118d2026-05-15 | CVE-2026-31431 | Linux / Kernel | Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability | 2026-05-01 | 7.8 | past due |
| overdue 130d2026-05-03 | CVE-2026-41940 | WebPros / cPanel & WHM and WP2 (WordPress Squared) | WebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability | 2026-04-30 | 9.3 | past dueransomware |
| overdue 121d2026-05-12 | CVE-2026-32202 | Microsoft / Windows | Microsoft Windows Protection Mechanism Failure Vulnerability | 2026-04-28 | 4.3 | past due |
| overdue 121d2026-05-12 | CVE-2024-1708 | ConnectWise / ScreenConnect | ConnectWise ScreenConnect Path Traversal Vulnerability | 2026-04-28 | 8.4 | past dueransomware |
| overdue 125d2026-05-08 | CVE-2025-29635 | D-Link / DIR-823X | D-Link DIR-823X Command Injection Vulnerability | 2026-04-24 | 7.2 | past due |
| overdue 125d2026-05-08 | CVE-2024-7399 | Samsung / MagicINFO 9 Server | Samsung MagicINFO 9 Server Path Traversal Vulnerability | 2026-04-24 | 9.8 | past due |
| overdue 125d2026-05-08 | CVE-2024-57728 | SimpleHelp / SimpleHelp | SimpleHelp Path Traversal Vulnerability | 2026-04-24 | 7.2 | past dueransomware |
| overdue 125d2026-05-08 | CVE-2024-57726 | SimpleHelp / SimpleHelp | SimpleHelp Missing Authorization Vulnerability | 2026-04-24 | 9.9 | past dueransomware |
| overdue 126d2026-05-07 | CVE-2026-39987 | Marimo / Marimo | Marimo Remote Code Execution Vulnerability | 2026-04-23 | 9.3 | past due |
| overdue 127d2026-05-06 | CVE-2026-33825 | Microsoft / Defender | Microsoft Defender Insufficient Granularity of Access Control Vulnerability | 2026-04-22 | 7.8 | past dueransomware |
| overdue 140d2026-04-23 | CVE-2026-20133 | Cisco / Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Exposure of Sensitive Information to an Unauthorized Actor Vulnerability | 2026-04-20 | 7.5 | past due |
| overdue 140d2026-04-23 | CVE-2026-20128 | Cisco / Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Storing Passwords in a Recoverable Format Vulnerability | 2026-04-20 | 7.5 | past due |
| overdue 140d2026-04-23 | CVE-2026-20122 | Cisco / Catalyst SD-WAN Manger | Cisco Catalyst SD-WAN Manager Incorrect Use of Privileged APIs Vulnerability | 2026-04-20 | 5.4 | past due |
| overdue 140d2026-04-23 | CVE-2025-48700 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-site Scripting Vulnerability | 2026-04-20 | 6.1 | past due |
| overdue 129d2026-05-04 | CVE-2025-32975 | Quest / KACE Systems Management Appliance (SMA) | Quest KACE Systems Management Appliance (SMA) Improper Authentication Vulnerability | 2026-04-20 | 10.0 | past due |
| overdue 129d2026-05-04 | CVE-2025-2749 | Kentico / Kentico Xperience | Kentico Xperience Path Traversal Vulnerability | 2026-04-20 | 7.2 | past due |
| overdue 129d2026-05-04 | CVE-2024-27199 | JetBrains / TeamCity | JetBrains TeamCity Relative Path Traversal Vulnerability | 2026-04-20 | 7.3 | past dueransomware |
| overdue 129d2026-05-04 | CVE-2023-27351 | PaperCut / NG/MF | PaperCut NG/MF Improper Authentication Vulnerability | 2026-04-20 | 7.5 | past dueransomware |
| overdue 133d2026-04-30 | CVE-2026-34197 | Apache / ActiveMQ | Apache ActiveMQ Improper Input Validation Vulnerability | 2026-04-16 | 8.8 | past due |
| overdue 135d2026-04-28 | CVE-2026-32201 | Microsoft / SharePoint Server | Microsoft SharePoint Server Improper Input Validation Vulnerability | 2026-04-14 | 6.5 | past due |
| overdue 135d2026-04-28 | CVE-2009-0238 | Microsoft / Office | Microsoft Office Remote Code Execution | 2026-04-14 | 8.8 | past due |
| overdue 136d2026-04-27 | CVE-2026-34621 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Prototype Pollution Vulnerability | 2026-04-13 | 8.6 | past due |
| overdue 147d2026-04-16 | CVE-2026-21643 | Fortinet / FortiClient EMS | Fortinet FortiClient EMS SQL Injection Vulnerability | 2026-04-13 | 9.8 | past due |
| overdue 136d2026-04-27 | CVE-2025-60710 | Microsoft / Windows | Microsoft Windows Link Following Vulnerability | 2026-04-13 | 7.8 | past dueransomware |
| overdue 136d2026-04-27 | CVE-2023-36424 | Microsoft / Windows | Microsoft Windows Out-of-Bounds Read Vulnerability | 2026-04-13 | 7.8 | past due |
| overdue 136d2026-04-27 | CVE-2023-21529 | Microsoft / Exchange Server | Microsoft Exchange Server Deserialization of Untrusted Data Vulnerability | 2026-04-13 | 8.8 | past dueransomware |
| overdue 136d2026-04-27 | CVE-2020-9715 | Adobe / Acrobat | Adobe Acrobat Use-After-Free Vulnerability | 2026-04-13 | 7.8 | past due |
| overdue 136d2026-04-27 | CVE-2012-1854 | Microsoft / Visual Basic for Applications (VBA) | Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability | 2026-04-13 | 7.8 | past due |
| overdue 152d2026-04-11 | CVE-2026-1340 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability | 2026-04-08 | 9.8 | past due |
| overdue 154d2026-04-09 | CVE-2026-35616 | Fortinet / FortiClient EMS | Fortinet FortiClient EMS Improper Access Control Vulnerability | 2026-04-06 | 9.8 | past due |
| overdue 147d2026-04-16 | CVE-2026-3502 | TrueConf / Client | TrueConf Client Download of Code Without Integrity Check Vulnerability | 2026-04-02 | 7.8 | past due |
| overdue 148d2026-04-15 | CVE-2026-5281 | Google / Dawn | Google Dawn Use-After-Free Vulnerability | 2026-04-01 | 8.8 | past due |
| overdue 161d2026-04-02 | CVE-2026-3055 | Citrix / NetScaler | Citrix NetScaler Out-of-Bounds Read Vulnerability | 2026-03-30 | 9.3 | past due |
| overdue 164d2026-03-30 | CVE-2025-53521 | F5 / BIG-IP | F5 BIG-IP Stack-Based Buffer Overflow Vulnerability | 2026-03-27 | 9.3 | past due |
| overdue 154d2026-04-09 | CVE-2026-33634 | Aquasecurity / Trivy | Aquasecurity Trivy Embedded Malicious Code Vulnerability | 2026-03-26 | 9.4 | past due |
| overdue 155d2026-04-08 | CVE-2026-33017 | Langflow / Langflow | Langflow Code Injection Vulnerability | 2026-03-25 | 9.3 | past due |
| overdue 160d2026-04-03 | CVE-2025-54068 | Laravel / Livewire | Laravel Livewire Code Injection Vulnerability | 2026-03-20 | 9.2 | past due |
| overdue 160d2026-04-03 | CVE-2025-43520 | Apple / Multiple Products | Apple Multiple Products Classic Buffer Overflow Vulnerability | 2026-03-20 | 5.5 | past due |
| overdue 160d2026-04-03 | CVE-2025-43510 | Apple / Multiple Products | Apple Multiple Products Improper Locking Vulnerability | 2026-03-20 | 7.8 | past due |
| overdue 160d2026-04-03 | CVE-2025-32432 | Craft CMS / Craft CMS | Craft CMS Code Injection Vulnerability | 2026-03-20 | 10.0 | past due |
| overdue 160d2026-04-03 | CVE-2025-31277 | Apple / Multiple Products | Apple Multiple Products Buffer Overflow Vulnerability | 2026-03-20 | 8.8 | past due |
| overdue 172d2026-03-22 | CVE-2026-20131 | Cisco / Secure Firewall Management Center (FMC) | Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management Deserialization of Untrusted Data Vulnerability | 2026-03-19 | 10.0 | past dueransomware |
| overdue 173d2026-03-21 | CVE-2026-20963 | Microsoft / SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2026-03-18 | 9.8 | past due |
| overdue 162d2026-04-01 | CVE-2025-66376 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting Vulnerability | 2026-03-18 | 6.1 | past due |
| overdue 164d2026-03-30 | CVE-2025-47813 | Wing FTP Server / Wing FTP Server | Wing FTP Server Information Disclosure Vulnerability | 2026-03-16 | 4.3 | past due |
| overdue 167d2026-03-27 | CVE-2026-3910 | Google / Chromium V8 | Google Chromium V8 Improper Restriction of Operations Within the Bounds of a Memory Buffer Vulnerability | 2026-03-13 | 8.8 | past due |
| overdue 167d2026-03-27 | CVE-2026-3909 | Google / Skia | Google Skia Out-of-Bounds Write Vulnerability | 2026-03-13 | 8.8 | past due |
| overdue 169d2026-03-25 | CVE-2025-68613 | n8n / n8n | n8n Improper Control of Dynamically-Managed Code Resources Vulnerability | 2026-03-11 | 8.8 | past due |
| overdue 171d2026-03-23 | CVE-2026-1603 | Ivanti / Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Authentication Bypass Vulnerability | 2026-03-09 | 7.5 | past due |
| overdue 182d2026-03-12 | CVE-2025-26399 | SolarWinds / Web Help Desk | SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability | 2026-03-09 | 9.8 | past dueransomware |
| overdue 171d2026-03-23 | CVE-2021-22054 | Omnissa / Workspace One UEM | Omnissa Workspace ONE Server-Side Request Forgery | 2026-03-09 | 7.5 | past due |
| overdue 168d2026-03-26 | CVE-2023-43000 | Apple / Multiple Products | Apple Multiple products Use-After-Free Vulnerability | 2026-03-05 | 8.8 | past due |
| overdue 168d2026-03-26 | CVE-2023-41974 | Apple / iOS and iPadOS | Apple iOS and iPadOS Use-After-Free Vulnerability | 2026-03-05 | 7.8 | past due |
| overdue 168d2026-03-26 | CVE-2021-30952 | Apple / Multiple Products | Apple Multiple Products Integer Overflow or Wraparound Vulnerability | 2026-03-05 | 7.8 | past due |
| overdue 168d2026-03-26 | CVE-2021-22681 | Rockwell / Multiple Products | Rockwell Multiple Products Insufficient Protected Credentials Vulnerability | 2026-03-05 | 9.8 | past due |
| overdue 168d2026-03-26 | CVE-2017-7921 | Hikvision / Multiple Products | Hikvision Multiple Products Improper Authentication Vulnerability | 2026-03-05 | 9.8 | past due |
| overdue 170d2026-03-24 | CVE-2026-22719 | Broadcom / VMware Aria Operations | Broadcom VMware Aria Operations Command Injection Vulnerability | 2026-03-03 | 8.1 | past due |
| overdue 170d2026-03-24 | CVE-2026-21385 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Memory Corruption Vulnerability | 2026-03-03 | 7.8 | past due |
| overdue 195d2026-02-27 | CVE-2026-20127 | Cisco / Catalyst SD-WAN Controller and Manager | Cisco Catalyst SD-WAN Controller and Manager Authentication Bypass Vulnerability | 2026-02-25 | 10.0 | past due |
| overdue 195d2026-02-27 | CVE-2022-20775 | Cisco / SD-WAN | Cisco SD-WAN Path Traversal Vulnerability | 2026-02-25 | 7.8 | past due |
| overdue 177d2026-03-17 | CVE-2026-25108 | Soliton Systems K.K / FileZen | Soliton Systems K.K FileZen OS Command Injection Vulnerability | 2026-02-24 | 8.7 | past due |
| overdue 181d2026-03-13 | CVE-2025-68461 | Roundcube / Webmail | RoundCube Webmail Cross-site Scripting Vulnerability | 2026-02-20 | 6.1 | past due |
| overdue 181d2026-03-13 | CVE-2025-49113 | Roundcube / Webmail | RoundCube Webmail Deserialization of Untrusted Data Vulnerability | 2026-02-20 | 8.8 | past due |
| overdue 201d2026-02-21 | CVE-2026-22769 | Dell / RecoverPoint for Virtual Machines (RP4VMs) | Dell RecoverPoint for Virtual Machines (RP4VMs) Use of Hard-coded Credentials Vulnerability | 2026-02-18 | 10.0 | past due |
| overdue 183d2026-03-11 | CVE-2021-22175 | GitLab / GitLab | GitLab Server-Side Request Forgery (SSRF) Vulnerability | 2026-02-18 | 9.8 | past due |
| overdue 184d2026-03-10 | CVE-2026-2441 | Google / Chromium | Google Chromium CSS Use-After-Free Vulnerability | 2026-02-17 | 8.8 | past due |
| overdue 184d2026-03-10 | CVE-2024-7694 | TeamT5 / ThreatSonar Anti-Ransomware | TeamT5 ThreatSonar Anti-Ransomware Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-02-17 | 7.2 | past due |
| overdue 184d2026-03-10 | CVE-2020-7796 | Synacor / Zimbra Collaboration Suite | Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability | 2026-02-17 | 9.8 | past due |
| overdue 184d2026-03-10 | CVE-2008-0015 | Microsoft / Windows | Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability | 2026-02-17 | 8.8 | past due |
| overdue 206d2026-02-16 | CVE-2026-1731 | BeyondTrust / Remote Support (RS) and Privileged Remote Access (PRA) | BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability | 2026-02-13 | 9.9 | past dueransomware |
| overdue 189d2026-03-05 | CVE-2026-20700 | Apple / Multiple Products | Apple Multiple Buffer Overflow Vulnerability | 2026-02-12 | 7.8 | past due |
| overdue 207d2026-02-15 | CVE-2025-40536 | SolarWinds / Web Help Desk | SolarWinds Web Help Desk Security Control Bypass Vulnerability | 2026-02-12 | 9.8 | past due |
| overdue 189d2026-03-05 | CVE-2025-15556 | Notepad++ / Notepad++ | Notepad++ Download of Code Without Integrity Check Vulnerability | 2026-02-12 | 7.7 | past due |
| overdue 189d2026-03-05 | CVE-2024-43468 | Microsoft / Configuration Manager | Microsoft Configuration Manager SQL Injection Vulnerability | 2026-02-12 | 9.8 | past due |
| overdue 191d2026-03-03 | CVE-2026-21533 | Microsoft / Windows | Microsoft Windows Improper Privilege Management Vulnerability | 2026-02-10 | 7.8 | past due |
| overdue 191d2026-03-03 | CVE-2026-21525 | Microsoft / Windows | Microsoft Windows NULL Pointer Dereference Vulnerability | 2026-02-10 | 6.2 | past due |
| overdue 191d2026-03-03 | CVE-2026-21519 | Microsoft / Windows | Microsoft Windows Type Confusion Vulnerability | 2026-02-10 | 7.8 | past due |
| overdue 191d2026-03-03 | CVE-2026-21514 | Microsoft / Office | Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability | 2026-02-10 | 7.8 | past due |
| overdue 191d2026-03-03 | CVE-2026-21513 | Microsoft / Windows | Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability | 2026-02-10 | 8.8 | past due |
| overdue 191d2026-03-03 | CVE-2026-21510 | Microsoft / Windows | Microsoft Windows Shell Protection Mechanism Failure Vulnerability | 2026-02-10 | 8.8 | past due |
| overdue 196d2026-02-26 | CVE-2026-24423 | SmarterTools / SmarterMail | SmarterTools SmarterMail Missing Authentication for Critical Function Vulnerability | 2026-02-05 | 9.3 | past dueransomware |
| overdue 196d2026-02-26 | CVE-2025-11953 | React Native Community / CLI | React Native Community CLI OS Command Injection Vulnerability | 2026-02-05 | 9.8 | past due |
| overdue 198d2026-02-24 | CVE-2025-64328 | Sangoma / FreePBX | Sangoma FreePBX OS Command Injection Vulnerability | 2026-02-03 | 8.6 | past due |
| overdue 216d2026-02-06 | CVE-2025-40551 | SolarWinds / Web Help Desk | SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability | 2026-02-03 | 9.8 | past due |
| overdue 198d2026-02-24 | CVE-2021-39935 | GitLab / Community and Enterprise Editions | GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability | 2026-02-03 | 7.5 | past due |
| overdue 198d2026-02-24 | CVE-2019-19006 | Sangoma / FreePBX | Sangoma FreePBX Improper Authentication Vulnerability | 2026-02-03 | 9.8 | past due |
| overdue 221d2026-02-01 | CVE-2026-1281 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability | 2026-01-29 | 9.8 | past due |
| overdue 223d2026-01-30 | CVE-2026-24858 | Fortinet / Multiple Products | Fortinet Multiple Products Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-01-27 | 9.8 | past due |
| overdue 206d2026-02-16 | CVE-2026-24061 | GNU / InetUtils | GNU InetUtils Argument Injection Vulnerability | 2026-01-26 | 9.8 | past due |
| overdue 206d2026-02-16 | CVE-2026-23760 | SmarterTools / SmarterMail | SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-01-26 | 9.3 | past dueransomware |
| overdue 206d2026-02-16 | CVE-2026-21509 | Microsoft / Office | Microsoft Office Security Feature Bypass Vulnerability | 2026-01-26 | 7.8 | past due |
| overdue 206d2026-02-16 | CVE-2025-52691 | SmarterTools / SmarterMail | SmarterTools SmarterMail Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-01-26 | 10.0 | past dueransomware |
| overdue 206d2026-02-16 | CVE-2018-14634 | Linux / Kernel | Linux Kernel Integer Overflow Vulnerability | 2026-01-26 | 7.8 | past due |
| overdue 209d2026-02-13 | CVE-2024-37079 | Broadcom / VMware vCenter Server | Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability | 2026-01-23 | 9.8 | past due |
| overdue 210d2026-02-12 | CVE-2025-68645 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) PHP Remote File Inclusion Vulnerability | 2026-01-22 | 8.8 | past due |
| overdue 210d2026-02-12 | CVE-2025-54313 | Prettier / eslint-config-prettier | Prettier eslint-config-prettier Embedded Malicious Code Vulnerability | 2026-01-22 | 7.5 | past due |
| overdue 210d2026-02-12 | CVE-2025-34026 | Versa / Concerto | Versa Concerto Improper Authentication Vulnerability | 2026-01-22 | 9.2 | past due |
| overdue 210d2026-02-12 | CVE-2025-31125 | Vite / Vitejs | Vite Vitejs Improper Access Control Vulnerability | 2026-01-22 | 7.5 | past due |
| overdue 211d2026-02-11 | CVE-2026-20045 | Cisco / Unified Communications Manager | Cisco Unified Communications Products Code Injection Vulnerability | 2026-01-21 | 9.8 | past due |
| overdue 219d2026-02-03 | CVE-2026-20805 | Microsoft / Windows | Microsoft Windows Information Disclosure Vulnerability | 2026-01-13 | 5.5 | past due |
| overdue 220d2026-02-02 | CVE-2025-8110 | Gogs / Gogs | Gogs Path Traversal Vulnerability | 2026-01-12 | 8.7 | past due |
| overdue 225d2026-01-28 | CVE-2025-37164 | Hewlett Packard Enterprise (HPE) / OneView | Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability | 2026-01-07 | 9.8 | past due |
| overdue 225d2026-01-28 | CVE-2009-0556 | Microsoft / Office | Microsoft Office PowerPoint Code Injection Vulnerability | 2026-01-07 | 8.8 | past due |
| overdue 234d2026-01-19 | CVE-2025-14847 | MongoDB / MongoDB and MongoDB Server | MongoDB and MongoDB Server Improper Handling of Length Parameter Inconsistency Vulnerability | 2025-12-29 | 8.7 | past due |
| overdue 241d2026-01-12 | CVE-2023-52163 | Digiever / DS-2105 Pro | Digiever DS-2105 Pro Missing Authorization Vulnerability | 2025-12-22 | 8.8 | past due |
| overdue 258d2025-12-26 | CVE-2025-14733 | WatchGuard / Firebox | WatchGuard Firebox Out of Bounds Write Vulnerability | 2025-12-19 | 9.3 | past dueransomware |
| overdue 246d2026-01-07 | CVE-2025-59374 | ASUS / Live Update | ASUS Live Update Embedded Malicious Code Vulnerability | 2025-12-17 | 9.3 | past due |
| overdue 260d2025-12-24 | CVE-2025-40602 | SonicWall / SMA1000 appliance | SonicWall SMA1000 Missing Authorization Vulnerability | 2025-12-17 | 6.6 | past due |
| overdue 260d2025-12-24 | CVE-2025-20393 | Cisco / Multiple Products | Cisco Multiple Products Improper Input Validation Vulnerability | 2025-12-17 | 10.0 | past due |
| overdue 261d2025-12-23 | CVE-2025-59718 | Fortinet / Multiple Products | Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability | 2025-12-16 | 9.8 | past due |
| overdue 248d2026-01-05 | CVE-2025-43529 | Apple / Multiple Products | Apple Multiple Products Use-After-Free WebKit Vulnerability | 2025-12-15 | 8.8 | past due |
| overdue 248d2026-01-05 | CVE-2025-14611 | Gladinet / CentreStack and Triofox | Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability | 2025-12-15 | 7.1 | past due |
| overdue 251d2026-01-02 | CVE-2025-14174 | Google / Chromium | Google Chromium Out of Bounds Memory Access Vulnerability | 2025-12-12 | 8.8 | past due |
| overdue 251d2026-01-02 | CVE-2018-4063 | Sierra Wireless / AirLink ALEOS | Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability | 2025-12-12 | 8.8 | past due |
| overdue 252d2026-01-01 | CVE-2025-58360 | OSGeo / GeoServer | OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability | 2025-12-11 | 9.8 | past due |
| overdue 254d2025-12-30 | CVE-2025-62221 | Microsoft / Windows | Microsoft Windows Use After Free Vulnerability | 2025-12-09 | 7.8 | past due |
| overdue 254d2025-12-30 | CVE-2025-6218 | RARLAB / WinRAR | RARLAB WinRAR Path Traversal Vulnerability | 2025-12-09 | 7.8 | past due |
| overdue 255d2025-12-29 | CVE-2025-66644 | Array Networks / ArrayOS AG | Array Networks ArrayOS AG OS Command Injection Vulnerability | 2025-12-08 | 9.8 | past due |
| overdue 255d2025-12-29 | CVE-2022-37055 | D-Link / Routers | D-Link Routers Buffer Overflow Vulnerability | 2025-12-08 | 9.8 | past due |
| overdue 272d2025-12-12 | CVE-2025-55182 | Meta / React Server Components | Meta React Server Components Remote Code Execution Vulnerability | 2025-12-05 | 10.0 | past dueransomware |
| overdue 260d2025-12-24 | CVE-2021-26828 | OpenPLC / ScadaBR | OpenPLC ScadaBR Unrestricted Upload of File with Dangerous Type Vulnerability | 2025-12-03 | 8.8 | past due |
| overdue 261d2025-12-23 | CVE-2025-48633 | Android / Framework | Android Framework Information Disclosure Vulnerability | 2025-12-02 | 5.5 | past due |
| overdue 261d2025-12-23 | CVE-2025-48572 | Android / Framework | Android Framework Privilege Escalation Vulnerability | 2025-12-02 | 7.8 | past due |
| overdue 265d2025-12-19 | CVE-2021-26829 | OpenPLC / ScadaBR | OpenPLC ScadaBR Cross-site Scripting Vulnerability | 2025-11-28 | 5.4 | past due |
| overdue 272d2025-12-12 | CVE-2025-61757 | Oracle / Fusion Middleware | Oracle Fusion Middleware Missing Authentication for Critical Function Vulnerability | 2025-11-21 | 9.8 | past due |
| overdue 274d2025-12-10 | CVE-2025-13223 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-11-19 | 8.8 | past due |
| overdue 289d2025-11-25 | CVE-2025-58034 | Fortinet / FortiWeb | Fortinet FortiWeb OS Command Injection Vulnerability | 2025-11-18 | 7.2 | past due |
| overdue 293d2025-11-21 | CVE-2025-64446 | Fortinet / FortiWeb | Fortinet FortiWeb Path Traversal Vulnerability | 2025-11-14 | 9.8 | past due |
| overdue 281d2025-12-03 | CVE-2025-9242 | WatchGuard / Firebox | WatchGuard Firebox Out-of-Bounds Write Vulnerability | 2025-11-12 | 9.3 | past due |
| overdue 281d2025-12-03 | CVE-2025-62215 | Microsoft / Windows | Microsoft Windows Race Condition Vulnerability | 2025-11-12 | 7.0 | past due |
| overdue 281d2025-12-03 | CVE-2025-12480 | Gladinet / Triofox | Gladinet Triofox Improper Access Control Vulnerability | 2025-11-12 | 9.1 | past due |
| overdue 283d2025-12-01 | CVE-2025-21042 | Samsung / Mobile Devices | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-11-10 | 9.8 | past due |
| overdue 289d2025-11-25 | CVE-2025-48703 | CWP / Control Web Panel | CWP Control Web Panel OS Command Injection Vulnerability | 2025-11-04 | 9.0 | past due |
| overdue 289d2025-11-25 | CVE-2025-11371 | Gladinet / CentreStack and Triofox | Gladinet CentreStack and Triofox Files or Directories Accessible to External Parties Vulnerability | 2025-11-04 | 7.5 | past due |
| overdue 294d2025-11-20 | CVE-2025-41244 | Broadcom / VMware Aria Operations and VMware Tools | Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe Actions Vulnerability | 2025-10-30 | 7.8 | past due |
| overdue 294d2025-11-20 | CVE-2025-24893 | XWiki / Platform | XWiki Platform Eval Injection Vulnerability | 2025-10-30 | 9.8 | past due |
| overdue 296d2025-11-18 | CVE-2025-6205 | Dassault Systèmes / DELMIA Apriso | Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability | 2025-10-28 | 9.1 | past due |
| overdue 296d2025-11-18 | CVE-2025-6204 | Dassault Systèmes / DELMIA Apriso | Dassault Systèmes DELMIA Apriso Code Injection Vulnerability | 2025-10-28 | 8.0 | past due |
| overdue 300d2025-11-14 | CVE-2025-59287 | Microsoft / Windows | Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability | 2025-10-24 | 9.8 | past due |
| overdue 300d2025-11-14 | CVE-2025-54236 | Adobe / Commerce and Magento | Adobe Commerce and Magento Improper Input Validation Vulnerability | 2025-10-24 | 9.1 | past due |
| overdue 302d2025-11-12 | CVE-2025-61932 | Motex / LANSCOPE Endpoint Manager | Motex LANSCOPE Endpoint Manager Improper Verification of Source of a Communication Channel Vulnerability | 2025-10-22 | 9.3 | past due |
| overdue 304d2025-11-10 | CVE-2025-61884 | Oracle / E-Business Suite | Oracle E-Business Suite Server-Side Request Forgery (SSRF) Vulnerability | 2025-10-20 | 7.5 | past dueransomware |
| overdue 304d2025-11-10 | CVE-2025-33073 | Microsoft / Windows | Microsoft Windows SMB Client Improper Access Control Vulnerability | 2025-10-20 | 8.8 | past due |
| overdue 304d2025-11-10 | CVE-2025-2747 | Kentico / Xperience CMS | Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2025-10-20 | 9.8 | past due |
| overdue 304d2025-11-10 | CVE-2025-2746 | Kentico / Xperience CMS | Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2025-10-20 | 9.8 | past due |
| overdue 304d2025-11-10 | CVE-2022-48503 | Apple / Multiple Products | Apple Multiple Products Unspecified Vulnerability | 2025-10-20 | 8.8 | past due |
| overdue 309d2025-11-05 | CVE-2025-54253 | Adobe / Experience Manager (AEM) Forms | Adobe Experience Manager Forms Code Execution Vulnerability | 2025-10-15 | 10.0 | past due |
| overdue 310d2025-11-04 | CVE-2025-59230 | Microsoft / Windows | Microsoft Windows Improper Access Control Vulnerability | 2025-10-14 | 7.8 | past due |
| overdue 310d2025-11-04 | CVE-2025-47827 | IGEL / IGEL OS | IGEL OS Use of a Key Past its Expiration Date Vulnerability | 2025-10-14 | 4.6 | past due |
| overdue 310d2025-11-04 | CVE-2025-24990 | Microsoft / Windows | Microsoft Windows Untrusted Pointer Dereference Vulnerability | 2025-10-14 | 7.8 | past due |
| overdue 310d2025-11-04 | CVE-2016-7836 | SKYSEA / Client View | SKYSEA Client View Improper Authentication Vulnerability | 2025-10-14 | 9.8 | past due |
| overdue 315d2025-10-30 | CVE-2021-43798 | Grafana Labs / Grafana | Grafana Path Traversal Vulnerability | 2025-10-09 | 7.5 | past due |
| overdue 317d2025-10-28 | CVE-2025-27915 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-site Scripting Vulnerability | 2025-10-07 | 5.4 | past due |
| overdue 318d2025-10-27 | CVE-2025-61882 | Oracle / E-Business Suite | Oracle E-Business Suite Unspecified Vulnerability | 2025-10-06 | 9.8 | past dueransomware |
| overdue 318d2025-10-27 | CVE-2021-43226 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2025-10-06 | 7.8 | past dueransomware |
| overdue 318d2025-10-27 | CVE-2021-22555 | Linux / Kernel | Linux Kernel Heap Out-of-Bounds Write Vulnerability | 2025-10-06 | 7.8 | past due |
| overdue 318d2025-10-27 | CVE-2013-3918 | Microsoft / Windows | Microsoft Windows Out-of-Bounds Write Vulnerability | 2025-10-06 | 8.8 | past due |
| overdue 318d2025-10-27 | CVE-2011-3402 | Microsoft / Windows | Microsoft Windows Remote Code Execution Vulnerability | 2025-10-06 | 8.8 | past due |
| overdue 318d2025-10-27 | CVE-2010-3962 | Microsoft / Internet Explorer | Microsoft Internet Explorer Uninitialized Memory Corruption Vulnerability | 2025-10-06 | 8.1 | past due |
| overdue 318d2025-10-27 | CVE-2010-3765 | Mozilla / Multiple Products | Mozilla Multiple Products Remote Code Execution Vulnerability | 2025-10-06 | 9.8 | past due |
| overdue 322d2025-10-23 | CVE-2025-4008 | Smartbedded / Meteobridge | Smartbedded Meteobridge Command Injection Vulnerability | 2025-10-02 | 8.7 | past due |
| overdue 322d2025-10-23 | CVE-2025-21043 | Samsung / Mobile Devices | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-10-02 | 9.8 | past due |
| overdue 322d2025-10-23 | CVE-2017-1000353 | Jenkins / Jenkins | Jenkins Remote Code Execution Vulnerability | 2025-10-02 | 9.8 | past due |
| overdue 322d2025-10-23 | CVE-2015-7755 | Juniper / ScreenOS | Juniper ScreenOS Improper Authentication Vulnerability | 2025-10-02 | 9.8 | past due |
| overdue 322d2025-10-23 | CVE-2014-6278 | GNU / GNU Bash | GNU Bash OS Command Injection Vulnerability | 2025-10-02 | 8.8 | past due |
| overdue 325d2025-10-20 | CVE-2025-59689 | Libraesva / Email Security Gateway | Libraesva Email Security Gateway Command Injection Vulnerability | 2025-09-29 | 6.1 | past due |
| overdue 325d2025-10-20 | CVE-2025-32463 | Sudo / Sudo | Sudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability | 2025-09-29 | 7.8 | past due |
| overdue 325d2025-10-20 | CVE-2025-20352 | Cisco / IOS and IOS XE | Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution Vulnerability | 2025-09-29 | 7.7 | past due |
| overdue 325d2025-10-20 | CVE-2025-10035 | Fortra / GoAnywhere MFT | Fortra GoAnywhere MFT Deserialization of Untrusted Data Vulnerability | 2025-09-29 | 9.8 | past dueransomware |
| overdue 325d2025-10-20 | CVE-2021-21311 | Adminer / Adminer | Adminer Server-Side Request Forgery Vulnerability | 2025-09-29 | 7.2 | past due |
| overdue 349d2025-09-26 | CVE-2025-20362 | Cisco / Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense | Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing Authorization Vulnerability | 2025-09-25 | 8.6 | past due |
| overdue 349d2025-09-26 | CVE-2025-20333 | Cisco / Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense | Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer Overflow Vulnerability | 2025-09-25 | 9.9 | past due |
| overdue 331d2025-10-14 | CVE-2025-10585 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-09-23 | 9.8 | past due |
| overdue 343d2025-10-02 | CVE-2025-5086 | Dassault Systèmes / DELMIA Apriso | Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability | 2025-09-11 | 9.0 | past due |
| overdue 350d2025-09-25 | CVE-2025-53690 | Sitecore / Multiple Products | Sitecore Multiple Products Deserialization of Untrusted Data Vulnerability | 2025-09-04 | 9.0 | past due |
| overdue 350d2025-09-25 | CVE-2025-48543 | Android / Runtime | Android Runtime Use-After-Free Vulnerability | 2025-09-04 | 8.8 | past due |
| overdue 350d2025-09-25 | CVE-2025-38352 | Linux / Kernel | Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability | 2025-09-04 | 7.8 | past due |
| overdue 351d2025-09-24 | CVE-2025-9377 | TP-Link / Multiple Routers | TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability | 2025-09-03 | 8.6 | past due |
| overdue 351d2025-09-24 | CVE-2023-50224 | TP-Link / TL-WR841N | TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability | 2025-09-03 | 6.5 | past due |
| overdue 352d2025-09-23 | CVE-2025-55177 | Meta Platforms / WhatsApp | Meta Platforms WhatsApp Incorrect Authorization Vulnerability | 2025-09-02 | 5.4 | past due |
| overdue 352d2025-09-23 | CVE-2020-24363 | TP-Link / TL-WA855RE | TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability | 2025-09-02 | 8.8 | past due |
| overdue 356d2025-09-19 | CVE-2025-57819 | Sangoma / FreePBX | Sangoma FreePBX Authentication Bypass Vulnerability | 2025-08-29 | 10.0 | past due |
| overdue 378d2025-08-28 | CVE-2025-7775 | Citrix / NetScaler | Citrix NetScaler Memory Overflow Vulnerability | 2025-08-26 | 9.2 | past due |
| overdue 360d2025-09-15 | CVE-2025-48384 | Git / Git | Git Link Following Vulnerability | 2025-08-25 | 8.0 | past due |
| overdue 360d2025-09-15 | CVE-2024-8069 | Citrix / Session Recording | Citrix Session Recording Deserialization of Untrusted Data Vulnerability | 2025-08-25 | 5.1 | past due |
| overdue 360d2025-09-15 | CVE-2024-8068 | Citrix / Session Recording | Citrix Session Recording Improper Privilege Management Vulnerability | 2025-08-25 | 5.1 | past due |
| overdue 364d2025-09-11 | CVE-2025-43300 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability | 2025-08-21 | 10.0 | past due |
| overdue 367d2025-09-08 | CVE-2025-54948 | Trend Micro / Apex One | Trend Micro Apex One OS Command Injection Vulnerability | 2025-08-18 | 9.8 | past due |
| overdue 386d2025-08-20 | CVE-2025-8876 | N-able / N-Central | N-able N-Central Command Injection Vulnerability | 2025-08-13 | 9.4 | past due |
| overdue 386d2025-08-20 | CVE-2025-8875 | N-able / N-Central | N-able N-Central Insecure Deserialization Vulnerability | 2025-08-13 | 9.4 | past due |
| overdue 373d2025-09-02 | CVE-2025-8088 | RARLAB / WinRAR | RARLAB WinRAR Path Traversal Vulnerability | 2025-08-12 | 8.4 | past dueransomware |
| overdue 373d2025-09-02 | CVE-2013-3893 | Microsoft / Internet Explorer | Microsoft Internet Explorer Resource Management Errors Vulnerability | 2025-08-12 | 8.8 | past due |
| overdue 373d2025-09-02 | CVE-2007-0671 | Microsoft / Office | Microsoft Office Excel Remote Code Execution Vulnerability | 2025-08-12 | 8.8 | past due |
| overdue 380d2025-08-26 | CVE-2022-40799 | D-Link / DNR-322L | D-Link DNR-322L Download of Code Without Integrity Check Vulnerability | 2025-08-05 | 8.8 | past due |
| overdue 380d2025-08-26 | CVE-2020-25079 | D-Link / DCS-2530L and DCS-2670L Devices | D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability | 2025-08-05 | 8.8 | past due |
| overdue 380d2025-08-26 | CVE-2020-25078 | D-Link / DCS-2530L and DCS-2670L Devices | D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability | 2025-08-05 | 7.5 | past due |
| overdue 388d2025-08-18 | CVE-2025-20337 | Cisco / Identity Services Engine | Cisco Identity Services Engine Injection Vulnerability | 2025-07-28 | 10.0 | past due |
| overdue 388d2025-08-18 | CVE-2025-20281 | Cisco / Identity Services Engine | Cisco Identity Services Engine Injection Vulnerability | 2025-07-28 | 10.0 | past due |
| overdue 388d2025-08-18 | CVE-2023-2533 | PaperCut / NG/MF | PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability | 2025-07-28 | 8.8 | past due |
| overdue 394d2025-08-12 | CVE-2025-6558 | Google / Chromium | Google Chromium ANGLE and GPU Improper Input Validation Vulnerability | 2025-07-22 | 8.8 | past due |
| overdue 394d2025-08-12 | CVE-2025-54309 | CrushFTP / CrushFTP | CrushFTP Unprotected Alternate Channel Vulnerability | 2025-07-22 | 9.8 | past due |
| overdue 414d2025-07-23 | CVE-2025-49706 | Microsoft / SharePoint | Microsoft SharePoint Improper Authentication Vulnerability | 2025-07-22 | 6.5 | past dueransomware |
| overdue 414d2025-07-23 | CVE-2025-49704 | Microsoft / SharePoint | Microsoft SharePoint Code Injection Vulnerability | 2025-07-22 | 8.8 | past dueransomware |
| overdue 394d2025-08-12 | CVE-2025-2776 | SysAid / SysAid On-Prem | SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability | 2025-07-22 | 9.8 | past due |
| overdue 394d2025-08-12 | CVE-2025-2775 | SysAid / SysAid On-Prem | SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability | 2025-07-22 | 7.5 | past due |
| overdue 416d2025-07-21 | CVE-2025-53770 | Microsoft / SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2025-07-20 | 9.8 | past dueransomware |
| overdue 398d2025-08-08 | CVE-2025-25257 | Fortinet / FortiWeb | Fortinet FortiWeb SQL Injection Vulnerability | 2025-07-18 | 9.8 | past due |
| overdue 402d2025-08-04 | CVE-2025-47812 | Wing FTP Server / Wing FTP Server | Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability | 2025-07-14 | 10.0 | past due |
| overdue 426d2025-07-11 | CVE-2025-5777 | Citrix / NetScaler ADC and Gateway | Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability | 2025-07-10 | 9.3 | past dueransomware |
| overdue 409d2025-07-28 | CVE-2019-9621 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability | 2025-07-07 | 7.5 | past due |
| overdue 409d2025-07-28 | CVE-2019-5418 | Rails / Ruby on Rails | Rails Ruby on Rails Path Traversal Vulnerability | 2025-07-07 | 7.5 | past due |
| overdue 409d2025-07-28 | CVE-2016-10033 | PHP / PHPMailer | PHPMailer Command Injection Vulnerability | 2025-07-07 | 9.8 | past due |
| overdue 409d2025-07-28 | CVE-2014-3931 | Looking Glass / Multi-Router Looking Glass (MRLG) | Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability | 2025-07-07 | 9.8 | past due |
| overdue 414d2025-07-23 | CVE-2025-6554 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-07-02 | 8.1 | past due |
| overdue 415d2025-07-22 | CVE-2025-48928 | TeleMessage / TM SGNL | TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability | 2025-07-01 | 4.0 | past due |
| overdue 415d2025-07-22 | CVE-2025-48927 | TeleMessage / TM SGNL | TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability | 2025-07-01 | 5.3 | past due |
| overdue 416d2025-07-21 | CVE-2025-6543 | Citrix / NetScaler ADC and Gateway | Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability | 2025-06-30 | 9.2 | past due |
| overdue 421d2025-07-16 | CVE-2024-54085 | AMI / MegaRAC SPx | AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability | 2025-06-25 | 10.0 | past due |
| overdue 421d2025-07-16 | CVE-2024-0769 | D-Link / DIR-859 Router | D-Link DIR-859 Router Path Traversal Vulnerability | 2025-06-25 | 9.8 | past due |
| overdue 421d2025-07-16 | CVE-2019-6693 | Fortinet / FortiOS | Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability | 2025-06-25 | 6.5 | past dueransomware |
| overdue 429d2025-07-08 | CVE-2023-0386 | Linux / Kernel | Linux Kernel Improper Ownership Management Vulnerability | 2025-06-17 | 7.8 | past due |
| overdue 430d2025-07-07 | CVE-2025-43200 | Apple / Multiple Products | Apple Multiple Products Unspecified Vulnerability | 2025-06-16 | 4.2 | past due |
| overdue 430d2025-07-07 | CVE-2023-33538 | TP-Link / Multiple Routers | TP-Link Multiple Routers Command Injection Vulnerability | 2025-06-16 | 8.8 | past due |
| overdue 436d2025-07-01 | CVE-2025-33053 | Microsoft / Windows | Microsoft Windows External Control of File Name or Path Vulnerability | 2025-06-10 | 8.8 | past due |
| overdue 436d2025-07-01 | CVE-2025-24016 | Wazuh / Wazuh Server | Wazuh Server Deserialization of Untrusted Data Vulnerability | 2025-06-10 | 9.9 | past due |
| overdue 437d2025-06-30 | CVE-2025-32433 | Erlang / Erlang/OTP | Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability | 2025-06-09 | 10.0 | past due |
| overdue 437d2025-06-30 | CVE-2024-42009 | Roundcube / Webmail | RoundCube Webmail Cross-Site Scripting Vulnerability | 2025-06-09 | 9.3 | past due |
| overdue 441d2025-06-26 | CVE-2025-5419 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Read and Write Vulnerability | 2025-06-05 | 8.8 | past due |
| overdue 443d2025-06-24 | CVE-2025-27038 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2025-06-03 | 7.5 | past due |
| overdue 443d2025-06-24 | CVE-2025-21480 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability | 2025-06-03 | 8.6 | past due |
| overdue 443d2025-06-24 | CVE-2025-21479 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability | 2025-06-03 | 8.6 | past due |
| overdue 444d2025-06-23 | CVE-2025-3935 | ConnectWise / ScreenConnect | ConnectWise ScreenConnect Improper Authentication Vulnerability | 2025-06-02 | 7.2 | past due |
| overdue 444d2025-06-23 | CVE-2025-35939 | Craft CMS / Craft CMS | Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability | 2025-06-02 | 6.9 | past due |
| overdue 444d2025-06-23 | CVE-2024-56145 | Craft CMS / Craft CMS | Craft CMS Code Injection Vulnerability | 2025-06-02 | 9.3 | past due |
| overdue 444d2025-06-23 | CVE-2023-39780 | ASUS / RT-AX55 Routers | ASUS RT-AX55 Routers OS Command Injection Vulnerability | 2025-06-02 | 8.8 | past due |
| overdue 444d2025-06-23 | CVE-2021-32030 | ASUS / Routers | ASUS Routers Improper Authentication Vulnerability | 2025-06-02 | 9.8 | past due |
| overdue 455d2025-06-12 | CVE-2025-4632 | Samsung / MagicINFO 9 Server | Samsung MagicINFO 9 Server Path Traversal Vulnerability | 2025-05-22 | 9.8 | past due |
| overdue 458d2025-06-09 | CVE-2025-4428 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability | 2025-05-19 | 8.8 | past due |
| overdue 458d2025-06-09 | CVE-2025-4427 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability | 2025-05-19 | 7.5 | past due |
| overdue 458d2025-06-09 | CVE-2025-27920 | Srimax / Output Messenger | Srimax Output Messenger Directory Traversal Vulnerability | 2025-05-19 | 8.8 | past due |
| overdue 458d2025-06-09 | CVE-2024-27443 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2025-05-19 | 6.1 | past due |
| overdue 458d2025-06-09 | CVE-2024-11182 | MDaemon / Email Server | MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability | 2025-05-19 | 5.3 | past due |
| overdue 458d2025-06-09 | CVE-2023-38950 | ZKTeco / BioTime | ZKTeco BioTime Path Traversal Vulnerability | 2025-05-19 | 7.5 | past due |
| overdue 462d2025-06-05 | CVE-2025-42999 | SAP / NetWeaver | SAP NetWeaver Deserialization Vulnerability | 2025-05-15 | 9.1 | past dueransomware |
| overdue 462d2025-06-05 | CVE-2024-12987 | DrayTek / Vigor Routers | DrayTek Vigor Routers OS Command Injection Vulnerability | 2025-05-15 | 6.9 | past due |
| overdue 463d2025-06-04 | CVE-2025-32756 | Fortinet / Multiple Products | Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability | 2025-05-14 | 9.8 | past due |
| overdue 464d2025-06-03 | CVE-2025-32709 | Microsoft / Windows | Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability | 2025-05-13 | 7.8 | past due |
| overdue 464d2025-06-03 | CVE-2025-32706 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability | 2025-05-13 | 7.8 | past due |
| overdue 464d2025-06-03 | CVE-2025-32701 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability | 2025-05-13 | 7.8 | past due |
| overdue 464d2025-06-03 | CVE-2025-30400 | Microsoft / Windows | Microsoft Windows DWM Core Library Use-After-Free Vulnerability | 2025-05-13 | 7.8 | past due |
| overdue 464d2025-06-03 | CVE-2025-30397 | Microsoft / Windows | Microsoft Windows Scripting Engine Type Confusion Vulnerability | 2025-05-13 | 7.5 | past due |
| overdue 465d2025-06-02 | CVE-2025-47729 | TeleMessage / TM SGNL | TeleMessage TM SGNL Hidden Functionality Vulnerability | 2025-05-12 | 4.9 | past due |
| overdue 470d2025-05-28 | CVE-2024-6047 | GeoVision / Multiple Devices | GeoVision Devices OS Command Injection Vulnerability | 2025-05-07 | 9.8 | past due |
| overdue 470d2025-05-28 | CVE-2024-11120 | GeoVision / Multiple Devices | GeoVision Devices OS Command Injection Vulnerability | 2025-05-07 | 9.8 | past due |
| overdue 471d2025-05-27 | CVE-2025-27363 | FreeType / FreeType | FreeType Out-of-Bounds Write Vulnerability | 2025-05-06 | 8.1 | past due |
| overdue 472d2025-05-26 | CVE-2025-3248 | Langflow / Langflow | Langflow Missing Authentication Vulnerability | 2025-05-05 | 9.8 | past dueransomware |
| overdue 475d2025-05-23 | CVE-2025-34028 | Commvault / Command Center | Commvault Command Center Path Traversal Vulnerability | 2025-05-02 | 9.3 | past due |
| overdue 475d2025-05-23 | CVE-2024-58136 | Yiiframework / Yii | Yiiframework Yii Improper Protection of Alternate Path Vulnerability | 2025-05-02 | 9.8 | past due |
| overdue 476d2025-05-22 | CVE-2024-38475 | Apache / HTTP Server | Apache HTTP Server Improper Escaping of Output Vulnerability | 2025-05-01 | 9.1 | past due |
| overdue 476d2025-05-22 | CVE-2023-44221 | SonicWall / SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability | 2025-05-01 | 7.2 | past due |
| overdue 478d2025-05-20 | CVE-2025-31324 | SAP / NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability | 2025-04-29 | 9.8 | past dueransomware |
| overdue 479d2025-05-19 | CVE-2025-42599 | Qualitia / Active! Mail | Qualitia Active! Mail Stack-Based Buffer Overflow Vulnerability | 2025-04-28 | 9.8 | past due |
| overdue 479d2025-05-19 | CVE-2025-3928 | Commvault / Web Server | Commvault Web Server Unspecified Vulnerability | 2025-04-28 | 8.7 | past due |
| overdue 479d2025-05-19 | CVE-2025-1976 | Broadcom / Brocade Fabric OS | Broadcom Brocade Fabric OS Code Injection Vulnerability | 2025-04-28 | 8.6 | past due |
| overdue 490d2025-05-08 | CVE-2025-31201 | Apple / Multiple Products | Apple Multiple Products Arbitrary Read and Write Vulnerability | 2025-04-17 | 9.8 | past due |
| overdue 490d2025-05-08 | CVE-2025-31200 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2025-04-17 | 9.8 | past due |
| overdue 490d2025-05-08 | CVE-2025-24054 | Microsoft / Windows | Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability | 2025-04-17 | 5.4 | past due |
| overdue 491d2025-05-07 | CVE-2021-20035 | SonicWall / SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability | 2025-04-16 | 6.5 | past due |
| overdue 498d2025-04-30 | CVE-2024-53197 | Linux / Kernel | Linux Kernel Out-of-Bounds Access Vulnerability | 2025-04-09 | 7.8 | past due |
| overdue 498d2025-04-30 | CVE-2024-53150 | Linux / Kernel | Linux Kernel Out-of-Bounds Read Vulnerability | 2025-04-09 | 7.1 | past due |
| overdue 499d2025-04-29 | CVE-2025-30406 | Gladinet / CentreStack | Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability | 2025-04-08 | 9.8 | past due |
| overdue 499d2025-04-29 | CVE-2025-29824 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability | 2025-04-08 | 7.8 | past dueransomware |
| overdue 500d2025-04-28 | CVE-2025-31161 | CrushFTP / CrushFTP | CrushFTP Authentication Bypass Vulnerability | 2025-04-07 | 9.8 | past dueransomware |
| overdue 517d2025-04-11 | CVE-2025-22457 | Ivanti / Connect Secure, Policy Secure, and ZTA Gateways | Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability | 2025-04-04 | 9.8 | past dueransomware |
| overdue 506d2025-04-22 | CVE-2025-24813 | Apache / Tomcat | Apache Tomcat Path Equivalence Vulnerability | 2025-04-01 | 9.8 | past due |
| overdue 507d2025-04-21 | CVE-2024-20439 | Cisco / Smart Licensing Utility | Cisco Smart Licensing Utility Static Credential Vulnerability | 2025-03-31 | 9.8 | past due |
| overdue 511d2025-04-17 | CVE-2025-2783 | Google / Chromium Mojo | Google Chromium Mojo Sandbox Escape Vulnerability | 2025-03-27 | 8.3 | past due |
| overdue 512d2025-04-16 | CVE-2019-9875 | Sitecore / CMS and Experience Platform (XP) | Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability | 2025-03-26 | 8.8 | past due |
| overdue 512d2025-04-16 | CVE-2019-9874 | Sitecore / CMS and Experience Platform (XP) | Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability | 2025-03-26 | 9.8 | past due |
| overdue 514d2025-04-14 | CVE-2025-30154 | reviewdog / action-setup GitHub Action | reviewdog/action-setup GitHub Action Embedded Malicious Code Vulnerability | 2025-03-24 | 8.6 | past due |
| overdue 519d2025-04-09 | CVE-2025-1316 | Edimax / IC-7100 IP Camera | Edimax IC-7100 IP Camera OS Command Injection Vulnerability | 2025-03-19 | 9.3 | past due |
| overdue 519d2025-04-09 | CVE-2024-48248 | NAKIVO / Backup and Replication | NAKIVO Backup and Replication Absolute Path Traversal Vulnerability | 2025-03-19 | 8.6 | past due |
| overdue 519d2025-04-09 | CVE-2017-12637 | SAP / NetWeaver | SAP NetWeaver Directory Traversal Vulnerability | 2025-03-19 | 7.5 | past due |
| overdue 520d2025-04-08 | CVE-2025-30066 | tj-actions / changed-files GitHub Action | tj-actions/changed-files GitHub Action Embedded Malicious Code Vulnerability | 2025-03-18 | 8.6 | past due |
| overdue 520d2025-04-08 | CVE-2025-24472 | Fortinet / FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability | 2025-03-18 | 8.1 | past dueransomware |
| overdue 525d2025-04-03 | CVE-2025-24201 | Apple / Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Write Vulnerability | 2025-03-13 | 10.0 | past due |
| overdue 525d2025-04-03 | CVE-2025-21590 | Juniper / Junos OS | Juniper Junos OS Improper Isolation or Compartmentalization Vulnerability | 2025-03-13 | 6.7 | past due |
| overdue 527d2025-04-01 | CVE-2025-26633 | Microsoft / Windows | Microsoft Windows Management Console (MMC) Improper Neutralization Vulnerability | 2025-03-11 | 7.0 | past dueransomware |
| overdue 527d2025-04-01 | CVE-2025-24993 | Microsoft / Windows | Microsoft Windows NTFS Heap-Based Buffer Overflow Vulnerability | 2025-03-11 | 7.8 | past due |
| overdue 527d2025-04-01 | CVE-2025-24991 | Microsoft / Windows | Microsoft Windows NTFS Out-Of-Bounds Read Vulnerability | 2025-03-11 | 5.5 | past due |
| overdue 527d2025-04-01 | CVE-2025-24985 | Microsoft / Windows | Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability | 2025-03-11 | 7.8 | past due |
| overdue 527d2025-04-01 | CVE-2025-24984 | Microsoft / Windows | Microsoft Windows NTFS Information Disclosure Vulnerability | 2025-03-11 | 4.6 | past due |
| overdue 527d2025-04-01 | CVE-2025-24983 | Microsoft / Windows | Microsoft Windows Win32k Use-After-Free Vulnerability | 2025-03-11 | 7.0 | past due |
| overdue 528d2025-03-31 | CVE-2025-25181 | Advantive / VeraCore | Advantive VeraCore SQL Injection Vulnerability | 2025-03-10 | 7.5 | past due |
| overdue 528d2025-03-31 | CVE-2024-57968 | Advantive / VeraCore | Advantive VeraCore Unrestricted File Upload Vulnerability | 2025-03-10 | 8.8 | past due |
| overdue 528d2025-03-31 | CVE-2024-13161 | Ivanti / Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 | 7.5 | past due |
| overdue 528d2025-03-31 | CVE-2024-13160 | Ivanti / Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 | 7.5 | past due |
| overdue 528d2025-03-31 | CVE-2024-13159 | Ivanti / Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 | 7.5 | past due |
| overdue 534d2025-03-25 | CVE-2025-22226 | VMware / ESXi, Workstation, and Fusion | VMware ESXi, Workstation, and Fusion Information Disclosure Vulnerability | 2025-03-04 | 6.0 | past due |
| overdue 534d2025-03-25 | CVE-2025-22225 | VMware / ESXi | VMware ESXi Arbitrary Write Vulnerability | 2025-03-04 | 8.2 | past dueransomware |
| overdue 534d2025-03-25 | CVE-2025-22224 | VMware / ESXi and Workstation | VMware ESXi and Workstation TOCTOU Race Condition Vulnerability | 2025-03-04 | 8.2 | past due |
| overdue 534d2025-03-25 | CVE-2024-50302 | Linux / Kernel | Linux Kernel Use of Uninitialized Resource Vulnerability | 2025-03-04 | 5.5 | past due |
| overdue 535d2025-03-24 | CVE-2024-4885 | Progress / WhatsUp Gold | Progress WhatsUp Gold Path Traversal Vulnerability | 2025-03-03 | 9.8 | past due |
| overdue 535d2025-03-24 | CVE-2023-20118 | Cisco / Small Business RV Series Routers | Cisco Small Business RV Series Routers Command Injection Vulnerability | 2025-03-03 | 7.2 | past due |
| overdue 535d2025-03-24 | CVE-2022-43939 | Hitachi Vantara / Pentaho Business Analytics (BA) Server | Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability | 2025-03-03 | 9.8 | past due |
| overdue 535d2025-03-24 | CVE-2022-43769 | Hitachi Vantara / Pentaho Business Analytics (BA) Server | Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability | 2025-03-03 | 7.2 | past due |
| overdue 535d2025-03-24 | CVE-2018-8639 | Microsoft / Windows | Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability | 2025-03-03 | 7.8 | past dueransomware |
| overdue 541d2025-03-18 | CVE-2024-49035 | Microsoft / Partner Center | Microsoft Partner Center Improper Access Control Vulnerability | 2025-02-25 | 9.8 | past due |
| overdue 541d2025-03-18 | CVE-2023-34192 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2025-02-25 | 9.0 | past due |
| overdue 542d2025-03-17 | CVE-2024-20953 | Oracle / Agile Product Lifecycle Management (PLM) | Oracle Agile Product Lifecycle Management (PLM) Deserialization Vulnerability | 2025-02-24 | 8.8 | past due |
| overdue 542d2025-03-17 | CVE-2017-3066 | Adobe / ColdFusion | Adobe ColdFusion Deserialization Vulnerability | 2025-02-24 | 9.8 | past due |
| overdue 545d2025-03-14 | CVE-2025-24989 | Microsoft / Power Pages | Microsoft Power Pages Improper Access Control Vulnerability | 2025-02-21 | 9.8 | past due |
| overdue 546d2025-03-13 | CVE-2025-23209 | Craft CMS / Craft CMS | Craft CMS Code Injection Vulnerability | 2025-02-20 | 8.1 | past due |
| overdue 546d2025-03-13 | CVE-2025-0111 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS File Read Vulnerability | 2025-02-20 | 7.1 | past due |
| overdue 548d2025-03-11 | CVE-2025-0108 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2025-02-18 | 8.8 | past due |
| overdue 548d2025-03-11 | CVE-2024-53704 | SonicWall / SonicOS | SonicWall SonicOS SSLVPN Improper Authentication Vulnerability | 2025-02-18 | 9.8 | past dueransomware |
| overdue 553d2025-03-06 | CVE-2024-57727 | SimpleHelp / SimpleHelp | SimpleHelp Path Traversal Vulnerability | 2025-02-13 | 7.5 | past dueransomware |
| overdue 554d2025-03-05 | CVE-2025-24200 | Apple / iOS and iPadOS | Apple iOS and iPadOS Incorrect Authorization Vulnerability | 2025-02-12 | 6.1 | past due |
| overdue 554d2025-03-05 | CVE-2024-41710 | Mitel / SIP Phones | Mitel SIP Phones Argument Injection Vulnerability | 2025-02-12 | 7.2 | past due |
| overdue 555d2025-03-04 | CVE-2025-21418 | Microsoft / Windows | Microsoft Windows Ancillary Function Driver for WinSock Heap-Based Buffer Overflow Vulnerability | 2025-02-11 | 7.8 | past due |
| overdue 555d2025-03-04 | CVE-2025-21391 | Microsoft / Windows | Microsoft Windows Storage Link Following Vulnerability | 2025-02-11 | 7.1 | past due |
| overdue 555d2025-03-04 | CVE-2024-40891 | Zyxel / DSL CPE Devices | Zyxel DSL CPE OS Command Injection Vulnerability | 2025-02-11 | 8.8 | past due |
| overdue 555d2025-03-04 | CVE-2024-40890 | Zyxel / DSL CPE Devices | Zyxel DSL CPE OS Command Injection Vulnerability | 2025-02-11 | 8.8 | past due |
| overdue 559d2025-02-28 | CVE-2025-0994 | Trimble / Cityworks | Trimble Cityworks Deserialization Vulnerability | 2025-02-07 | 8.6 | past due |
| overdue 560d2025-02-27 | CVE-2025-0411 | 7-Zip / 7-Zip | 7-Zip Mark of the Web Bypass Vulnerability | 2025-02-06 | 7.0 | past due |
| overdue 560d2025-02-27 | CVE-2024-21413 | Microsoft / Office Outlook | Microsoft Outlook Improper Input Validation Vulnerability | 2025-02-06 | 9.8 | past due |
| overdue 560d2025-02-27 | CVE-2022-23748 | Audinate / Dante Discovery | Dante Discovery Process Control Vulnerability | 2025-02-06 | 7.8 | past due |
| overdue 560d2025-02-27 | CVE-2020-29574 | Sophos / CyberoamOS | CyberoamOS (CROS) SQL Injection Vulnerability | 2025-02-06 | 9.8 | past dueransomware |
| overdue 560d2025-02-27 | CVE-2020-15069 | Sophos / XG Firewall | Sophos XG Firewall Buffer Overflow Vulnerability | 2025-02-06 | 9.8 | past due |
| overdue 561d2025-02-26 | CVE-2024-53104 | Linux / Kernel | Linux Kernel Out-of-Bounds Write Vulnerability | 2025-02-05 | 7.8 | past due |
| overdue 562d2025-02-25 | CVE-2024-45195 | Apache / OFBiz | Apache OFBiz Forced Browsing Vulnerability | 2025-02-04 | 7.5 | past due |
| overdue 562d2025-02-25 | CVE-2024-29059 | Microsoft / .NET Framework | Microsoft .NET Framework Information Disclosure Vulnerability | 2025-02-04 | 7.5 | past due |
| overdue 562d2025-02-25 | CVE-2018-9276 | Paessler / PRTG Network Monitor | Paessler PRTG Network Monitor OS Command Injection Vulnerability | 2025-02-04 | 7.2 | past due |
| overdue 562d2025-02-25 | CVE-2018-19410 | Paessler / PRTG Network Monitor | Paessler PRTG Network Monitor Local File Inclusion Vulnerability | 2025-02-04 | 9.8 | past due |
| overdue 568d2025-02-19 | CVE-2025-24085 | Apple / Multiple Products | Apple Multiple Products Use-After-Free Vulnerability | 2025-01-29 | 10.0 | past due |
| overdue 573d2025-02-14 | CVE-2025-23006 | SonicWall / SMA1000 Appliances | SonicWall SMA1000 Appliances Deserialization Vulnerability | 2025-01-24 | 9.8 | past dueransomware |
| overdue 574d2025-02-13 | CVE-2020-11023 | JQuery / JQuery | JQuery Cross-Site Scripting (XSS) Vulnerability | 2025-01-23 | 6.1 | past due |
| overdue 581d2025-02-06 | CVE-2024-50603 | Aviatrix / Controllers | Aviatrix Controllers OS Command Injection Vulnerability | 2025-01-16 | 9.8 | past due |
| overdue 583d2025-02-04 | CVE-2025-21335 | Microsoft / Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability | 2025-01-14 | 7.8 | past due |
| overdue 583d2025-02-04 | CVE-2025-21334 | Microsoft / Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability | 2025-01-14 | 7.8 | past due |
| overdue 583d2025-02-04 | CVE-2025-21333 | Microsoft / Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Heap-based Buffer Overflow Vulnerability | 2025-01-14 | 7.8 | past due |
| overdue 597d2025-01-21 | CVE-2024-55591 | Fortinet / FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability | 2025-01-14 | 9.8 | past dueransomware |
| overdue 584d2025-02-03 | CVE-2024-12686 | BeyondTrust / Privileged Remote Access (PRA) and Remote Support (RS) | BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) OS Command Injection Vulnerability | 2025-01-13 | 7.2 | past due |
| overdue 584d2025-02-03 | CVE-2023-48365 | Qlik / Sense | Qlik Sense HTTP Tunneling Vulnerability | 2025-01-13 | 9.9 | past dueransomware |
| overdue 603d2025-01-15 | CVE-2025-0282 | Ivanti / Connect Secure, Policy Secure, and ZTA Gateways | Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability | 2025-01-08 | 9.0 | past dueransomware |
| overdue 590d2025-01-28 | CVE-2024-55550 | Mitel / MiCollab | Mitel MiCollab Path Traversal Vulnerability | 2025-01-07 | 2.7 | past dueransomware |
| overdue 590d2025-01-28 | CVE-2024-41713 | Mitel / MiCollab | Mitel MiCollab Path Traversal Vulnerability | 2025-01-07 | 9.1 | past dueransomware |
| overdue 590d2025-01-28 | CVE-2020-2883 | Oracle / WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2025-01-07 | 9.8 | past due |
| overdue 598d2025-01-20 | CVE-2024-3393 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability | 2024-12-30 | 8.7 | past due |
| overdue 605d2025-01-13 | CVE-2021-44207 | Acclaim Systems / USAHERDS | Acclaim Systems USAHERDS Use of Hard-Coded Credentials Vulnerability | 2024-12-23 | 8.1 | past due |
| overdue 622d2024-12-27 | CVE-2024-12356 | BeyondTrust / Privileged Remote Access (PRA) and Remote Support (RS) | BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability | 2024-12-19 | 9.8 | past due |
| overdue 610d2025-01-08 | CVE-2022-23227 | NUUO / NVRmini2 Devices | NUUO NVRmini2 Devices Missing Authentication Vulnerability | 2024-12-18 | 9.8 | past due |
| overdue 610d2025-01-08 | CVE-2021-40407 | Reolink / RLC-410W IP Camera | Reolink RLC-410W IP Camera OS Command Injection Vulnerability | 2024-12-18 | 7.2 | past due |
| overdue 610d2025-01-08 | CVE-2019-11001 | Reolink / Multiple IP Cameras | Reolink Multiple IP Cameras OS Command Injection Vulnerability | 2024-12-18 | 7.2 | past due |
| overdue 610d2025-01-08 | CVE-2018-14933 | NUUO / NVRmini Devices | NUUO NVRmini Devices OS Command Injection Vulnerability | 2024-12-18 | 9.8 | past due |
| overdue 611d2025-01-07 | CVE-2024-55956 | Cleo / Multiple Products | Cleo Multiple Products Unauthenticated File Upload Vulnerability | 2024-12-17 | 9.8 | past dueransomware |
| overdue 612d2025-01-06 | CVE-2024-35250 | Microsoft / Windows | Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability | 2024-12-16 | 7.8 | past due |
| overdue 612d2025-01-06 | CVE-2024-20767 | Adobe / ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2024-12-16 | 7.4 | past due |
| overdue 615d2025-01-03 | CVE-2024-50623 | Cleo / Multiple Products | Cleo Multiple Products Unrestricted File Upload Vulnerability | 2024-12-13 | 9.8 | past dueransomware |
| overdue 618d2024-12-31 | CVE-2024-49138 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability | 2024-12-10 | 7.8 | past due |
| overdue 624d2024-12-25 | CVE-2024-51378 | CyberPersons / CyberPanel | CyberPanel Incorrect Default Permissions Vulnerability | 2024-12-04 | 9.8 | past dueransomware |
| overdue 625d2024-12-24 | CVE-2024-11680 | ProjectSend / ProjectSend | ProjectSend Improper Authentication Vulnerability | 2024-12-03 | 9.8 | past due |
| overdue 625d2024-12-24 | CVE-2024-11667 | Zyxel / Multiple Firewalls | Zyxel Multiple Firewalls Path Traversal Vulnerability | 2024-12-03 | 9.8 | past dueransomware |
| overdue 625d2024-12-24 | CVE-2023-45727 | North Grid / Proself | North Grid Proself Improper Restriction of XML External Entity (XXE) Reference Vulnerability | 2024-12-03 | 7.5 | past due |
| overdue 633d2024-12-16 | CVE-2023-28461 | Array Networks / AG/vxAG ArrayOS | Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability | 2024-11-25 | 9.8 | past dueransomware |
| overdue 637d2024-12-12 | CVE-2024-44309 | Apple / Multiple Products | Apple Multiple Products Cross-Site Scripting (XSS) Vulnerability | 2024-11-21 | 6.3 | past due |
| overdue 637d2024-12-12 | CVE-2024-44308 | Apple / Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2024-11-21 | 8.8 | past due |
| overdue 637d2024-12-12 | CVE-2024-21287 | Oracle / Agile Product Lifecycle Management (PLM) | Oracle Agile Product Lifecycle Management (PLM) Incorrect Authorization Vulnerability | 2024-11-21 | 7.5 | past due |
| overdue 638d2024-12-11 | CVE-2024-38813 | VMware / vCenter Server | VMware vCenter Server Privilege Escalation Vulnerability | 2024-11-20 | 9.8 | past due |
| overdue 638d2024-12-11 | CVE-2024-38812 | VMware / vCenter Server | VMware vCenter Server Heap-Based Buffer Overflow Vulnerability | 2024-11-20 | 9.8 | past due |
| overdue 640d2024-12-09 | CVE-2024-9474 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Management Interface OS Command Injection Vulnerability | 2024-11-18 | 6.9 | past dueransomware |
| overdue 640d2024-12-09 | CVE-2024-1212 | Progress / Kemp LoadMaster | Progress Kemp LoadMaster OS Command Injection Vulnerability | 2024-11-18 | 9.8 | past due |
| overdue 640d2024-12-09 | CVE-2024-0012 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Management Interface Authentication Bypass Vulnerability | 2024-11-18 | 9.3 | past dueransomware |
| overdue 644d2024-12-05 | CVE-2024-9465 | Palo Alto Networks / Expedition | Palo Alto Networks Expedition SQL Injection Vulnerability | 2024-11-14 | 9.2 | past due |
| overdue 644d2024-12-05 | CVE-2024-9463 | Palo Alto Networks / Expedition | Palo Alto Networks Expedition OS Command Injection Vulnerability | 2024-11-14 | 9.9 | past due |
| overdue 646d2024-12-03 | CVE-2024-49039 | Microsoft / Windows | Microsoft Windows Task Scheduler Privilege Escalation Vulnerability | 2024-11-12 | 8.8 | past dueransomware |
| overdue 646d2024-12-03 | CVE-2024-43451 | Microsoft / Windows | Microsoft Windows NTLMv2 Hash Disclosure Spoofing Vulnerability | 2024-11-12 | 6.5 | past due |
| overdue 646d2024-12-03 | CVE-2021-41277 | Metabase / Metabase | Metabase GeoJSON API Local File Inclusion Vulnerability | 2024-11-12 | 7.5 | past due |
| overdue 646d2024-12-03 | CVE-2021-26086 | Atlassian / Jira Server and Data Center | Atlassian Jira Server and Data Center Path Traversal Vulnerability | 2024-11-12 | 5.3 | past due |
| overdue 646d2024-12-03 | CVE-2014-2120 | Cisco / Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS) Vulnerability | 2024-11-12 | 6.1 | past due |
| overdue 651d2024-11-28 | CVE-2024-5910 | Palo Alto Networks / Expedition | Palo Alto Networks Expedition Missing Authentication Vulnerability | 2024-11-07 | 9.3 | past due |
| overdue 651d2024-11-28 | CVE-2024-51567 | CyberPersons / CyberPanel | CyberPanel Incorrect Default Permissions Vulnerability | 2024-11-07 | 9.8 | past dueransomware |
| overdue 651d2024-11-28 | CVE-2024-43093 | Android / Framework | Android Framework Privilege Escalation Vulnerability | 2024-11-07 | 7.3 | past due |
| overdue 651d2024-11-28 | CVE-2019-16278 | Nostromo / nhttpd | Nostromo nhttpd Directory Traversal Vulnerability | 2024-11-07 | 9.8 | past due |
| overdue 654d2024-11-25 | CVE-2024-8957 | PTZOptics / PT30X-SDI/NDI Cameras | PTZOptics PT30X-SDI/NDI Cameras OS Command Injection Vulnerability | 2024-11-04 | 7.2 | past due |
| overdue 654d2024-11-25 | CVE-2024-8956 | PTZOptics / PT30X-SDI/NDI Cameras | PTZOptics PT30X-SDI/NDI Cameras Authentication Bypass Vulnerability | 2024-11-04 | 9.1 | past due |
| overdue 665d2024-11-14 | CVE-2024-37383 | Roundcube / Webmail | RoundCube Webmail Cross-Site Scripting (XSS) Vulnerability | 2024-10-24 | 6.1 | past due |
| overdue 665d2024-11-14 | CVE-2024-20481 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Denial-of-Service Vulnerability | 2024-10-24 | 5.8 | past due |
| overdue 666d2024-11-13 | CVE-2024-47575 | Fortinet / FortiManager | Fortinet FortiManager Missing Authentication Vulnerability | 2024-10-23 | 9.8 | past due |
| overdue 667d2024-11-12 | CVE-2024-38094 | Microsoft / SharePoint | Microsoft SharePoint Deserialization Vulnerability | 2024-10-22 | 7.2 | past dueransomware |
| overdue 668d2024-11-11 | CVE-2024-9537 | ScienceLogic / SL1 | ScienceLogic SL1 Unspecified Vulnerability | 2024-10-21 | 9.3 | past due |
| overdue 672d2024-11-07 | CVE-2024-40711 | Veeam / Backup & Replication | Veeam Backup and Replication Deserialization Vulnerability | 2024-10-17 | 9.8 | past dueransomware |
| overdue 674d2024-11-05 | CVE-2024-9680 | Mozilla / Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2024-10-15 | 9.8 | past dueransomware |
| overdue 674d2024-11-05 | CVE-2024-30088 | Microsoft / Windows | Microsoft Windows Kernel TOCTOU Race Condition Vulnerability | 2024-10-15 | 7.0 | past dueransomware |
| overdue 674d2024-11-05 | CVE-2024-28987 | SolarWinds / Web Help Desk | SolarWinds Web Help Desk Hardcoded Credential Vulnerability | 2024-10-15 | 9.1 | past due |
| overdue 680d2024-10-30 | CVE-2024-9380 | Ivanti / Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) OS Command Injection Vulnerability | 2024-10-09 | 7.2 | past due |
| overdue 680d2024-10-30 | CVE-2024-9379 | Ivanti / Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) SQL Injection Vulnerability | 2024-10-09 | 7.2 | past due |
| overdue 680d2024-10-30 | CVE-2024-23113 | Fortinet / Multiple Products | Fortinet Multiple Products Format String Vulnerability | 2024-10-09 | 9.8 | past due |
| overdue 681d2024-10-29 | CVE-2024-43573 | Microsoft / Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-10-08 | 8.1 | past due |
| overdue 681d2024-10-29 | CVE-2024-43572 | Microsoft / Windows | Microsoft Windows Management Console Remote Code Execution Vulnerability | 2024-10-08 | 7.8 | past due |
| overdue 681d2024-10-29 | CVE-2024-43047 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2024-10-08 | 7.8 | past due |
| overdue 686d2024-10-24 | CVE-2024-45519 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Command Execution Vulnerability | 2024-10-03 | 9.8 | past due |
| overdue 687d2024-10-23 | CVE-2024-29824 | Ivanti / Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) SQL Injection Vulnerability | 2024-10-02 | 8.8 | past due |
| overdue 689d2024-10-21 | CVE-2023-25280 | D-Link / DIR-820 Router | D-Link DIR-820 Router OS Command Injection Vulnerability | 2024-09-30 | 9.8 | past due |
| overdue 689d2024-10-21 | CVE-2020-15415 | DrayTek / Multiple Vigor Routers | DrayTek Multiple Vigor Routers OS Command Injection Vulnerability | 2024-09-30 | 9.8 | past due |
| overdue 689d2024-10-21 | CVE-2019-0344 | SAP / Commerce Cloud | SAP Commerce Cloud Deserialization of Untrusted Data Vulnerability | 2024-09-30 | 9.8 | past due |
| overdue 695d2024-10-15 | CVE-2024-7593 | Ivanti / Virtual Traffic Manager | Ivanti Virtual Traffic Manager Authentication Bypass Vulnerability | 2024-09-24 | 9.8 | past due |
| overdue 700d2024-10-10 | CVE-2024-8963 | Ivanti / Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) Path Traversal Vulnerability | 2024-09-19 | 9.1 | past due |
| overdue 701d2024-10-09 | CVE-2024-27348 | Apache / HugeGraph-Server | Apache HugeGraph-Server Improper Access Control Vulnerability | 2024-09-18 | 9.8 | past due |
| overdue 701d2024-10-09 | CVE-2022-21445 | Oracle / ADF Faces | Oracle ADF Faces Deserialization of Untrusted Data Vulnerability | 2024-09-18 | 9.8 | past due |
| overdue 701d2024-10-09 | CVE-2020-14644 | Oracle / WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2024-09-18 | 9.8 | past due |
| overdue 701d2024-10-09 | CVE-2020-0618 | Microsoft / SQL Server | Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability | 2024-09-18 | 8.8 | past dueransomware |
| overdue 702d2024-10-08 | CVE-2014-0502 | Adobe / Flash Player | Adobe Flash Player Double Free Vulnerablity | 2024-09-17 | 8.8 | past due |
| overdue 702d2024-10-08 | CVE-2014-0497 | Adobe / Flash Player | Adobe Flash Player Integer Underflow Vulnerablity | 2024-09-17 | 9.8 | past due |
| overdue 702d2024-10-08 | CVE-2013-0648 | Adobe / Flash Player | Adobe Flash Player Code Execution Vulnerability | 2024-09-17 | 8.8 | past due |
| overdue 702d2024-10-08 | CVE-2013-0643 | Adobe / Flash Player | Adobe Flash Player Incorrect Default Permissions Vulnerability | 2024-09-17 | 8.8 | past due |
| overdue 703d2024-10-07 | CVE-2024-6670 | Progress / WhatsUp Gold | Progress WhatsUp Gold SQL Injection Vulnerability | 2024-09-16 | 9.8 | past dueransomware |
| overdue 703d2024-10-07 | CVE-2024-43461 | Microsoft / Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-09-16 | 8.8 | past due |
| overdue 706d2024-10-04 | CVE-2024-8190 | Ivanti / Cloud Services Appliance | Ivanti Cloud Services Appliance OS Command Injection Vulnerability | 2024-09-13 | 7.2 | past due |
| overdue 709d2024-10-01 | CVE-2024-38226 | Microsoft / Publisher | Microsoft Publisher Protection Mechanism Failure Vulnerability | 2024-09-10 | 7.3 | past due |
| overdue 709d2024-10-01 | CVE-2024-38217 | Microsoft / Windows | Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability | 2024-09-10 | 5.4 | past due |
| overdue 709d2024-10-01 | CVE-2024-38014 | Microsoft / Windows | Microsoft Windows Installer Improper Privilege Management Vulnerability | 2024-09-10 | 7.8 | past due |
| overdue 710d2024-09-30 | CVE-2024-40766 | SonicWall / SonicOS | SonicWall SonicOS Improper Access Control Vulnerability | 2024-09-09 | 9.8 | past dueransomware |
| overdue 710d2024-09-30 | CVE-2017-1000253 | Linux / Kernel | Linux Kernel PIE Stack Buffer Corruption Vulnerability | 2024-09-09 | 7.8 | past dueransomware |
| overdue 710d2024-09-30 | CVE-2016-3714 | ImageMagick / ImageMagick | ImageMagick Improper Input Validation Vulnerability | 2024-09-09 | 8.4 | past due |
| overdue 716d2024-09-24 | CVE-2024-7262 | Kingsoft / WPS Office | Kingsoft WPS Office Path Traversal Vulnerability | 2024-09-03 | 9.3 | past due |
| overdue 716d2024-09-24 | CVE-2021-20124 | DrayTek / VigorConnect | Draytek VigorConnect Path Traversal Vulnerability | 2024-09-03 | 7.5 | past due |
| overdue 716d2024-09-24 | CVE-2021-20123 | DrayTek / VigorConnect | Draytek VigorConnect Path Traversal Vulnerability | 2024-09-03 | 7.5 | past due |
| overdue 722d2024-09-18 | CVE-2024-7965 | Google / Chromium V8 | Google Chromium V8 Inappropriate Implementation Vulnerability | 2024-08-28 | 8.8 | past due |
| overdue 723d2024-09-17 | CVE-2024-38856 | Apache / OFBiz | Apache OFBiz Incorrect Authorization Vulnerability | 2024-08-27 | 9.8 | past due |
| overdue 724d2024-09-16 | CVE-2024-7971 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-08-26 | 9.6 | past due |
| overdue 727d2024-09-13 | CVE-2024-39717 | Versa / Director | Versa Director Dangerous File Type Upload Vulnerability | 2024-08-23 | 7.2 | past due |
| overdue 729d2024-09-11 | CVE-2022-0185 | Linux / Kernel | Linux Kernel Heap-Based Buffer Overflow Vulnerability | 2024-08-21 | 8.4 | past due |
| overdue 729d2024-09-11 | CVE-2021-33045 | Dahua / IP Camera Firmware | Dahua IP Camera Authentication Bypass Vulnerability | 2024-08-21 | 9.8 | past due |
| overdue 729d2024-09-11 | CVE-2021-33044 | Dahua / IP Camera Firmware | Dahua IP Camera Authentication Bypass Vulnerability | 2024-08-21 | 9.8 | past due |
| overdue 729d2024-09-11 | CVE-2021-31196 | Microsoft / Exchange Server | Microsoft Exchange Server Information Disclosure Vulnerability | 2024-08-21 | 7.2 | past due |
| overdue 731d2024-09-09 | CVE-2024-23897 | Jenkins / Jenkins Command Line Interface (CLI) | Jenkins Command Line Interface (CLI) Path Traversal Vulnerability | 2024-08-19 | 9.8 | past dueransomware |
| overdue 735d2024-09-05 | CVE-2024-28986 | SolarWinds / Web Help Desk | SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability | 2024-08-15 | 9.8 | past due |
| overdue 737d2024-09-03 | CVE-2024-38213 | Microsoft / Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2024-08-13 | 6.5 | past due |
| overdue 737d2024-09-03 | CVE-2024-38193 | Microsoft / Windows | Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability | 2024-08-13 | 7.8 | past due |
| overdue 737d2024-09-03 | CVE-2024-38189 | Microsoft / Project | Microsoft Project Remote Code Execution Vulnerability | 2024-08-13 | 8.8 | past due |
| overdue 737d2024-09-03 | CVE-2024-38178 | Microsoft / Windows | Microsoft Windows Scripting Engine Memory Corruption Vulnerability | 2024-08-13 | 7.5 | past due |
| overdue 737d2024-09-03 | CVE-2024-38107 | Microsoft / Windows | Microsoft Windows Power Dependency Coordinator Privilege Escalation Vulnerability | 2024-08-13 | 7.8 | past due |
| overdue 737d2024-09-03 | CVE-2024-38106 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2024-08-13 | 7.0 | past due |
| overdue 743d2024-08-28 | CVE-2024-36971 | Android / Kernel | Android Kernel Remote Code Execution Vulnerability | 2024-08-07 | 7.8 | past due |
| overdue 743d2024-08-28 | CVE-2024-32113 | Apache / OFBiz | Apache OFBiz Path Traversal Vulnerability | 2024-08-07 | 9.8 | past due |
| overdue 745d2024-08-26 | CVE-2018-0824 | Microsoft / Windows | Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability | 2024-08-05 | 8.8 | past due |
| overdue 751d2024-08-20 | CVE-2024-37085 | VMware / ESXi | VMware ESXi Authentication Bypass Vulnerability | 2024-07-30 | 7.2 | past dueransomware |
| overdue 752d2024-08-19 | CVE-2024-5217 | ServiceNow / Utah, Vancouver, and Washington DC Now Platform | ServiceNow Incomplete List of Disallowed Inputs Vulnerability | 2024-07-29 | 9.2 | past due |
| overdue 752d2024-08-19 | CVE-2024-4879 | ServiceNow / Utah, Vancouver, and Washington DC Now Platform | ServiceNow Improper Input Validation Vulnerability | 2024-07-29 | 9.3 | past due |
| overdue 752d2024-08-19 | CVE-2023-45249 | Acronis / Cyber Infrastructure (ACI) | Acronis Cyber Infrastructure (ACI) Insecure Default Password Vulnerability | 2024-07-29 | 9.8 | past due |
| overdue 758d2024-08-13 | CVE-2024-39891 | Twilio / Authy | Twilio Authy Information Disclosure Vulnerability | 2024-07-23 | 5.3 | past due |
| overdue 758d2024-08-13 | CVE-2012-4792 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2024-07-23 | 8.8 | past due |
| overdue 764d2024-08-07 | CVE-2024-34102 | Adobe / Commerce and Magento Open Source | Adobe Commerce and Magento Open Source Improper Restriction of XML External Entity Reference (XXE) Vulnerability | 2024-07-17 | 9.8 | past due |
| overdue 764d2024-08-07 | CVE-2024-28995 | SolarWinds / Serv-U | SolarWinds Serv-U Path Traversal Vulnerability | 2024-07-17 | 7.5 | past due |
| overdue 764d2024-08-07 | CVE-2022-22948 | VMware / vCenter Server | VMware vCenter Server Incorrect Default File Permissions Vulnerability | 2024-07-17 | 6.5 | past due |
| overdue 766d2024-08-05 | CVE-2024-36401 | OSGeo / GeoServer | OSGeo GeoServer GeoTools Eval Injection Vulnerability | 2024-07-15 | 9.8 | past due |
| overdue 772d2024-07-30 | CVE-2024-38112 | Microsoft / Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-07-09 | 7.5 | past due |
| overdue 772d2024-07-30 | CVE-2024-38080 | Microsoft / Windows | Microsoft Windows Hyper-V Privilege Escalation Vulnerability | 2024-07-09 | 7.8 | past due |
| overdue 772d2024-07-30 | CVE-2024-23692 | Rejetto / HTTP File Server | Rejetto HTTP File Server Improper Neutralization of Special Elements Used in a Template Engine Vulnerability | 2024-07-09 | 9.8 | past dueransomware |
| overdue 779d2024-07-23 | CVE-2024-20399 | Cisco / NX-OS | Cisco NX-OS Command Injection Vulnerability | 2024-07-02 | 6.7 | past due |
| overdue 785d2024-07-17 | CVE-2022-2586 | Linux / Kernel | Linux Kernel Use-After-Free Vulnerability | 2024-06-26 | 7.8 | past due |
| overdue 785d2024-07-17 | CVE-2022-24816 | OSGeo / JAI-EXT | OSGeo GeoServer JAI-EXT Code Injection Vulnerability | 2024-06-26 | 10.0 | past due |
| overdue 785d2024-07-17 | CVE-2020-13965 | Roundcube / Webmail | Roundcube Webmail Cross-Site Scripting (XSS) Vulnerability | 2024-06-26 | 6.1 | past due |
| overdue 798d2024-07-04 | CVE-2024-4358 | Progress / Telerik Report Server | Progress Telerik Report Server Authentication Bypass by Spoofing Vulnerability | 2024-06-13 | 9.8 | past due |
| overdue 798d2024-07-04 | CVE-2024-32896 | Android / Pixel | Android Pixel Privilege Escalation Vulnerability | 2024-06-13 | 7.8 | past due |
| overdue 798d2024-07-04 | CVE-2024-26169 | Microsoft / Windows | Microsoft Windows Error Reporting Service Improper Privilege Management Vulnerability | 2024-06-13 | 7.8 | past dueransomware |
| overdue 799d2024-07-03 | CVE-2024-4610 | Arm / Mali GPU Kernel Driver | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2024-06-12 | 7.8 | past due |
| overdue 799d2024-07-03 | CVE-2024-4577 | PHP Group / PHP | PHP-CGI OS Command Injection Vulnerability | 2024-06-12 | 9.8 | past dueransomware |
| overdue 808d2024-06-24 | CVE-2017-3506 | Oracle / WebLogic Server | Oracle WebLogic Server OS Command Injection Vulnerability | 2024-06-03 | 7.4 | past due |
| overdue 812d2024-06-20 | CVE-2024-24919 | Check Point / Quantum Security Gateways | Check Point Quantum Security Gateways Information Disclosure Vulnerability | 2024-05-30 | 8.6 | past dueransomware |
| overdue 812d2024-06-20 | CVE-2024-1086 | Linux / Kernel | Linux Kernel Use-After-Free Vulnerability | 2024-05-30 | 7.8 | past dueransomware |
| overdue 813d2024-06-19 | CVE-2024-4978 | Justice AV Solutions / Viewer | Justice AV Solutions (JAVS) Viewer Installer Embedded Malicious Code Vulnerability | 2024-05-29 | 8.7 | past due |
| overdue 814d2024-06-18 | CVE-2024-5274 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-05-28 | 9.6 | past due |
| overdue 819d2024-06-13 | CVE-2020-17519 | Apache / Flink | Apache Flink Improper Access Control Vulnerability | 2024-05-23 | 7.5 | past due |
| overdue 822d2024-06-10 | CVE-2024-4947 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-05-20 | 9.6 | past due |
| overdue 822d2024-06-10 | CVE-2023-43208 | NextGen Healthcare / Mirth Connect | NextGen Healthcare Mirth Connect Deserialization of Untrusted Data Vulnerability | 2024-05-20 | 9.8 | past dueransomware |
| overdue 826d2024-06-06 | CVE-2024-4761 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Write Vulnerability | 2024-05-16 | 8.8 | past due |
| overdue 826d2024-06-06 | CVE-2021-40655 | D-Link / DIR-605 Router | D-Link DIR-605 Router Information Disclosure Vulnerability | 2024-05-16 | 7.5 | past due |
| overdue 826d2024-06-06 | CVE-2014-100005 | D-Link / DIR-600 Router | D-Link DIR-600 Router Cross-Site Request Forgery (CSRF) Vulnerability | 2024-05-16 | 8.0 | past due |
| overdue 828d2024-06-04 | CVE-2024-30051 | Microsoft / DWM Core Library | Microsoft DWM Core Library Privilege Escalation Vulnerability | 2024-05-14 | 7.8 | past dueransomware |
| overdue 828d2024-06-04 | CVE-2024-30040 | Microsoft / Windows | Microsoft Windows MSHTML Platform Security Feature Bypass Vulnerability | 2024-05-14 | 8.8 | past due |
| overdue 829d2024-06-03 | CVE-2024-4671 | Google / Chromium | Google Chromium Visuals Use-After-Free Vulnerability | 2024-05-13 | 9.6 | past due |
| overdue 841d2024-05-22 | CVE-2023-7028 | GitLab / GitLab CE/EE | GitLab Community and Enterprise Editions Improper Access Control Vulnerability | 2024-05-01 | 9.8 | past due |
| overdue 842d2024-05-21 | CVE-2024-29988 | Microsoft / SmartScreen Prompt | Microsoft SmartScreen Prompt Security Feature Bypass Vulnerability | 2024-04-30 | 8.8 | past due |
| overdue 862d2024-05-01 | CVE-2024-4040 | CrushFTP / CrushFTP | CrushFTP VFS Sandbox Escape Vulnerability | 2024-04-24 | 10.0 | past due |
| overdue 862d2024-05-01 | CVE-2024-20359 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Privilege Escalation Vulnerability | 2024-04-24 | 6.0 | past due |
| overdue 862d2024-05-01 | CVE-2024-20353 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Denial of Service Vulnerability | 2024-04-24 | 8.6 | past due |
| overdue 849d2024-05-14 | CVE-2022-38028 | Microsoft / Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2024-04-23 | 7.8 | past due |
| overdue 874d2024-04-19 | CVE-2024-3400 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Command Injection Vulnerability | 2024-04-12 | 10.0 | past dueransomware |
| overdue 861d2024-05-02 | CVE-2024-3273 | D-Link / Multiple NAS Devices | D-Link Multiple NAS Devices Command Injection Vulnerability | 2024-04-11 | 9.8 | past due |
| overdue 861d2024-05-02 | CVE-2024-3272 | D-Link / Multiple NAS Devices | D-Link Multiple NAS Devices Use of Hard-Coded Credentials Vulnerability | 2024-04-11 | 9.8 | past due |
| overdue 868d2024-04-25 | CVE-2024-29748 | Android / Pixel | Android Pixel Privilege Escalation Vulnerability | 2024-04-04 | 7.8 | past due |
| overdue 868d2024-04-25 | CVE-2024-29745 | Android / Pixel | Android Pixel Information Disclosure Vulnerability | 2024-04-04 | 5.5 | past due |
| overdue 877d2024-04-16 | CVE-2023-24955 | Microsoft / SharePoint Server | Microsoft SharePoint Server Code Injection Vulnerability | 2024-03-26 | 7.2 | past dueransomware |
| overdue 878d2024-04-15 | CVE-2023-48788 | Fortinet / FortiClient EMS | Fortinet FortiClient EMS SQL Injection Vulnerability | 2024-03-25 | 9.8 | past dueransomware |
| overdue 878d2024-04-15 | CVE-2021-44529 | Ivanti / Endpoint Manager Cloud Service Appliance (EPM CSA) | Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA) Code Injection Vulnerability | 2024-03-25 | 9.8 | past dueransomware |
| overdue 878d2024-04-15 | CVE-2019-7256 | Nice / Linear eMerge E3-Series | Nice Linear eMerge E3-Series OS Command Injection Vulnerability | 2024-03-25 | 9.8 | past due |
| overdue 896d2024-03-28 | CVE-2024-27198 | JetBrains / TeamCity | JetBrains TeamCity Authentication Bypass Vulnerability | 2024-03-07 | 9.8 | past dueransomware |
| overdue 897d2024-03-27 | CVE-2024-23296 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-03-06 | 7.8 | past due |
| overdue 897d2024-03-27 | CVE-2024-23225 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-03-06 | 7.8 | past due |
| overdue 898d2024-03-26 | CVE-2023-21237 | Android / Pixel | Android Pixel Information Disclosure Vulnerability | 2024-03-05 | 5.5 | past due |
| overdue 898d2024-03-26 | CVE-2021-36380 | Sunhillo / SureLine | Sunhillo SureLine OS Command Injection Vulnerablity | 2024-03-05 | 9.8 | past due |
| overdue 899d2024-03-25 | CVE-2024-21338 | Microsoft / Windows | Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability | 2024-03-04 | 7.8 | past dueransomware |
| overdue 903d2024-03-21 | CVE-2023-29360 | Microsoft / Streaming Service | Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability | 2024-02-29 | 8.4 | past due |
| overdue 924d2024-02-29 | CVE-2024-1709 | ConnectWise / ScreenConnect | ConnectWise ScreenConnect Authentication Bypass Vulnerability | 2024-02-22 | 10.0 | past dueransomware |
| overdue 917d2024-03-07 | CVE-2024-21410 | Microsoft / Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2024-02-15 | 9.8 | past due |
| overdue 917d2024-03-07 | CVE-2020-3259 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Information Disclosure Vulnerability | 2024-02-15 | 7.5 | past dueransomware |
| overdue 919d2024-03-05 | CVE-2024-21412 | Microsoft / Windows | Microsoft Windows Internet Shortcut Files Security Feature Bypass Vulnerability | 2024-02-13 | 8.1 | past dueransomware |
| overdue 919d2024-03-05 | CVE-2024-21351 | Microsoft / Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2024-02-13 | 7.6 | past due |
| overdue 920d2024-03-04 | CVE-2023-43770 | Roundcube / Webmail | Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability | 2024-02-12 | 6.1 | past due |
| overdue 937d2024-02-16 | CVE-2024-21762 | Fortinet / FortiOS | Fortinet FortiOS Out-of-Bound Write Vulnerability | 2024-02-09 | 9.8 | past dueransomware |
| overdue 926d2024-02-27 | CVE-2023-4762 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-02-06 | 8.8 | past due |
| overdue 951d2024-02-02 | CVE-2024-21893 | Ivanti / Connect Secure, Policy Secure, and Neurons | Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability | 2024-01-31 | 8.2 | past dueransomware |
| overdue 932d2024-02-21 | CVE-2022-48618 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-01-31 | 7.0 | past due |
| overdue 939d2024-02-14 | CVE-2023-22527 | Atlassian / Confluence Data Center and Server | Atlassian Confluence Data Center and Server Template Injection Vulnerability | 2024-01-24 | 9.8 | past dueransomware |
| overdue 940d2024-02-13 | CVE-2024-23222 | Apple / Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2024-01-23 | 8.8 | past due |
| overdue 941d2024-02-12 | CVE-2023-34048 | VMware / vCenter Server | VMware vCenter Server Out-of-Bounds Write Vulnerability | 2024-01-22 | 9.8 | past due |
| overdue 945d2024-02-08 | CVE-2023-35082 | Ivanti / Endpoint Manager Mobile (EPMM) and MobileIron Core | Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core Authentication Bypass Vulnerability | 2024-01-18 | 9.8 | past dueransomware |
| overdue 946d2024-02-07 | CVE-2024-0519 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Access Vulnerability | 2024-01-17 | 8.8 | past due |
| overdue 946d2024-02-07 | CVE-2023-6549 | Citrix / NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability | 2024-01-17 | 7.5 | past due |
| overdue 960d2024-01-24 | CVE-2023-6548 | Citrix / NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability | 2024-01-17 | 8.8 | past due |
| overdue 947d2024-02-06 | CVE-2018-15133 | Laravel / Laravel Framework | Laravel Deserialization of Untrusted Data Vulnerability | 2024-01-16 | 8.1 | past due |
| overdue 962d2024-01-22 | CVE-2024-21887 | Ivanti / Connect Secure and Policy Secure | Ivanti Connect Secure and Policy Secure Command Injection Vulnerability | 2024-01-10 | 9.1 | past dueransomware |
| overdue 962d2024-01-22 | CVE-2023-46805 | Ivanti / Connect Secure and Policy Secure | Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability | 2024-01-10 | 8.2 | past dueransomware |
| overdue 953d2024-01-31 | CVE-2023-29357 | Microsoft / SharePoint Server | Microsoft SharePoint Server Privilege Escalation Vulnerability | 2024-01-10 | 9.8 | past dueransomware |
| overdue 955d2024-01-29 | CVE-2023-41990 | Apple / Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2024-01-08 | 7.8 | past due |
| overdue 955d2024-01-29 | CVE-2023-38203 | Adobe / ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2024-01-08 | 9.8 | past dueransomware |
| overdue 955d2024-01-29 | CVE-2023-29300 | Adobe / ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2024-01-08 | 9.8 | past dueransomware |
| overdue 955d2024-01-29 | CVE-2023-27524 | Apache / Superset | Apache Superset Insecure Default Initialization of Resource Vulnerability | 2024-01-08 | 9.8 | past due |
| overdue 955d2024-01-29 | CVE-2023-23752 | Joomla! / Joomla! | Joomla! Improper Access Control Vulnerability | 2024-01-08 | 5.3 | past due |
| overdue 955d2024-01-29 | CVE-2016-20017 | D-Link / DSL-2750B Devices | D-Link DSL-2750B Devices Command Injection Vulnerability | 2024-01-08 | 9.8 | past due |
| overdue 961d2024-01-23 | CVE-2023-7101 | Spreadsheet::ParseExcel / Spreadsheet::ParseExcel | Spreadsheet::ParseExcel Remote Code Execution Vulnerability | 2024-01-02 | 7.8 | past due |
| overdue 961d2024-01-23 | CVE-2023-7024 | Google / Chromium WebRTC | Google Chromium WebRTC Heap Buffer Overflow Vulnerability | 2024-01-02 | 8.8 | past due |
| overdue 973d2024-01-11 | CVE-2023-49897 | FXC / AE1021, AE1021PE | FXC AE1021, AE1021PE OS Command Injection Vulnerability | 2023-12-21 | 8.8 | past due |
| overdue 973d2024-01-11 | CVE-2023-47565 | QNAP / VioStor NVR | QNAP VioStor NVR OS Command Injection Vulnerability | 2023-12-21 | 8.8 | past due |
| overdue 997d2023-12-18 | CVE-2023-6448 | Unitronics / Vision PLC and HMI | Unitronics Vision PLC and HMI Insecure Default Password Vulnerability | 2023-12-11 | 9.8 | past due |
| overdue 987d2023-12-28 | CVE-2023-41266 | Qlik / Sense | Qlik Sense Path Traversal Vulnerability | 2023-12-07 | 6.5 | past dueransomware |
| overdue 987d2023-12-28 | CVE-2023-41265 | Qlik / Sense | Qlik Sense HTTP Tunneling Vulnerability | 2023-12-07 | 9.9 | past dueransomware |
| overdue 989d2023-12-26 | CVE-2023-33107 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Integer Overflow Vulnerability | 2023-12-05 | 7.8 | past due |
| overdue 989d2023-12-26 | CVE-2023-33106 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use of Out-of-Range Pointer Offset Vulnerability | 2023-12-05 | 7.8 | past due |
| overdue 989d2023-12-26 | CVE-2023-33063 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2023-12-05 | 7.8 | past due |
| overdue 989d2023-12-26 | CVE-2022-22071 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2023-12-05 | 7.8 | past due |
| overdue 990d2023-12-25 | CVE-2023-42917 | Apple / Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2023-12-04 | 8.8 | past due |
| overdue 990d2023-12-25 | CVE-2023-42916 | Apple / Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability | 2023-12-04 | 6.5 | past due |
| overdue 994d2023-12-21 | CVE-2023-6345 | Google / Chromium Skia | Google Skia Integer Overflow Vulnerability | 2023-11-30 | 9.6 | past due |
| overdue 994d2023-12-21 | CVE-2023-49103 | ownCloud / ownCloud graphapi | ownCloud graphapi Information Disclosure Vulnerability | 2023-11-30 | 7.5 | past due |
| overdue 1003d2023-12-12 | CVE-2023-4911 | GNU / GNU C Library | GNU C Library Buffer Overflow Vulnerability | 2023-11-21 | 7.8 | past due |
| overdue 1008d2023-12-07 | CVE-2023-36584 | Microsoft / Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2023-11-16 | 5.4 | past due |
| overdue 1008d2023-12-07 | CVE-2023-1671 | Sophos / Web Appliance | Sophos Web Appliance Command Injection Vulnerability | 2023-11-16 | 9.8 | past due |
| overdue 1008d2023-12-07 | CVE-2020-2551 | Oracle / Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2023-11-16 | 9.8 | past due |
| overdue 1010d2023-12-05 | CVE-2023-36036 | Microsoft / Windows | Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability | 2023-11-14 | 7.8 | past due |
| overdue 1010d2023-12-05 | CVE-2023-36033 | Microsoft / Windows | Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability | 2023-11-14 | 7.8 | past due |
| overdue 1010d2023-12-05 | CVE-2023-36025 | Microsoft / Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2023-11-14 | 8.8 | past due |
| overdue 1011d2023-12-04 | CVE-2023-47246 | SysAid / SysAid Server | SysAid Server Path Traversal Vulnerability | 2023-11-13 | 9.8 | past dueransomware |
| overdue 1028d2023-11-17 | CVE-2023-36851 | Juniper / Junos OS | Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 | 5.3 | past due |
| overdue 1028d2023-11-17 | CVE-2023-36847 | Juniper / Junos OS | Juniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 | 5.3 | past due |
| overdue 1028d2023-11-17 | CVE-2023-36846 | Juniper / Junos OS | Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 | 5.3 | past due |
| overdue 1028d2023-11-17 | CVE-2023-36845 | Juniper / Junos OS | Juniper Junos OS EX Series and SRX Series PHP External Variable Modification Vulnerability | 2023-11-13 | 9.8 | past due |
| overdue 1028d2023-11-17 | CVE-2023-36844 | Juniper / Junos OS | Juniper Junos OS EX Series PHP External Variable Modification Vulnerability | 2023-11-13 | 5.3 | past due |
| overdue 1016d2023-11-29 | CVE-2023-29552 | IETF / Service Location Protocol (SLP) | Service Location Protocol (SLP) Denial-of-Service Vulnerability | 2023-11-08 | 7.5 | past due |
| overdue 1017d2023-11-28 | CVE-2023-22518 | Atlassian / Confluence Data Center and Server | Atlassian Confluence Data Center and Server Improper Authorization Vulnerability | 2023-11-07 | 9.8 | past dueransomware |
| overdue 1022d2023-11-23 | CVE-2023-46604 | Apache / ActiveMQ | Apache ActiveMQ Deserialization of Untrusted Data Vulnerability | 2023-11-02 | 9.8 | past dueransomware |
| overdue 1024d2023-11-21 | CVE-2023-46748 | F5 / BIG-IP Configuration Utility | F5 BIG-IP Configuration Utility SQL Injection Vulnerability | 2023-10-31 | 8.8 | past due |
| overdue 1024d2023-11-21 | CVE-2023-46747 | F5 / BIG-IP Configuration Utility | F5 BIG-IP Configuration Utility Authentication Bypass Vulnerability | 2023-10-31 | 9.8 | past dueransomware |
| overdue 1029d2023-11-16 | CVE-2023-5631 | Roundcube / Webmail | Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability | 2023-10-26 | 5.4 | past due |
| overdue 1049d2023-10-27 | CVE-2023-20273 | Cisco / Cisco IOS XE Web UI | Cisco IOS XE Web UI Command Injection Vulnerability | 2023-10-23 | 7.2 | past due |
| overdue 1037d2023-11-08 | CVE-2023-4966 | Citrix / NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability | 2023-10-18 | 7.5 | past dueransomware |
| overdue 1056d2023-10-20 | CVE-2023-20198 | Cisco / IOS XE Web UI | Cisco IOS XE Web UI Privilege Escalation Vulnerability | 2023-10-16 | 10.0 | past due |
| overdue 1045d2023-10-31 | CVE-2023-44487 | IETF / HTTP/2 | HTTP/2 Rapid Reset Attack Vulnerability | 2023-10-10 | 7.5 | past due |
| overdue 1045d2023-10-31 | CVE-2023-41763 | Microsoft / Skype for Business | Microsoft Skype for Business Privilege Escalation Vulnerability | 2023-10-10 | 5.3 | past due |
| overdue 1045d2023-10-31 | CVE-2023-36563 | Microsoft / WordPad | Microsoft WordPad Information Disclosure Vulnerability | 2023-10-10 | 5.5 | past due |
| overdue 1045d2023-10-31 | CVE-2023-21608 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2023-10-10 | 7.8 | past due |
| overdue 1045d2023-10-31 | CVE-2023-20109 | Cisco / IOS and IOS XE | Cisco IOS and IOS XE Group Encrypted Transport VPN Out-of-Bounds Write Vulnerability | 2023-10-10 | 6.6 | past due |
| overdue 1050d2023-10-26 | CVE-2023-42824 | Apple / iOS and iPadOS | Apple iOS and iPadOS Kernel Privilege Escalation Vulnerability | 2023-10-05 | 7.8 | past due |
| overdue 1050d2023-10-26 | CVE-2023-40044 | Progress / WS_FTP Server | Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability | 2023-10-05 | 8.8 | past dueransomware |
| overdue 1063d2023-10-13 | CVE-2023-22515 | Atlassian / Confluence Data Center and Server | Atlassian Confluence Data Center and Server Broken Access Control Vulnerability | 2023-10-05 | 9.8 | past dueransomware |
| overdue 1051d2023-10-25 | CVE-2023-42793 | JetBrains / TeamCity | JetBrains TeamCity Authentication Bypass Vulnerability | 2023-10-04 | 9.8 | past dueransomware |
| overdue 1051d2023-10-25 | CVE-2023-28229 | Microsoft / Windows CNG Key Isolation Service | Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability | 2023-10-04 | 7.0 | past due |
| overdue 1052d2023-10-24 | CVE-2023-4211 | Arm / Mali GPU Kernel Driver | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-10-03 | 5.5 | past due |
| overdue 1053d2023-10-23 | CVE-2023-5217 | Google / Chromium libvpx | Google Chromium libvpx Heap Buffer Overflow Vulnerability | 2023-10-02 | 8.8 | past due |
| overdue 1057d2023-10-19 | CVE-2018-14667 | Red Hat / JBoss RichFaces Framework | Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability | 2023-09-28 | 9.8 | past due |
| overdue 1060d2023-10-16 | CVE-2023-41993 | Apple / Multiple Products | Apple Multiple Products WebKit Code Execution Vulnerability | 2023-09-25 | 8.8 | past due |
| overdue 1060d2023-10-16 | CVE-2023-41992 | Apple / Multiple Products | Apple Multiple Products Kernel Privilege Escalation Vulnerability | 2023-09-25 | 7.8 | past due |
| overdue 1060d2023-10-16 | CVE-2023-41991 | Apple / Multiple Products | Apple Multiple Products Improper Certificate Validation Vulnerability | 2023-09-25 | 5.5 | past due |
| overdue 1064d2023-10-12 | CVE-2023-41179 | Trend Micro / Apex One and Worry-Free Business Security | Trend Micro Apex One and Worry-Free Business Security Remote Code Execution Vulnerability | 2023-09-21 | 7.2 | past due |
| overdue 1066d2023-10-10 | CVE-2023-28434 | MinIO / MinIO | MinIO Security Feature Bypass Vulnerability | 2023-09-19 | 8.8 | past due |
| overdue 1067d2023-10-09 | CVE-2022-22265 | Samsung / Mobile Devices | Samsung Mobile Devices Use-After-Free Vulnerability | 2023-09-18 | 7.8 | past due |
| overdue 1067d2023-10-09 | CVE-2021-3129 | Laravel / Ignition | Laravel Ignition File Upload Vulnerability | 2023-09-18 | 9.8 | past dueransomware |
| overdue 1067d2023-10-09 | CVE-2017-6884 | Zyxel / EMG2926 Routers | Zyxel EMG2926 Routers Command Injection Vulnerability | 2023-09-18 | 8.8 | past dueransomware |
| overdue 1067d2023-10-09 | CVE-2014-8361 | Realtek / SDK | Realtek SDK Improper Input Validation Vulnerability | 2023-09-18 | 9.8 | past due |
| overdue 1071d2023-10-05 | CVE-2023-26369 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Out-of-Bounds Write Vulnerability | 2023-09-14 | 7.8 | past due |
| overdue 1072d2023-10-04 | CVE-2023-4863 | Google / Chromium WebP | Google Chromium WebP Heap-Based Buffer Overflow Vulnerability | 2023-09-13 | 8.8 | past due |
| overdue 1072d2023-10-04 | CVE-2023-35674 | Android / Framework | Android Framework Privilege Escalation Vulnerability | 2023-09-13 | 7.8 | past due |
| overdue 1072d2023-10-04 | CVE-2023-20269 | Cisco / Adaptive Security Appliance and Firepower Threat Defense | Cisco Adaptive Security Appliance and Firepower Threat Defense Unauthorized Access Vulnerability | 2023-09-13 | 9.1 | past dueransomware |
| overdue 1073d2023-10-03 | CVE-2023-36802 | Microsoft / Streaming Service Proxy | Microsoft Streaming Service Proxy Privilege Escalation Vulnerability | 2023-09-12 | 7.8 | past due |
| overdue 1073d2023-10-03 | CVE-2023-36761 | Microsoft / Word | Microsoft Word Information Disclosure Vulnerability | 2023-09-12 | 6.5 | past due |
| overdue 1074d2023-10-02 | CVE-2023-41064 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS ImageIO Buffer Overflow Vulnerability | 2023-09-11 | 7.8 | past due |
| overdue 1074d2023-10-02 | CVE-2023-41061 | Apple / iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Wallet Code Execution Vulnerability | 2023-09-11 | 7.8 | past due |
| overdue 1079d2023-09-27 | CVE-2023-33246 | Apache / RocketMQ | Apache RocketMQ Command Execution Vulnerability | 2023-09-06 | 9.8 | past due |
| overdue 1092d2023-09-14 | CVE-2023-38831 | RARLAB / WinRAR | RARLAB WinRAR Code Execution Vulnerability | 2023-08-24 | 7.8 | past dueransomware |
| overdue 1092d2023-09-14 | CVE-2023-32315 | Ignite Realtime / Openfire | Ignite Realtime Openfire Path Traversal Vulnerability | 2023-08-24 | 7.5 | past due |
| overdue 1094d2023-09-12 | CVE-2023-38035 | Ivanti / Sentry | Ivanti Sentry Authentication Bypass Vulnerability | 2023-08-22 | 9.8 | past dueransomware |
| overdue 1094d2023-09-12 | CVE-2023-27532 | Veeam / Backup & Replication | Veeam Backup & Replication Cloud Connect Missing Authentication for Critical Function Vulnerability | 2023-08-22 | 7.5 | past dueransomware |
| overdue 1095d2023-09-11 | CVE-2023-26359 | Adobe / ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2023-08-21 | 9.8 | past due |
| overdue 1100d2023-09-06 | CVE-2023-24489 | Citrix / Content Collaboration | Citrix Content Collaboration ShareFile Improper Access Control Vulnerability | 2023-08-16 | 9.8 | past due |
| overdue 1107d2023-08-30 | CVE-2023-38180 | Microsoft / .NET Core and Visual Studio | Microsoft .NET Core and Visual Studio Denial-of-Service Vulnerability | 2023-08-09 | 7.5 | past due |
| overdue 1109d2023-08-28 | CVE-2017-18368 | Zyxel / P660HN-T1A Routers | Zyxel P660HN-T1A Routers Command Injection Vulnerability | 2023-08-07 | 9.8 | past due |
| overdue 1116d2023-08-21 | CVE-2023-35081 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Path Traversal Vulnerability | 2023-07-31 | 7.2 | past due |
| overdue 1120d2023-08-17 | CVE-2023-37580 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2023-07-27 | 6.1 | past due |
| overdue 1121d2023-08-16 | CVE-2023-38606 | Apple / Multiple Products | Apple Multiple Products Kernel Unspecified Vulnerability | 2023-07-26 | 5.5 | past due |
| overdue 1122d2023-08-15 | CVE-2023-35078 | Ivanti / Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile Authentication Bypass Vulnerability | 2023-07-25 | 9.8 | past dueransomware |
| overdue 1127d2023-08-10 | CVE-2023-38205 | Adobe / ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2023-07-20 | 7.5 | past due |
| overdue 1127d2023-08-10 | CVE-2023-29298 | Adobe / ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2023-07-20 | 7.5 | past due |
| overdue 1128d2023-08-09 | CVE-2023-3519 | Citrix / NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability | 2023-07-19 | 9.8 | past dueransomware |
| overdue 1108d2023-08-29 | CVE-2023-36884 | Microsoft / Windows | Microsoft Windows Search Remote Code Execution Vulnerability | 2023-07-17 | 7.5 | past dueransomware |
| overdue 1134d2023-08-03 | CVE-2023-37450 | Apple / Multiple Products | Apple Multiple Products WebKit Code Execution Vulnerability | 2023-07-13 | 8.8 | past due |
| overdue 1134d2023-08-03 | CVE-2022-29303 | SolarView / Compact | SolarView Compact Command Injection Vulnerability | 2023-07-13 | 9.8 | past due |
| overdue 1136d2023-08-01 | CVE-2023-36874 | Microsoft / Windows | Microsoft Windows Error Reporting Service Privilege Escalation Vulnerability | 2023-07-11 | 7.8 | past due |
| overdue 1136d2023-08-01 | CVE-2023-35311 | Microsoft / Outlook | Microsoft Outlook Security Feature Bypass Vulnerability | 2023-07-11 | 8.8 | past due |
| overdue 1136d2023-08-01 | CVE-2023-32049 | Microsoft / Windows | Microsoft Windows Defender SmartScreen Security Feature Bypass Vulnerability | 2023-07-11 | 8.8 | past due |
| overdue 1136d2023-08-01 | CVE-2023-32046 | Microsoft / Windows | Microsoft Windows MSHTML Platform Privilege Escalation Vulnerability | 2023-07-11 | 7.8 | past due |
| overdue 1136d2023-08-01 | CVE-2022-31199 | Netwrix / Auditor | Netwrix Auditor Insecure Object Deserialization Vulnerability | 2023-07-11 | 9.8 | past dueransomware |
| overdue 1140d2023-07-28 | CVE-2021-29256 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-07-07 | 8.8 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25489 | Samsung / Mobile Devices | Samsung Mobile Devices Improper Input Validation Vulnerability | 2023-06-29 | 5.5 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25487 | Samsung / Mobile Devices | Samsung Mobile Devices Out-of-Bounds Read Vulnerability | 2023-06-29 | 7.8 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25395 | Samsung / Mobile Devices | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 | 6.4 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25394 | Samsung / Mobile Devices | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 | 6.4 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25372 | Samsung / Mobile Devices | Samsung Mobile Devices Improper Boundary Check Vulnerability | 2023-06-29 | 6.7 | past due |
| overdue 1148d2023-07-20 | CVE-2021-25371 | Samsung / Mobile Devices | Samsung Mobile Devices Unspecified Vulnerability | 2023-06-29 | 6.7 | past due |
| overdue 1148d2023-07-20 | CVE-2019-20500 | D-Link / DWL-2600AP Access Point | D-Link DWL-2600AP Access Point Command Injection Vulnerability | 2023-06-29 | 7.8 | past due |
| overdue 1148d2023-07-20 | CVE-2019-17621 | D-Link / DIR-859 Router | D-Link DIR-859 Router Command Execution Vulnerability | 2023-06-29 | 9.8 | past due |
| overdue 1154d2023-07-14 | CVE-2023-32439 | Apple / Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2023-06-23 | 8.8 | past due |
| overdue 1154d2023-07-14 | CVE-2023-32435 | Apple / Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2023-06-23 | 8.8 | past due |
| overdue 1154d2023-07-14 | CVE-2023-32434 | Apple / Multiple Products | Apple Multiple Products Integer Overflow Vulnerability | 2023-06-23 | 7.8 | past due |
| overdue 1154d2023-07-14 | CVE-2023-27992 | Zyxel / Multiple Network-Attached Storage (NAS) Devices | Zyxel Multiple NAS Devices Command Injection Vulnerability | 2023-06-23 | 9.8 | past due |
| overdue 1154d2023-07-14 | CVE-2023-20867 | VMware / Tools | VMware Tools Authentication Bypass Vulnerability | 2023-06-23 | 3.9 | past due |
| overdue 1155d2023-07-13 | CVE-2023-20887 | VMware / Aria Operations for Networks | Vmware Aria Operations for Networks Command Injection Vulnerability | 2023-06-22 | 9.8 | past due |
| overdue 1155d2023-07-13 | CVE-2021-44026 | Roundcube / Roundcube Webmail | Roundcube Webmail SQL Injection Vulnerability | 2023-06-22 | 9.8 | past due |
| overdue 1155d2023-07-13 | CVE-2020-35730 | Roundcube / Roundcube Webmail | Roundcube Webmail Cross-Site Scripting (XSS) Vulnerability | 2023-06-22 | 6.1 | past due |
| overdue 1155d2023-07-13 | CVE-2020-12641 | Roundcube / Roundcube Webmail | Roundcube Webmail Remote Code Execution Vulnerability | 2023-06-22 | 9.8 | past due |
| overdue 1155d2023-07-13 | CVE-2016-9079 | Mozilla / Firefox, Firefox ESR, and Thunderbird | Mozilla Firefox, Firefox ESR, and Thunderbird Use-After-Free Vulnerability | 2023-06-22 | 7.5 | past due |
| overdue 1155d2023-07-13 | CVE-2016-0165 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2023-06-22 | 7.8 | past due |
| overdue 1164d2023-07-04 | CVE-2023-27997 | Fortinet / FortiOS and FortiProxy SSL-VPN | Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability | 2023-06-13 | 9.8 | past dueransomware |
| overdue 1170d2023-06-28 | CVE-2023-3079 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2023-06-07 | 8.8 | past due |
| overdue 1172d2023-06-26 | CVE-2023-33010 | Zyxel / Multiple Firewalls | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | 2023-06-05 | 9.8 | past due |
| overdue 1172d2023-06-26 | CVE-2023-33009 | Zyxel / Multiple Firewalls | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | 2023-06-05 | 9.8 | past due |
| overdue 1175d2023-06-23 | CVE-2023-34362 | Progress / MOVEit Transfer | Progress MOVEit Transfer SQL Injection Vulnerability | 2023-06-02 | 9.8 | past dueransomware |
| overdue 1177d2023-06-21 | CVE-2023-28771 | Zyxel / Multiple Firewalls | Zyxel Multiple Firewalls OS Command Injection Vulnerability | 2023-05-31 | 9.8 | past due |
| overdue 1182d2023-06-16 | CVE-2023-2868 | Barracuda Networks / Email Security Gateway (ESG) Appliance | Barracuda Networks ESG Appliance Improper Input Validation Vulnerability | 2023-05-26 | 9.8 | past due |
| overdue 1186d2023-06-12 | CVE-2023-32409 | Apple / Multiple Products | Apple Multiple Products WebKit Sandbox Escape Vulnerability | 2023-05-22 | 8.6 | past due |
| overdue 1186d2023-06-12 | CVE-2023-32373 | Apple / Multiple Products | Apple Multiple Products WebKit Use-After-Free Vulnerability | 2023-05-22 | 8.8 | past due |
| overdue 1186d2023-06-12 | CVE-2023-28204 | Apple / Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability | 2023-05-22 | 6.5 | past due |
| overdue 1189d2023-06-09 | CVE-2023-21492 | Samsung / Mobile Devices | Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability | 2023-05-19 | 4.4 | past due |
| overdue 1189d2023-06-09 | CVE-2016-6415 | Cisco / IOS, IOS XR, and IOS XE | Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability | 2023-05-19 | 7.5 | past due |
| overdue 1189d2023-06-09 | CVE-2004-1464 | Cisco / IOS | Cisco IOS Denial-of-Service Vulnerability | 2023-05-19 | 5.9 | past due |
| overdue 1196d2023-06-02 | CVE-2023-25717 | Ruckus Wireless / Multiple Products | Multiple Ruckus Wireless Products CSRF and RCE Vulnerability | 2023-05-12 | 9.8 | past due |
| overdue 1196d2023-06-02 | CVE-2021-3560 | Red Hat / Polkit | Red Hat Polkit Incorrect Authorization Vulnerability | 2023-05-12 | 7.8 | past due |
| overdue 1196d2023-06-02 | CVE-2016-8735 | Apache / Tomcat | Apache Tomcat Remote Code Execution Vulnerability | 2023-05-12 | 9.8 | past due |
| overdue 1196d2023-06-02 | CVE-2016-3427 | Oracle / Java SE and JRockit | Oracle Java SE and JRockit Unspecified Vulnerability | 2023-05-12 | 9.8 | past due |
| overdue 1196d2023-06-02 | CVE-2015-5317 | Jenkins / Jenkins User Interface (UI) | Jenkins User Interface (UI) Information Disclosure Vulnerability | 2023-05-12 | 7.5 | past due |
| overdue 1196d2023-06-02 | CVE-2014-0196 | Linux / Kernel | Linux Kernel Race Condition Vulnerability | 2023-05-12 | 5.5 | past due |
| overdue 1196d2023-06-02 | CVE-2010-3904 | Linux / Kernel | Linux Kernel Improper Input Validation Vulnerability | 2023-05-12 | 7.8 | past due |
| overdue 1199d2023-05-30 | CVE-2023-29336 | Microsoft / Win32k | Microsoft Win32K Privilege Escalation Vulnerability | 2023-05-09 | 7.8 | past due |
| overdue 1207d2023-05-22 | CVE-2023-21839 | Oracle / WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2023-05-01 | 7.5 | past due |
| overdue 1207d2023-05-22 | CVE-2023-1389 | TP-Link / Archer AX21 | TP-Link Archer AX-21 Command Injection Vulnerability | 2023-05-01 | 8.8 | past due |
| overdue 1207d2023-05-22 | CVE-2021-45046 | Apache / Log4j2 | Apache Log4j2 Deserialization of Untrusted Data Vulnerability | 2023-05-01 | 9.0 | past dueransomware |
| overdue 1217d2023-05-12 | CVE-2023-28432 | MinIO / MinIO | MinIO Information Disclosure Vulnerability | 2023-04-21 | 7.5 | past due |
| overdue 1217d2023-05-12 | CVE-2023-27350 | PaperCut / MF/NG | PaperCut MF/NG Improper Access Control Vulnerability | 2023-04-21 | 9.8 | past dueransomware |
| overdue 1217d2023-05-12 | CVE-2023-2136 | Google / Chromium Skia | Google Chrome Skia Integer Overflow Vulnerability | 2023-04-21 | 9.6 | past due |
| overdue 1219d2023-05-10 | CVE-2017-6742 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2023-04-19 | 8.8 | past due |
| overdue 1221d2023-05-08 | CVE-2023-2033 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2023-04-17 | 8.8 | past due |
| overdue 1221d2023-05-08 | CVE-2019-8526 | Apple / macOS | Apple macOS Use-After-Free Vulnerability | 2023-04-17 | 7.8 | past due |
| overdue 1225d2023-05-04 | CVE-2023-29492 | Novi Survey / Novi Survey | Novi Survey Insecure Deserialization Vulnerability | 2023-04-13 | 9.8 | past due |
| overdue 1225d2023-05-04 | CVE-2023-20963 | Android / Framework | Android Framework Privilege Escalation Vulnerability | 2023-04-13 | 7.8 | past due |
| overdue 1227d2023-05-02 | CVE-2023-28252 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-04-11 | 7.8 | past dueransomware |
| overdue 1228d2023-05-01 | CVE-2023-28206 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS IOSurfaceAccelerator Out-of-Bounds Write Vulnerability | 2023-04-10 | 8.6 | past due |
| overdue 1228d2023-05-01 | CVE-2023-28205 | Apple / Multiple Products | Apple Multiple Products WebKit Use-After-Free Vulnerability | 2023-04-10 | 8.8 | past due |
| overdue 1231d2023-04-28 | CVE-2023-26083 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Information Disclosure Vulnerability | 2023-04-07 | 3.3 | past due |
| overdue 1231d2023-04-28 | CVE-2021-27878 | Veritas / Backup Exec Agent | Veritas Backup Exec Agent Command Execution Vulnerability | 2023-04-07 | 8.8 | past dueransomware |
| overdue 1231d2023-04-28 | CVE-2021-27877 | Veritas / Backup Exec Agent | Veritas Backup Exec Agent Improper Authentication Vulnerability | 2023-04-07 | 9.8 | past dueransomware |
| overdue 1231d2023-04-28 | CVE-2021-27876 | Veritas / Backup Exec Agent | Veritas Backup Exec Agent File Access Vulnerability | 2023-04-07 | 8.1 | past dueransomware |
| overdue 1231d2023-04-28 | CVE-2019-1388 | Microsoft / Windows | Microsoft Windows Certificate Dialog Privilege Escalation Vulnerability | 2023-04-07 | 7.8 | past dueransomware |
| overdue 1235d2023-04-24 | CVE-2022-27926 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2023-04-03 | 6.1 | past due |
| overdue 1239d2023-04-20 | CVE-2023-0266 | Linux / Kernel | Linux Kernel Use-After-Free Vulnerability | 2023-03-30 | 7.0 | past due |
| overdue 1239d2023-04-20 | CVE-2022-42948 | Fortra / Cobalt Strike | Fortra Cobalt Strike User Interface Remote Code Execution Vulnerability | 2023-03-30 | 9.8 | past due |
| overdue 1239d2023-04-20 | CVE-2022-39197 | Fortra / Cobalt Strike | Fortra Cobalt Strike Teamserver Cross-Site Scripting (XSS) Vulnerability | 2023-03-30 | 6.1 | past due |
| overdue 1239d2023-04-20 | CVE-2022-38181 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-03-30 | 8.8 | past due |
| overdue 1239d2023-04-20 | CVE-2022-3038 | Google / Chromium Network Service | Google Chromium Network Service Use-After-Free Vulnerability | 2023-03-30 | 8.8 | past due |
| overdue 1239d2023-04-20 | CVE-2022-22706 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Unspecified Vulnerability | 2023-03-30 | 7.8 | past due |
| overdue 1239d2023-04-20 | CVE-2021-30900 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability | 2023-03-30 | 7.8 | past due |
| overdue 1239d2023-04-20 | CVE-2017-7494 | Samba / Samba | Samba Remote Code Execution Vulnerability | 2023-03-30 | 9.8 | past dueransomware |
| overdue 1239d2023-04-20 | CVE-2013-3163 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2023-03-30 | 8.8 | past due |
| overdue 1254d2023-04-05 | CVE-2023-26360 | Adobe / ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2023-03-15 | 8.6 | past due |
| overdue 1255d2023-04-04 | CVE-2023-24880 | Microsoft / Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2023-03-14 | 4.4 | past dueransomware |
| overdue 1255d2023-04-04 | CVE-2023-23397 | Microsoft / Office | Microsoft Office Outlook Privilege Escalation Vulnerability | 2023-03-14 | 9.8 | past due |
| overdue 1255d2023-04-04 | CVE-2022-41328 | Fortinet / FortiOS | Fortinet FortiOS Path Traversal Vulnerability | 2023-03-14 | 7.1 | past due |
| overdue 1259d2023-03-31 | CVE-2021-39144 | XStream / XStream | XStream Remote Code Execution Vulnerability | 2023-03-10 | 8.5 | past due |
| overdue 1259d2023-03-31 | CVE-2020-5741 | Plex / Media Server | Plex Media Server Remote Code Execution Vulnerability | 2023-03-10 | 7.2 | past due |
| overdue 1262d2023-03-28 | CVE-2022-35914 | Teclib / GLPI | Teclib GLPI Remote Code Execution Vulnerability | 2023-03-07 | 9.8 | past due |
| overdue 1262d2023-03-28 | CVE-2022-33891 | Apache / Spark | Apache Spark Command Injection Vulnerability | 2023-03-07 | 8.8 | past due |
| overdue 1262d2023-03-28 | CVE-2022-28810 | Zoho / ManageEngine | Zoho ManageEngine ADSelfService Plus Remote Code Execution Vulnerability | 2023-03-07 | 6.8 | past due |
| overdue 1270d2023-03-20 | CVE-2022-36537 | ZK Framework / AuUploader | ZK Framework AuUploader Unspecified Vulnerability | 2023-02-27 | 7.5 | past dueransomware |
| overdue 1276d2023-03-14 | CVE-2022-47986 | IBM / Aspera Faspex | IBM Aspera Faspex Code Execution Vulnerability | 2023-02-21 | 9.8 | past dueransomware |
| overdue 1276d2023-03-14 | CVE-2022-41223 | Mitel / MiVoice Connect | Mitel MiVoice Connect Code Injection Vulnerability | 2023-02-21 | 6.8 | past dueransomware |
| overdue 1276d2023-03-14 | CVE-2022-40765 | Mitel / MiVoice Connect | Mitel MiVoice Connect Command Injection Vulnerability | 2023-02-21 | 6.8 | past dueransomware |
| overdue 1281d2023-03-09 | CVE-2022-46169 | Cacti / Cacti | Cacti Command Injection Vulnerability | 2023-02-16 | 9.8 | past due |
| overdue 1283d2023-03-07 | CVE-2023-23529 | Apple / Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2023-02-14 | 8.8 | past due |
| overdue 1283d2023-03-07 | CVE-2023-23376 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-02-14 | 7.8 | past dueransomware |
| overdue 1283d2023-03-07 | CVE-2023-21823 | Microsoft / Windows | Microsoft Windows Graphic Component Privilege Escalation Vulnerability | 2023-02-14 | 7.8 | past due |
| overdue 1283d2023-03-07 | CVE-2023-21715 | Microsoft / Office | Microsoft Office Publisher Security Feature Bypass Vulnerability | 2023-02-14 | 7.3 | past due |
| overdue 1287d2023-03-03 | CVE-2023-0669 | Fortra / GoAnywhere MFT | Fortra GoAnywhere MFT Remote Code Execution Vulnerability | 2023-02-10 | 7.2 | past dueransomware |
| overdue 1287d2023-03-03 | CVE-2022-24990 | TerraMaster / TerraMaster OS | TerraMaster OS Remote Command Execution Vulnerability | 2023-02-10 | 7.5 | past dueransomware |
| overdue 1287d2023-03-03 | CVE-2015-2291 | Intel / Ethernet Diagnostics Driver for Windows | Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability | 2023-02-10 | 7.8 | past dueransomware |
| overdue 1295d2023-02-23 | CVE-2023-22952 | SugarCRM / Multiple Products | Multiple SugarCRM Products Remote Code Execution Vulnerability | 2023-02-02 | 8.8 | past due |
| overdue 1295d2023-02-23 | CVE-2022-21587 | Oracle / E-Business Suite | Oracle E-Business Suite Unspecified Vulnerability | 2023-02-02 | 9.8 | past dueransomware |
| overdue 1302d2023-02-16 | CVE-2017-11357 | Telerik / User Interface (UI) for ASP.NET AJAX | Telerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerability | 2023-01-26 | 9.8 | past dueransomware |
| overdue 1305d2023-02-13 | CVE-2022-47966 | Zoho / ManageEngine | Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability | 2023-01-23 | 9.8 | past dueransomware |
| overdue 1311d2023-02-07 | CVE-2022-44877 | CWP / Control Web Panel | CWP Control Web Panel OS Command Injection Vulnerability | 2023-01-17 | 9.8 | past due |
| overdue 1318d2023-01-31 | CVE-2023-21674 | Microsoft / Windows | Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability | 2023-01-10 | 8.8 | past due |
| overdue 1318d2023-01-31 | CVE-2022-41080 | Microsoft / Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2023-01-10 | 8.8 | past dueransomware |
| overdue 1330d2023-01-19 | CVE-2018-5430 | TIBCO / JasperReports | TIBCO JasperReports Server Information Disclosure Vulnerability | 2022-12-29 | 8.8 | past due |
| overdue 1330d2023-01-19 | CVE-2018-18809 | TIBCO / JasperReports | TIBCO JasperReports Library Directory Traversal Vulnerability | 2022-12-29 | 6.5 | past due |
| overdue 1345d2023-01-04 | CVE-2022-42856 | Apple / iOS | Apple iOS Type Confusion Vulnerability | 2022-12-14 | 8.8 | past due |
| overdue 1346d2023-01-03 | CVE-2022-44698 | Microsoft / Defender | Microsoft Defender SmartScreen Security Feature Bypass Vulnerability | 2022-12-13 | 5.4 | past dueransomware |
| overdue 1346d2023-01-03 | CVE-2022-42475 | Fortinet / FortiOS | Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability | 2022-12-13 | 9.8 | past dueransomware |
| overdue 1346d2023-01-03 | CVE-2022-27518 | Citrix / Application Delivery Controller (ADC) and Gateway | Citrix Application Delivery Controller (ADC) and Gateway Authentication Bypass Vulnerability | 2022-12-13 | 9.8 | past due |
| overdue 1346d2023-01-03 | CVE-2022-26501 | Veeam / Backup & Replication | Veeam Backup & Replication Remote Code Execution Vulnerability | 2022-12-13 | 9.8 | past dueransomware |
| overdue 1346d2023-01-03 | CVE-2022-26500 | Veeam / Backup & Replication | Veeam Backup & Replication Remote Code Execution Vulnerability | 2022-12-13 | 8.8 | past dueransomware |
| overdue 1354d2022-12-26 | CVE-2022-4262 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-12-05 | 8.8 | past due |
| overdue 1361d2022-12-19 | CVE-2022-4135 | Google / Chromium GPU | Google Chromium GPU Heap Buffer Overflow Vulnerability | 2022-11-28 | 9.6 | past due |
| overdue 1361d2022-12-19 | CVE-2021-35587 | Oracle / Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-11-28 | 9.8 | past due |
| overdue 1371d2022-12-09 | CVE-2022-41049 | Microsoft / Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2022-11-14 | 5.4 | past due |
| overdue 1371d2022-12-09 | CVE-2022-41128 | Microsoft / Windows | Microsoft Windows Scripting Languages Remote Code Execution Vulnerability | 2022-11-08 | 8.8 | past due |
| overdue 1371d2022-12-09 | CVE-2022-41125 | Microsoft / Windows | Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability | 2022-11-08 | 7.8 | past due |
| overdue 1371d2022-12-09 | CVE-2022-41091 | Microsoft / Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2022-11-08 | 5.4 | past dueransomware |
| overdue 1371d2022-12-09 | CVE-2022-41073 | Microsoft / Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-11-08 | 7.8 | past dueransomware |
| overdue 1381d2022-11-29 | CVE-2021-25370 | Samsung / Mobile Devices | Samsung Mobile Devices Memory Corruption Vulnerability | 2022-11-08 | 4.4 | past due |
| overdue 1381d2022-11-29 | CVE-2021-25369 | Samsung / Mobile Devices | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 | 5.5 | past due |
| overdue 1381d2022-11-29 | CVE-2021-25337 | Samsung / Mobile Devices | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 | 7.1 | past due |
| overdue 1392d2022-11-18 | CVE-2022-3723 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-10-28 | 8.8 | past due |
| overdue 1395d2022-11-15 | CVE-2022-42827 | Apple / iOS and iPadOS | Apple iOS and iPadOS Out-of-Bounds Write Vulnerability | 2022-10-25 | 7.8 | past due |
| overdue 1396d2022-11-14 | CVE-2020-3433 | Cisco / AnyConnect Secure | Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability | 2022-10-24 | 7.8 | past dueransomware |
| overdue 1396d2022-11-14 | CVE-2020-3153 | Cisco / AnyConnect Secure | Cisco AnyConnect Secure Mobility Client for Windows Uncontrolled Search Path Vulnerability | 2022-10-24 | 6.5 | past dueransomware |
| overdue 1396d2022-11-14 | CVE-2018-19323 | GIGABYTE / Multiple Products | GIGABYTE Multiple Products Privilege Escalation Vulnerability | 2022-10-24 | 9.8 | past dueransomware |
| overdue 1396d2022-11-14 | CVE-2018-19322 | GIGABYTE / Multiple Products | GIGABYTE Multiple Products Code Execution Vulnerability | 2022-10-24 | 7.8 | past dueransomware |
| overdue 1396d2022-11-14 | CVE-2018-19321 | GIGABYTE / Multiple Products | GIGABYTE Multiple Products Privilege Escalation Vulnerability | 2022-10-24 | 7.8 | past dueransomware |
| overdue 1396d2022-11-14 | CVE-2018-19320 | GIGABYTE / Multiple Products | GIGABYTE Multiple Products Unspecified Vulnerability | 2022-10-24 | 7.8 | past dueransomware |
| overdue 1400d2022-11-10 | CVE-2022-41352 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability | 2022-10-20 | 9.8 | past dueransomware |
| overdue 1400d2022-11-10 | CVE-2021-3493 | Linux / Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-10-20 | 7.8 | past due |
| overdue 1409d2022-11-01 | CVE-2022-41033 | Microsoft / Windows COM+ Event System Service | Microsoft Windows COM+ Event System Service Privilege Escalation Vulnerability | 2022-10-11 | 7.8 | past due |
| overdue 1409d2022-11-01 | CVE-2022-40684 | Fortinet / Multiple Products | Fortinet Multiple Products Authentication Bypass Vulnerability | 2022-10-11 | 9.8 | past dueransomware |
| overdue 1420d2022-10-21 | CVE-2022-41082 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2022-09-30 | 8.0 | past dueransomware |
| overdue 1420d2022-10-21 | CVE-2022-41040 | Microsoft / Exchange Server | Microsoft Exchange Server Server-Side Request Forgery Vulnerability | 2022-09-30 | 8.8 | past dueransomware |
| overdue 1420d2022-10-21 | CVE-2022-36804 | Atlassian / Bitbucket Server and Data Center | Atlassian Bitbucket Server and Data Center Command Injection Vulnerability | 2022-09-30 | 8.8 | past due |
| overdue 1427d2022-10-14 | CVE-2022-3236 | Sophos / Firewall | Sophos Firewall Code Injection Vulnerability | 2022-09-23 | 9.8 | past due |
| overdue 1428d2022-10-13 | CVE-2022-35405 | Zoho / ManageEngine | Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability | 2022-09-22 | 9.8 | past due |
| overdue 1435d2022-10-06 | CVE-2022-40139 | Trend Micro / Apex One and Apex One as a Service | Trend Micro Apex One and Apex One as a Service Improper Validation Vulnerability | 2022-09-15 | 7.2 | past due |
| overdue 1435d2022-10-06 | CVE-2013-6282 | Linux / Kernel | Linux Kernel Improper Input Validation Vulnerability | 2022-09-15 | 8.8 | past due |
| overdue 1435d2022-10-06 | CVE-2013-2597 | Code Aurora / ACDB Audio Driver | Code Aurora ACDB Audio Driver Stack-based Buffer Overflow Vulnerability | 2022-09-15 | 8.4 | past due |
| overdue 1435d2022-10-06 | CVE-2013-2596 | Linux / Kernel | Linux Kernel Integer Overflow Vulnerability | 2022-09-15 | 7.8 | past due |
| overdue 1435d2022-10-06 | CVE-2013-2094 | Linux / Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-09-15 | 8.4 | past due |
| overdue 1435d2022-10-06 | CVE-2010-2568 | Microsoft / Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-09-15 | 7.8 | past due |
| overdue 1436d2022-10-05 | CVE-2022-37969 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2022-09-14 | 7.8 | past dueransomware |
| overdue 1436d2022-10-05 | CVE-2022-32917 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Remote Code Execution Vulnerability | 2022-09-14 | 7.8 | past due |
| overdue 1442d2022-09-29 | CVE-2022-3075 | Google / Chromium Mojo | Google Chromium Mojo Insufficient Data Validation Vulnerability | 2022-09-08 | 9.6 | past due |
| overdue 1442d2022-09-29 | CVE-2022-27593 | QNAP / Photo Station | QNAP Photo Station Externally Controlled Reference Vulnerability | 2022-09-08 | 9.1 | past dueransomware |
| overdue 1442d2022-09-29 | CVE-2022-26258 | D-Link / DIR-820L | D-Link DIR-820L Remote Code Execution Vulnerability | 2022-09-08 | 9.8 | past due |
| overdue 1442d2022-09-29 | CVE-2020-9934 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Input Validation Vulnerability | 2022-09-08 | 5.5 | past due |
| overdue 1442d2022-09-29 | CVE-2018-7445 | MikroTik / RouterOS | MikroTik RouterOS Stack-Based Buffer Overflow Vulnerability | 2022-09-08 | 9.8 | past due |
| overdue 1442d2022-09-29 | CVE-2018-6530 | D-Link / Multiple Routers | D-Link Multiple Routers OS Command Injection Vulnerability | 2022-09-08 | 9.8 | past dueransomware |
| overdue 1442d2022-09-29 | CVE-2018-2628 | Oracle / WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2022-09-08 | 9.8 | past due |
| overdue 1442d2022-09-29 | CVE-2018-13374 | Fortinet / FortiOS and FortiADC | Fortinet FortiOS and FortiADC Improper Access Control Vulnerability | 2022-09-08 | 4.3 | past dueransomware |
| overdue 1442d2022-09-29 | CVE-2017-5521 | NETGEAR / Multiple Devices | NETGEAR Multiple Devices Exposure of Sensitive Information Vulnerability | 2022-09-08 | 8.1 | past due |
| overdue 1442d2022-09-29 | CVE-2011-4723 | D-Link / DIR-300 Router | D-Link DIR-300 Router Cleartext Storage of a Password Vulnerability | 2022-09-08 | 5.7 | past due |
| overdue 1442d2022-09-29 | CVE-2011-1823 | Android / Android OS | Android OS Privilege Escalation Vulnerability | 2022-09-08 | 7.8 | past due |
| overdue 1456d2022-09-15 | CVE-2022-26352 | dotCMS / dotCMS | dotCMS Unrestricted Upload of File Vulnerability | 2022-08-25 | 9.8 | past dueransomware |
| overdue 1456d2022-09-15 | CVE-2022-24706 | Apache / CouchDB | Apache CouchDB Insecure Default Initialization of Resource Vulnerability | 2022-08-25 | 9.8 | past due |
| overdue 1456d2022-09-15 | CVE-2022-24112 | Apache / APISIX | Apache APISIX Authentication Bypass Vulnerability | 2022-08-25 | 9.8 | past due |
| overdue 1456d2022-09-15 | CVE-2022-22963 | VMware Tanzu / Spring Cloud | VMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability | 2022-08-25 | 9.8 | past due |
| overdue 1456d2022-09-15 | CVE-2022-2294 | WebRTC / WebRTC | WebRTC Heap Buffer Overflow Vulnerability | 2022-08-25 | 8.8 | past dueransomware |
| overdue 1456d2022-09-15 | CVE-2021-39226 | Grafana Labs / Grafana | Grafana Authentication Bypass Vulnerability | 2022-08-25 | 7.3 | past due |
| overdue 1456d2022-09-15 | CVE-2021-38406 | Delta Electronics / DOPSoft 2 | Delta Electronics DOPSoft 2 Improper Input Validation Vulnerability | 2022-08-25 | 7.8 | past due |
| overdue 1456d2022-09-15 | CVE-2021-31010 | Apple / iOS, macOS, watchOS | Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability | 2022-08-25 | 7.5 | past due |
| overdue 1456d2022-09-15 | CVE-2020-36193 | PEAR / Archive_Tar | PEAR Archive_Tar Improper Link Resolution Vulnerability | 2022-08-25 | 7.5 | past due |
| overdue 1456d2022-09-15 | CVE-2020-28949 | PEAR / Archive_Tar | PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability | 2022-08-25 | 7.8 | past due |
| overdue 1459d2022-09-12 | CVE-2022-0028 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Reflected Amplification Denial-of-Service Vulnerability | 2022-08-22 | 8.6 | past due |
| overdue 1463d2022-09-08 | CVE-2022-32894 | Apple / iOS and macOS | Apple iOS and macOS Out-of-Bounds Write Vulnerability | 2022-08-18 | 7.8 | past due |
| overdue 1463d2022-09-08 | CVE-2022-32893 | Apple / iOS and macOS | Apple iOS and macOS Out-of-Bounds Write Vulnerability | 2022-08-18 | 8.8 | past due |
| overdue 1463d2022-09-08 | CVE-2022-2856 | Google / Chromium Intents | Google Chromium Intents Insufficient Input Validation Vulnerability | 2022-08-18 | 6.5 | past due |
| overdue 1463d2022-09-08 | CVE-2022-26923 | Microsoft / Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-08-18 | 8.8 | past due |
| overdue 1463d2022-09-08 | CVE-2022-22536 | SAP / Multiple Products | SAP Multiple Products HTTP Request Smuggling Vulnerability | 2022-08-18 | 10.0 | past due |
| overdue 1463d2022-09-08 | CVE-2022-21971 | Microsoft / Windows | Microsoft Windows Runtime Remote Code Execution Vulnerability | 2022-08-18 | 7.8 | past due |
| overdue 1463d2022-09-08 | CVE-2017-15944 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Remote Code Execution Vulnerability | 2022-08-18 | 9.8 | past due |
| overdue 1470d2022-09-01 | CVE-2022-37042 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Authentication Bypass Vulnerability | 2022-08-11 | 9.8 | past dueransomware |
| overdue 1470d2022-09-01 | CVE-2022-27925 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability | 2022-08-11 | 7.2 | past dueransomware |
| overdue 1472d2022-08-30 | CVE-2022-34713 | Microsoft / Windows | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | 2022-08-09 | 7.8 | past due |
| overdue 1472d2022-08-30 | CVE-2022-30333 | RARLAB / UnRAR | RARLAB UnRAR Directory Traversal Vulnerability | 2022-08-09 | 7.5 | past dueransomware |
| overdue 1477d2022-08-25 | CVE-2022-27924 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Command Injection Vulnerability | 2022-08-04 | 7.5 | past dueransomware |
| overdue 1483d2022-08-19 | CVE-2022-26138 | Atlassian / Confluence | Atlassian Questions For Confluence App Hard-coded Credentials Vulnerability | 2022-07-29 | 9.8 | past due |
| overdue 1500d2022-08-02 | CVE-2022-22047 | Microsoft / Windows | Microsoft Windows Client Server Runtime Subsystem (CSRSS) Privilege Escalation Vulnerability | 2022-07-12 | 7.8 | past due |
| overdue 1511d2022-07-22 | CVE-2022-26925 | Microsoft / Windows | Microsoft Windows LSA Spoofing Vulnerability | 2022-07-01 | 5.9 | past due |
| overdue 1515d2022-07-18 | CVE-2022-29499 | Mitel / MiVoice Connect | Mitel MiVoice Connect Data Validation Vulnerability | 2022-06-27 | 9.8 | past dueransomware |
| overdue 1515d2022-07-18 | CVE-2021-4034 | Red Hat / Polkit | Red Hat Polkit Out-of-Bounds Read and Write Vulnerability | 2022-06-27 | 7.8 | past dueransomware |
| overdue 1515d2022-07-18 | CVE-2021-30983 | Apple / iOS and iPadOS | Apple iOS and iPadOS Buffer Overflow Vulnerability | 2022-06-27 | 7.8 | past due |
| overdue 1515d2022-07-18 | CVE-2021-30533 | Google / Chromium PopupBlocker | Google Chromium PopupBlocker Security Bypass Vulnerability | 2022-06-27 | 6.5 | past due |
| overdue 1515d2022-07-18 | CVE-2020-9907 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 | 7.8 | past due |
| overdue 1515d2022-07-18 | CVE-2020-3837 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 | 7.8 | past due |
| overdue 1515d2022-07-18 | CVE-2019-8605 | Apple / Multiple Products | Apple Multiple Products Use-After-Free Vulnerability | 2022-06-27 | 7.8 | past due |
| overdue 1515d2022-07-18 | CVE-2018-4344 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 | 7.8 | past due |
| overdue 1528d2022-07-05 | CVE-2022-30190 | Microsoft / Windows | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | 2022-06-14 | 7.8 | past dueransomware |
| overdue 1533d2022-06-30 | CVE-2021-38163 | SAP / NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability | 2022-06-09 | 8.8 | past due |
| overdue 1533d2022-06-30 | CVE-2016-2388 | SAP / NetWeaver | SAP NetWeaver Information Disclosure Vulnerability | 2022-06-09 | 5.3 | past due |
| overdue 1533d2022-06-30 | CVE-2016-2386 | SAP / NetWeaver | SAP NetWeaver SQL Injection Vulnerability | 2022-06-09 | 9.8 | past due |
| overdue 1541d2022-06-22 | CVE-2019-7195 | QNAP / Photo Station | QNAP Photo Station Path Traversal Vulnerability | 2022-06-08 | 9.8 | past dueransomware |
| overdue 1541d2022-06-22 | CVE-2019-7194 | QNAP / Photo Station | QNAP Photo Station Path Traversal Vulnerability | 2022-06-08 | 9.8 | past dueransomware |
| overdue 1541d2022-06-22 | CVE-2019-7193 | QNAP / QTS | QNAP QTS Improper Input Validation Vulnerability | 2022-06-08 | 9.8 | past dueransomware |
| overdue 1541d2022-06-22 | CVE-2019-7192 | QNAP / Photo Station | QNAP Photo Station Improper Access Control Vulnerability | 2022-06-08 | 9.8 | past dueransomware |
| overdue 1541d2022-06-22 | CVE-2019-5825 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2022-06-08 | 6.5 | past due |
| overdue 1541d2022-06-22 | CVE-2019-15271 | Cisco / RV Series Routers | Cisco RV Series Routers Deserialization of Untrusted Data Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2018-6065 | Google / Chromium V8 | Google Chromium V8 Integer Overflow Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2018-4990 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Double Free Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2018-17480 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2018-17463 | Google / Chromium V8 | Google Chromium V8 Remote Code Execution Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2017-6862 | NETGEAR / Multiple Devices | NETGEAR Multiple Devices Buffer Overflow Vulnerability | 2022-06-08 | 9.8 | past due |
| overdue 1541d2022-06-22 | CVE-2017-5070 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2017-5030 | Google / Chromium V8 | Google Chromium V8 Memory Corruption Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2016-5198 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2016-1646 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Read Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2013-1331 | Microsoft / Office | Microsoft Office Buffer Overflow Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2012-5054 | Adobe / Flash Player | Adobe Flash Player Integer Overflow Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2012-4969 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-06-08 | 8.1 | past due |
| overdue 1541d2022-06-22 | CVE-2012-1889 | Microsoft / XML Core Services | Microsoft XML Core Services Memory Corruption Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2012-0767 | Adobe / Flash Player | Adobe Flash Player Cross-Site Scripting (XSS) Vulnerability | 2022-06-08 | 6.1 | past due |
| overdue 1541d2022-06-22 | CVE-2012-0754 | Adobe / Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-06-08 | 8.1 | past due |
| overdue 1541d2022-06-22 | CVE-2012-0151 | Microsoft / Windows | Microsoft Windows Authenticode Signature Verification Remote Code Execution Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2011-2462 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Universal 3D Memory Corruption Vulnerability | 2022-06-08 | 9.8 | past due |
| overdue 1541d2022-06-22 | CVE-2011-0609 | Adobe / Flash Player | Adobe Flash Player Unspecified Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2010-2883 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Stack-Based Buffer Overflow Vulnerability | 2022-06-08 | 7.3 | past due |
| overdue 1541d2022-06-22 | CVE-2010-2572 | Microsoft / PowerPoint | Microsoft PowerPoint Buffer Overflow Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2010-1297 | Adobe / Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2009-4324 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2009-3953 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Universal 3D Remote Code Execution Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2009-1862 | Adobe / Acrobat and Reader, Flash Player | Adobe Acrobat and Reader, Flash Player Unspecified Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2009-0563 | Microsoft / Office | Microsoft Office Buffer Overflow Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2009-0557 | Microsoft / Office | Microsoft Office Object Record Corruption Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2008-0655 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Unspecified Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1541d2022-06-22 | CVE-2007-5659 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Buffer Overflow Vulnerability | 2022-06-08 | 7.8 | past due |
| overdue 1541d2022-06-22 | CVE-2006-2492 | Microsoft / Word | Microsoft Word Malformed Object Pointer Vulnerability | 2022-06-08 | 8.8 | past due |
| overdue 1557d2022-06-06 | CVE-2022-26134 | Atlassian / Confluence Server/Data Center | Atlassian Confluence Server and Data Center Remote Code Execution Vulnerability | 2022-06-02 | 9.8 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2019-3010 | Oracle / Solaris | Oracle Solaris Privilege Escalation Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2016-7256 | Microsoft / Windows | Microsoft Windows Open Type Font Remote Code Execution Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2016-3393 | Microsoft / Windows | Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2016-1010 | Adobe / Flash Player and AIR | Adobe Flash Player and AIR Integer Overflow Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2016-0984 | Adobe / Flash Player and AIR | Adobe Flash Player and AIR Use-After-Free Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2016-0034 | Microsoft / Silverlight | Microsoft Silverlight Runtime Remote Code Execution Vulnerability | 2022-05-25 | 8.8 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2015-8651 | Adobe / Flash Player | Adobe Flash Player Integer Overflow Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-6175 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-4495 | Mozilla / Firefox | Mozilla Firefox Security Feature Bypass Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-2425 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-2360 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-1769 | Microsoft / Windows | Microsoft Windows Mount Manager Privilege Escalation Vulnerability | 2022-05-25 | 6.6 | past due |
| overdue 1548d2022-06-15 | CVE-2015-1671 | Microsoft / Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-0310 | Adobe / Flash Player | Adobe Flash Player ASLR Bypass Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2015-0071 | Microsoft / Internet Explorer | Microsoft Internet Explorer ASLR Bypass Vulnerability | 2022-05-25 | 6.5 | past due |
| overdue 1548d2022-06-15 | CVE-2015-0016 | Microsoft / Windows | Microsoft Windows TS WebProxy Directory Traversal Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-8439 | Adobe / Flash Player | Adobe Flash Player Dereferenced Pointer Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-4148 | Microsoft / Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-4123 | Microsoft / Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-4077 | Microsoft / Input Method Editor (IME) Japanese | Microsoft IME Japanese Privilege Escalation Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-3153 | Linux / Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-05-25 | 7.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-2817 | Microsoft / Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-25 | 8.8 | past due |
| overdue 1548d2022-06-15 | CVE-2014-0546 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Sandbox Bypass Vulnerability | 2022-05-25 | 9.8 | past due |
| overdue 1548d2022-06-15 | CVE-2013-7331 | Microsoft / Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-25 | 6.5 | past due |
| overdue 1548d2022-06-15 | CVE-2013-3993 | IBM / InfoSphere BigInsights | IBM InfoSphere BigInsights Invalid Input Vulnerability | 2022-05-25 | 6.5 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2013-3896 | Microsoft / Silverlight | Microsoft Silverlight Information Disclosure Vulnerability | 2022-05-25 | 5.5 | past due |
| overdue 1548d2022-06-15 | CVE-2013-2423 | Oracle / Java Runtime Environment (JRE) | Oracle JRE Unspecified Vulnerability | 2022-05-25 | 3.7 | past due |
| overdue 1548d2022-06-15 | CVE-2013-0431 | Oracle / Java Runtime Environment (JRE) | Oracle JRE Sandbox Bypass Vulnerability | 2022-05-25 | 5.3 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2013-0422 | Oracle / Java Runtime Environment (JRE) | Oracle JRE Remote Code Execution Vulnerability | 2022-05-25 | 9.8 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2013-0074 | Microsoft / Silverlight | Microsoft Silverlight Double Dereference Vulnerability | 2022-05-25 | 7.8 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2012-1710 | Oracle / Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-05-25 | 9.8 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2010-1428 | Red Hat / JBoss | Red Hat JBoss Information Disclosure Vulnerability | 2022-05-25 | 7.5 | past dueransomware |
| overdue 1548d2022-06-15 | CVE-2010-0840 | Oracle / Java Runtime Environment (JRE) | Oracle JRE Unspecified Vulnerability | 2022-05-25 | 9.8 | past due |
| overdue 1548d2022-06-15 | CVE-2010-0738 | Red Hat / JBoss | Red Hat JBoss Authentication Bypass Vulnerability | 2022-05-25 | 5.3 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2018-8611 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-24 | 7.8 | past due |
| overdue 1549d2022-06-14 | CVE-2018-19953 | QNAP / Network Attached Storage (NAS) | QNAP NAS File Station Cross-Site Scripting Vulnerability | 2022-05-24 | 6.1 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2018-19949 | QNAP / Network Attached Storage (NAS) | QNAP NAS File Station Command Injection Vulnerability | 2022-05-24 | 9.8 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2018-19943 | QNAP / Network Attached Storage (NAS) | QNAP NAS File Station Cross-Site Scripting Vulnerability | 2022-05-24 | 5.4 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2017-8543 | Microsoft / Windows | Microsoft Windows Search Remote Code Execution Vulnerability | 2022-05-24 | 9.8 | past due |
| overdue 1549d2022-06-14 | CVE-2017-8291 | Artifex / Ghostscript | Artifex Ghostscript Type Confusion Vulnerability | 2022-05-24 | 7.8 | past due |
| overdue 1549d2022-06-14 | CVE-2017-18362 | Kaseya / Virtual System/Server Administrator (VSA) | Kaseya VSA SQL Injection Vulnerability | 2022-05-24 | 9.8 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2017-0210 | Microsoft / Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-24 | 8.8 | past due |
| overdue 1549d2022-06-14 | CVE-2017-0149 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-05-24 | 8.8 | past due |
| overdue 1549d2022-06-14 | CVE-2017-0147 | Microsoft / SMBv1 server | Microsoft Windows SMBv1 Information Disclosure Vulnerability | 2022-05-24 | 7.5 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2017-0022 | Microsoft / XML Core Services | Microsoft XML Core Services Information Disclosure Vulnerability | 2022-05-24 | 6.5 | past due |
| overdue 1549d2022-06-14 | CVE-2017-0005 | Microsoft / Windows | Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability | 2022-05-24 | 7.8 | past due |
| overdue 1549d2022-06-14 | CVE-2016-6367 | Cisco / Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) CLI Remote Code Execution Vulnerability | 2022-05-24 | 7.8 | past due |
| overdue 1549d2022-06-14 | CVE-2016-6366 | Cisco / Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) SNMP Buffer Overflow Vulnerability | 2022-05-24 | 8.8 | past due |
| overdue 1549d2022-06-14 | CVE-2016-4657 | Apple / iOS | Apple iOS Webkit Memory Corruption Vulnerability | 2022-05-24 | 8.8 | past due |
| overdue 1549d2022-06-14 | CVE-2016-4656 | Apple / iOS | Apple iOS Memory Corruption Vulnerability | 2022-05-24 | 7.8 | past due |
| overdue 1549d2022-06-14 | CVE-2016-4655 | Apple / iOS | Apple iOS Information Disclosure Vulnerability | 2022-05-24 | 5.5 | past due |
| overdue 1549d2022-06-14 | CVE-2016-3351 | Microsoft / Internet Explorer and Edge | Microsoft Internet Explorer and Edge Information Disclosure Vulnerability | 2022-05-24 | 6.5 | past dueransomware |
| overdue 1549d2022-06-14 | CVE-2016-3298 | Microsoft / Internet Explorer | Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability | 2022-05-24 | 6.5 | past due |
| overdue 1549d2022-06-14 | CVE-2016-0162 | Microsoft / Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-24 | 4.3 | past due |
| overdue 1550d2022-06-13 | CVE-2022-20821 | Cisco / IOS XR | Cisco IOS XR Open Port Vulnerability | 2022-05-23 | 6.5 | past due |
| overdue 1550d2022-06-13 | CVE-2021-30883 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2021-1048 | Android / Kernel | Android Kernel Use-After-Free Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2021-0920 | Android / Kernel | Android Kernel Race Condition Vulnerability | 2022-05-23 | 6.4 | past due |
| overdue 1550d2022-06-13 | CVE-2020-1027 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2020-0638 | Microsoft / Update Notification Manager | Microsoft Update Notification Manager Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past dueransomware |
| overdue 1550d2022-06-13 | CVE-2019-8720 | WebKitGTK / WebKitGTK | WebKitGTK Memory Corruption Vulnerability | 2022-05-23 | 8.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-7287 | Apple / iOS | Apple iOS Memory Corruption Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-7286 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-5786 | Google / Chrome Blink | Google Chrome Blink Use-After-Free Vulnerability | 2022-05-23 | 6.5 | past due |
| overdue 1550d2022-06-13 | CVE-2019-18426 | Meta Platforms / WhatsApp | WhatsApp Cross-Site Scripting Vulnerability | 2022-05-23 | 8.2 | past due |
| overdue 1550d2022-06-13 | CVE-2019-1385 | Microsoft / Windows | Microsoft Windows AppX Deployment Extensions Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past dueransomware |
| overdue 1550d2022-06-13 | CVE-2019-13720 | Google / Chrome WebAudio | Google Chrome WebAudio Use-After-Free Vulnerability | 2022-05-23 | 8.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-11708 | Mozilla / Firefox and Thunderbird | Mozilla Firefox and Thunderbird Sandbox Escape Vulnerability | 2022-05-23 | 10.0 | past due |
| overdue 1550d2022-06-13 | CVE-2019-11707 | Mozilla / Firefox and Thunderbird | Mozilla Firefox and Thunderbird Type Confusion Vulnerability | 2022-05-23 | 8.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-1130 | Microsoft / Windows | Microsoft Windows AppX Deployment Service Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past dueransomware |
| overdue 1550d2022-06-13 | CVE-2019-0880 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2019-0703 | Microsoft / Windows | Microsoft Windows SMB Information Disclosure Vulnerability | 2022-05-23 | 6.5 | past due |
| overdue 1550d2022-06-13 | CVE-2019-0676 | Microsoft / Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-23 | 6.5 | past due |
| overdue 1550d2022-06-13 | CVE-2018-8589 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1550d2022-06-13 | CVE-2018-5002 | Adobe / Flash Player | Adobe Flash Player Stack-based Buffer Overflow Vulnerability | 2022-05-23 | 7.8 | past due |
| overdue 1557d2022-06-06 | CVE-2022-30525 | Zyxel / Multiple Firewalls | Zyxel Multiple Firewalls OS Command Injection Vulnerability | 2022-05-16 | 9.8 | past due |
| overdue 1557d2022-06-06 | CVE-2022-22947 | VMware / Spring Cloud Gateway | VMware Spring Cloud Gateway Code Injection Vulnerability | 2022-05-16 | 10.0 | past due |
| overdue 1563d2022-05-31 | CVE-2022-1388 | F5 / BIG-IP | F5 BIG-IP Missing Authentication Vulnerability | 2022-05-10 | 9.8 | past dueransomware |
| overdue 1569d2022-05-25 | CVE-2021-1789 | Apple / Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2022-05-04 | 8.8 | past due |
| overdue 1569d2022-05-25 | CVE-2019-8506 | Apple / Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2022-05-04 | 8.8 | past due |
| overdue 1569d2022-05-25 | CVE-2014-4113 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-04 | 7.8 | past due |
| overdue 1569d2022-05-25 | CVE-2014-0322 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-05-04 | 8.8 | past due |
| overdue 1569d2022-05-25 | CVE-2014-0160 | OpenSSL / OpenSSL | OpenSSL Information Disclosure Vulnerability | 2022-05-04 | 7.5 | past due |
| overdue 1578d2022-05-16 | CVE-2022-29464 | WSO2 / Multiple Products | WSO2 Multiple Products Unrestrictive Upload of File Vulnerability | 2022-04-25 | 9.8 | past dueransomware |
| overdue 1578d2022-05-16 | CVE-2022-26904 | Microsoft / Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-04-25 | 7.0 | past due |
| overdue 1578d2022-05-16 | CVE-2022-21919 | Microsoft / Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-04-25 | 7.0 | past due |
| overdue 1578d2022-05-16 | CVE-2022-0847 | Linux / Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-04-25 | 7.8 | past due |
| overdue 1578d2022-05-16 | CVE-2021-41357 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-04-25 | 7.8 | past due |
| overdue 1578d2022-05-16 | CVE-2021-40450 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-04-25 | 7.8 | past due |
| overdue 1578d2022-05-16 | CVE-2019-1003029 | Jenkins / Script Security Plugin | Jenkins Script Security Plugin Sandbox Bypass Vulnerability | 2022-04-25 | 9.9 | past due |
| overdue 1584d2022-05-10 | CVE-2022-22718 | Microsoft / Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-04-19 | 7.8 | past due |
| overdue 1584d2022-05-10 | CVE-2019-3568 | Meta Platforms / WhatsApp | WhatsApp VOIP Stack Buffer Overflow Vulnerability | 2022-04-19 | 9.8 | past due |
| overdue 1584d2022-05-10 | CVE-2018-6882 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2022-04-19 | 6.1 | past dueransomware |
| overdue 1588d2022-05-06 | CVE-2022-22960 | VMware / Multiple Products | VMware Multiple Products Privilege Escalation Vulnerability | 2022-04-15 | 7.8 | past due |
| overdue 1588d2022-05-06 | CVE-2022-1364 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-04-15 | 8.8 | past due |
| overdue 1588d2022-05-06 | CVE-2019-3929 | Crestron / Multiple Products | Crestron Multiple Products Command Injection Vulnerability | 2022-04-15 | 9.8 | past due |
| overdue 1588d2022-05-06 | CVE-2019-16057 | D-Link / DNS-320 Storage Device | D-Link DNS-320 Remote Code Execution Vulnerability | 2022-04-15 | 9.8 | past dueransomware |
| overdue 1588d2022-05-06 | CVE-2018-7841 | Schneider Electric / U.motion Builder | Schneider Electric U.motion Builder SQL Injection Vulnerability | 2022-04-15 | 9.8 | past due |
| overdue 1588d2022-05-06 | CVE-2016-4523 | Trihedral / VTScada (formerly VTS) | Trihedral VTScada (formerly VTS) Denial-of-Service Vulnerability | 2022-04-15 | 7.5 | past due |
| overdue 1588d2022-05-06 | CVE-2014-0780 | InduSoft / Web Studio | InduSoft Web Studio NTWebServer Directory Traversal Vulnerability | 2022-04-15 | 9.8 | past due |
| overdue 1588d2022-05-06 | CVE-2010-5330 | Ubiquiti / AirOS | Ubiquiti AirOS Command Injection Vulnerability | 2022-04-15 | 9.8 | past due |
| overdue 1588d2022-05-06 | CVE-2007-3010 | Alcatel / OmniPCX Enterprise | Alcatel OmniPCX Enterprise Remote Code Execution Vulnerability | 2022-04-15 | 9.8 | past due |
| overdue 1589d2022-05-05 | CVE-2022-22954 | VMware / Workspace ONE Access and Identity Manager | VMware Workspace ONE Access and Identity Manager Server-Side Template Injection Vulnerability | 2022-04-14 | 9.8 | past dueransomware |
| overdue 1590d2022-05-04 | CVE-2022-24521 | Microsoft / Windows | Microsoft Windows CLFS Driver Privilege Escalation Vulnerability | 2022-04-13 | 7.8 | past dueransomware |
| overdue 1590d2022-05-04 | CVE-2018-7602 | Drupal / Core | Drupal Core Remote Code Execution Vulnerability | 2022-04-13 | 9.8 | past dueransomware |
| overdue 1590d2022-05-04 | CVE-2018-20753 | Kaseya / Virtual System/Server Administrator (VSA) | Kaseya VSA Remote Code Execution Vulnerability | 2022-04-13 | 9.8 | past dueransomware |
| overdue 1590d2022-05-04 | CVE-2015-5123 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 | 9.8 | past due |
| overdue 1590d2022-05-04 | CVE-2015-5122 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 | 9.8 | past due |
| overdue 1590d2022-05-04 | CVE-2015-3113 | Adobe / Flash Player | Adobe Flash Player Heap-Based Buffer Overflow Vulnerability | 2022-04-13 | 9.8 | past due |
| overdue 1590d2022-05-04 | CVE-2015-2502 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-04-13 | 8.8 | past due |
| overdue 1590d2022-05-04 | CVE-2015-0313 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 | 9.8 | past due |
| overdue 1590d2022-05-04 | CVE-2015-0311 | Adobe / Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-04-13 | 9.8 | past due |
| overdue 1590d2022-05-04 | CVE-2014-9163 | Adobe / Flash Player | Adobe Flash Player Stack-Based Buffer Overflow Vulnerability | 2022-04-13 | 7.8 | past due |
| overdue 1592d2022-05-02 | CVE-2022-23176 | WatchGuard / Firebox and XTM | WatchGuard Firebox and XTM Privilege Escalation Vulnerability | 2022-04-11 | 8.8 | past due |
| overdue 1592d2022-05-02 | CVE-2021-42287 | Microsoft / Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-04-11 | 7.5 | past dueransomware |
| overdue 1592d2022-05-02 | CVE-2021-42278 | Microsoft / Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-04-11 | 7.5 | past dueransomware |
| overdue 1592d2022-05-02 | CVE-2021-39793 | Google / Pixel | Google Pixel Out-of-Bounds Write Vulnerability | 2022-04-11 | 7.8 | past due |
| overdue 1592d2022-05-02 | CVE-2021-27852 | Checkbox / Checkbox Survey | Checkbox Survey Deserialization of Untrusted Data Vulnerability | 2022-04-11 | 9.8 | past due |
| overdue 1592d2022-05-02 | CVE-2021-22600 | Linux / Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-04-11 | 7.0 | past due |
| overdue 1592d2022-05-02 | CVE-2020-2509 | QNAP / QNAP Network-Attached Storage (NAS) | QNAP Network-Attached Storage (NAS) Command Injection Vulnerability | 2022-04-11 | 9.8 | past due |
| overdue 1592d2022-05-02 | CVE-2017-11317 | Telerik / User Interface (UI) for ASP.NET AJAX | Telerik UI for ASP.NET AJAX Unrestricted File Upload Vulnerability | 2022-04-11 | 9.8 | past due |
| overdue 1597d2022-04-27 | CVE-2021-3156 | Sudo / Sudo | Sudo Heap-Based Buffer Overflow Vulnerability | 2022-04-06 | 7.8 | past due |
| overdue 1597d2022-04-27 | CVE-2021-31166 | Microsoft / HTTP Protocol Stack | Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability | 2022-04-06 | 9.8 | past due |
| overdue 1597d2022-04-27 | CVE-2017-0148 | Microsoft / SMBv1 server | Microsoft SMBv1 Server Remote Code Execution Vulnerability | 2022-04-06 | 8.1 | past dueransomware |
| overdue 1599d2022-04-25 | CVE-2022-22965 | VMware / Spring Framework | Spring Framework JDK 9+ Remote Code Execution Vulnerability | 2022-04-04 | 9.8 | past due |
| overdue 1599d2022-04-25 | CVE-2022-22675 | Apple / macOS | Apple macOS Out-of-Bounds Write Vulnerability | 2022-04-04 | 7.8 | past due |
| overdue 1599d2022-04-25 | CVE-2022-22674 | Apple / macOS | Apple macOS Out-of-Bounds Read Vulnerability | 2022-04-04 | 5.5 | past due |
| overdue 1599d2022-04-25 | CVE-2021-45382 | D-Link / Multiple Routers | D-Link Multiple Routers Remote Code Execution Vulnerability | 2022-04-04 | 9.8 | past due |
| overdue 1603d2022-04-21 | CVE-2022-26871 | Trend Micro / Apex Central | Trend Micro Apex Central Arbitrary File Upload Vulnerability | 2022-03-31 | 9.8 | past due |
| overdue 1603d2022-04-21 | CVE-2022-1040 | Sophos / Firewall | Sophos Firewall Authentication Bypass Vulnerability | 2022-03-31 | 9.8 | past due |
| overdue 1603d2022-04-21 | CVE-2021-34484 | Microsoft / Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-03-31 | 7.8 | past due |
| overdue 1603d2022-04-21 | CVE-2021-28799 | QNAP / Network Attached Storage (NAS) | QNAP NAS Improper Authorization Vulnerability | 2022-03-31 | 9.8 | past dueransomware |
| overdue 1603d2022-04-21 | CVE-2021-21551 | Dell / dbutil Driver | Dell dbutil Driver Insufficient Access Control Vulnerability | 2022-03-31 | 7.8 | past due |
| overdue 1603d2022-04-21 | CVE-2018-10562 | Dasan / Gigabit Passive Optical Network (GPON) Routers | Dasan GPON Routers Command Injection Vulnerability | 2022-03-31 | 9.8 | past dueransomware |
| overdue 1603d2022-04-21 | CVE-2018-10561 | Dasan / Gigabit Passive Optical Network (GPON) Routers | Dasan GPON Routers Authentication Bypass Vulnerability | 2022-03-31 | 9.8 | past due |
| overdue 1606d2022-04-18 | CVE-2022-1096 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2022-0543 | Redis / Debian-specific Redis Servers | Debian-specific Redis Server Lua Sandbox Escape Vulnerability | 2022-03-28 | 10.0 | past due |
| overdue 1606d2022-04-18 | CVE-2021-38646 | Microsoft / Office | Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability | 2022-03-28 | 7.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2021-34486 | Microsoft / Windows | Microsoft Windows Event Tracing Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1606d2022-04-18 | CVE-2021-26085 | Atlassian / Confluence Server | Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability | 2022-03-28 | 5.3 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2021-20028 | SonicWall / Secure Remote Access (SRA) | SonicWall Secure Remote Access (SRA) SQL Injection Vulnerability | 2022-03-28 | 9.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2019-7483 | SonicWall / SMA100 | SonicWall SMA100 Directory Traversal Vulnerability | 2022-03-28 | 7.5 | past due |
| overdue 1606d2022-04-18 | CVE-2018-8440 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2018-8406 | Microsoft / DirectX Graphics Kernel (DXGKRNL) | Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2018-8405 | Microsoft / DirectX Graphics Kernel (DXGKRNL) | Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2017-0213 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-28 | 7.3 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2017-0059 | Microsoft / Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-03-28 | 4.3 | past due |
| overdue 1606d2022-04-18 | CVE-2017-0037 | Microsoft / Edge and Internet Explorer | Microsoft Edge and Internet Explorer Type Confusion Vulnerability | 2022-03-28 | 8.1 | past due |
| overdue 1606d2022-04-18 | CVE-2016-7201 | Microsoft / Edge | Microsoft Edge Memory Corruption Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2016-7200 | Microsoft / Edge | Microsoft Edge Memory Corruption Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2016-0189 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-03-28 | 7.5 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2016-0151 | Microsoft / Client-Server Run-time Subsystem (CSRSS) | Microsoft Windows CSRSS Security Feature Bypass Vulnerability | 2022-03-28 | 7.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2016-0040 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1606d2022-04-18 | CVE-2015-2426 | Microsoft / Windows | Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2015-2419 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2015-1770 | Microsoft / Office | Microsoft Office Uninitialized Memory Use Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2013-3660 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1606d2022-04-18 | CVE-2013-2729 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Arbitrary Integer Overflow Vulnerability | 2022-03-28 | 9.8 | past due |
| overdue 1606d2022-04-18 | CVE-2013-2551 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-03-28 | 8.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2013-2465 | Oracle / Java SE | Oracle Java SE Unspecified Vulnerability | 2022-03-28 | 9.8 | past dueransomware |
| overdue 1606d2022-04-18 | CVE-2013-1690 | Mozilla / Firefox and Thunderbird | Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability | 2022-03-28 | 8.8 | past due |
| overdue 1606d2022-04-18 | CVE-2012-5076 | Oracle / Java SE | Oracle Java SE Sandbox Bypass Vulnerability | 2022-03-28 | 9.8 | past due |
| overdue 1606d2022-04-18 | CVE-2012-2539 | Microsoft / Word | Microsoft Word Remote Code Execution Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1606d2022-04-18 | CVE-2012-2034 | Adobe / Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-03-28 | 7.5 | past due |
| overdue 1606d2022-04-18 | CVE-2012-0518 | Oracle / Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-03-28 | 4.7 | past due |
| overdue 1606d2022-04-18 | CVE-2011-2005 | Microsoft / Ancillary Function Driver (afd.sys) | Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1603d2022-04-21 | CVE-2010-4398 | Microsoft / Windows | Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability | 2022-03-28 | 7.8 | past due |
| overdue 1609d2022-04-15 | CVE-2022-26318 | WatchGuard / Firebox and XTM Appliances | WatchGuard Firebox and XTM Appliances Arbitrary Code Execution | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2022-26143 | Mitel / MiCollab, MiVoice Business Express | MiCollab, MiVoice Business Express Access Control Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2022-21999 | Microsoft / Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-03-25 | 7.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2021-42237 | Sitecore / XP | Sitecore XP Remote Command Execution Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2021-22941 | Citrix / ShareFile | Citrix ShareFile Improper Access Control Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2020-9377 | D-Link / DIR-610 Devices | D-Link DIR-610 Devices Remote Command Execution | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-9054 | Zyxel / Multiple Network-Attached Storage (NAS) Devices | Zyxel Multiple NAS Devices OS Command Injection Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-7247 | OpenBSD / OpenSMTPD | OpenSMTPD Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-5410 | VMware Tanzu / Spring Cloud Configuration (Config) Server | VMware Tanzu Spring Cloud Config Directory Traversal Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2020-25223 | Sophos / SG UTM | Sophos SG UTM Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-2506 | QNAP Systems / Helpdesk | QNAP Helpdesk Improper Access Control Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-2021 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2022-03-25 | 10.0 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2020-1956 | Apache / Kylin | Apache Kylin OS Command Injection Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2020-1631 | Juniper / Junos OS | Juniper Junos OS Path Traversal Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2019-6340 | Drupal / Core | Drupal Core Remote Code Execution Vulnerability | 2022-03-25 | 8.1 | past due |
| overdue 1609d2022-04-15 | CVE-2019-2616 | Oracle / BI Publisher (Formerly XML Publisher) | Oracle BI Publisher Unauthorized Access Vulnerability | 2022-03-25 | 7.2 | past due |
| overdue 1609d2022-04-15 | CVE-2019-16920 | D-Link / Multiple Routers | D-Link Multiple Routers Command Injection Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2019-15107 | Webmin / Webmin | Webmin Command Injection Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2019-12991 | Citrix / SD-WAN and NetScaler | Citrix SD-WAN and NetScaler Command Injection Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2019-12989 | Citrix / SD-WAN and NetScaler | Citrix SD-WAN and NetScaler SQL Injection Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2019-11043 | PHP / FastCGI Process Manager (FPM) | PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2019-10068 | Kentico / Xperience | Kentico Xperience Deserialization of Untrusted Data Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2019-1003030 | Jenkins / Matrix Project Plugin | Jenkins Matrix Project Plugin Remote Code Execution Vulnerability | 2022-03-25 | 9.9 | past due |
| overdue 1609d2022-04-15 | CVE-2019-0903 | Microsoft / Graphics Device Interface (GDI) | Microsoft GDI Remote Code Execution Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2018-8414 | Microsoft / Windows | Microsoft Windows Shell Remote Code Execution Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2018-8373 | Microsoft / Internet Explorer Scripting Engine | Microsoft Scripting Engine Memory Corruption Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2018-6961 | VMware / SD-WAN Edge | VMware SD-WAN Edge by VeloCloud Command Injection Vulnerability | 2022-03-25 | 8.1 | past due |
| overdue 1609d2022-04-15 | CVE-2018-14839 | LG / N1A1 NAS | LG N1A1 NAS Remote Command Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2018-1273 | VMware Tanzu / Spring Data Commons | VMware Tanzu Spring Data Commons Property Binder Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2018-11138 | Quest / KACE System Management Appliance | Quest KACE System Management Appliance Remote Command Execution Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2018-0147 | Cisco / Secure Access Control System (ACS) | Cisco Secure Access Control System Java Deserialization Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2018-0125 | Cisco / VPN Routers | Cisco VPN Routers Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2017-6334 | NETGEAR / DGN2200 Devices | NETGEAR DGN2200 Devices OS Command Injection Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2017-6316 | Citrix / NetScaler SD-WAN Enterprise, CloudBridge Virtual WAN, and XenMobile Server | Citrix Multiple Products Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2017-3881 | Cisco / IOS and IOS XE | Cisco IOS and IOS XE Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2017-12617 | Apache / Tomcat | Apache Tomcat Remote Code Execution Vulnerability | 2022-03-25 | 8.1 | past due |
| overdue 1609d2022-04-15 | CVE-2017-12615 | Apache / Tomcat | Apache Tomcat on Windows Remote Code Execution Vulnerability | 2022-03-25 | 8.1 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2017-0146 | Microsoft / Windows | Microsoft Windows SMB Remote Code Execution Vulnerability | 2022-03-25 | 8.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2016-7892 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2016-4171 | Adobe / Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2016-1555 | NETGEAR / Wireless Access Point (WAP) Devices | NETGEAR Multiple WAP Devices Command Injection Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2016-11021 | D-Link / DCS-930L Devices | D-Link DCS-930L Devices OS Command Injection Vulnerability | 2022-03-25 | 7.2 | past due |
| overdue 1609d2022-04-15 | CVE-2016-10174 | NETGEAR / WNR2000v5 Router | NETGEAR WNR2000v5 Router Buffer Overflow Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2016-0752 | Rails / Ruby on Rails | Ruby on Rails Directory Traversal Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2015-4068 | Arcserve / Unified Data Protection (UDP) | Arcserve Unified Data Protection (UDP) Directory Traversal Vulnerability | 2022-03-25 | 9.1 | past due |
| overdue 1609d2022-04-15 | CVE-2015-3035 | TP-Link / Multiple Archer Devices | TP-Link Multiple Archer Devices Directory Traversal Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2015-1427 | Elastic / Elasticsearch | Elasticsearch Groovy Scripting Engine Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2015-1187 | D-Link and TRENDnet / Multiple Devices | D-Link and TRENDnet Multiple Devices Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2015-0666 | Cisco / Prime Data Center Network Manager (DCNM) | Cisco Prime Data Center Network Manager (DCNM) Directory Traversal Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2014-6332 | Microsoft / Windows | Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2014-6324 | Microsoft / Kerberos Key Distribution Center (KDC) | Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2014-6287 | Rejetto / HTTP File Server (HFS) | Rejetto HTTP File Server (HFS) Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2014-3120 | Elastic / Elasticsearch | Elasticsearch Remote Code Execution Vulnerability | 2022-03-25 | 8.1 | past due |
| overdue 1609d2022-04-15 | CVE-2014-0130 | Rails / Ruby on Rails | Ruby on Rails Directory Traversal Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2013-5223 | D-Link / DSL-2760U | D-Link DSL-2760U Gateway Cross-Site Scripting Vulnerability | 2022-03-25 | 5.4 | past due |
| overdue 1609d2022-04-15 | CVE-2013-4810 | Hewlett Packard (HP) / ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management | HP Multiple Products Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2013-2251 | Apache / Struts | Apache Struts Improper Input Validation Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2012-1823 | PHP / PHP | PHP-CGI Query String Parameter Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2010-4345 | Exim / Exim | Exim Privilege Escalation Vulnerability | 2022-03-25 | 7.8 | past due |
| overdue 1609d2022-04-15 | CVE-2010-4344 | Exim / Exim | Exim Heap-Based Buffer Overflow Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2010-3035 | Cisco / IOS XR | Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | 2022-03-25 | 7.5 | past due |
| overdue 1609d2022-04-15 | CVE-2010-2861 | Adobe / ColdFusion | Adobe ColdFusion Directory Traversal Vulnerability | 2022-03-25 | 9.8 | past dueransomware |
| overdue 1609d2022-04-15 | CVE-2009-2055 | Cisco / IOS XR | Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | 2022-03-25 | 5.9 | past due |
| overdue 1609d2022-04-15 | CVE-2009-1151 | phpMyAdmin / phpMyAdmin | phpMyAdmin Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1609d2022-04-15 | CVE-2009-0927 | Adobe / Reader and Acrobat | Adobe Reader and Adobe Acrobat Stack-Based Buffer Overflow Vulnerability | 2022-03-25 | 8.8 | past due |
| overdue 1609d2022-04-15 | CVE-2005-2773 | Hewlett Packard (HP) / OpenView Network Node Manager | HP OpenView Network Node Manager Remote Code Execution Vulnerability | 2022-03-25 | 9.8 | past due |
| overdue 1619d2022-04-05 | CVE-2020-5135 | SonicWall / SonicOS | SonicWall SonicOS Buffer Overflow Vulnerability | 2022-03-15 | 9.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1405 | Microsoft / Windows | Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1322 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1315 | Microsoft / Windows | Microsoft Windows Error Reporting Manager Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1253 | Microsoft / Windows | Microsoft Windows AppX Deployment Server Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1132 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past due |
| overdue 1619d2022-04-05 | CVE-2019-1129 | Microsoft / Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1069 | Microsoft / Task Scheduler | Microsoft Task Scheduler Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-1064 | Microsoft / Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-0841 | Microsoft / Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2019-0543 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2018-8120 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-15 | 7.0 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2017-0101 | Microsoft / Windows | Microsoft Windows Transaction Manager Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2016-3309 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-15 | 7.8 | past dueransomware |
| overdue 1619d2022-04-05 | CVE-2015-2546 | Microsoft / Win32k | Microsoft Win32k Memory Corruption Vulnerability | 2022-03-15 | 8.2 | past dueransomware |
| overdue 1634d2022-03-21 | CVE-2022-26486 | Mozilla / Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 | 9.6 | past due |
| overdue 1634d2022-03-21 | CVE-2022-26485 | Mozilla / Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 | 8.8 | past due |
| overdue 1634d2022-03-21 | CVE-2021-21973 | VMware / vCenter Server and Cloud Foundation | VMware vCenter Server and Cloud Foundation Server Side Request Forgery (SSRF) Vulnerability | 2022-03-07 | 5.3 | past due |
| overdue 1464d2022-09-07 | CVE-2020-8218 | Pulse Secure / Pulse Connect Secure | Pulse Connect Secure Code Injection Vulnerability | 2022-03-07 | 7.2 | past due |
| overdue 1464d2022-09-07 | CVE-2019-11581 | Atlassian / Jira Server and Data Center | Atlassian Jira Server and Data Center Server-Side Template Injection Vulnerability | 2022-03-07 | 9.8 | past due |
| overdue 1464d2022-09-07 | CVE-2017-6077 | NETGEAR / Wireless Router DGN2200 | NETGEAR DGN2200 Remote Code Execution Vulnerability | 2022-03-07 | 9.8 | past due |
| overdue 1464d2022-09-07 | CVE-2016-6277 | NETGEAR / Multiple Routers | NETGEAR Multiple Routers Remote Code Execution Vulnerability | 2022-03-07 | 8.8 | past due |
| overdue 1464d2022-09-07 | CVE-2013-0631 | Adobe / ColdFusion | Adobe ColdFusion Information Disclosure Vulnerability | 2022-03-07 | 7.5 | past due |
| overdue 1464d2022-09-07 | CVE-2013-0629 | Adobe / ColdFusion | Adobe ColdFusion Directory Traversal Vulnerability | 2022-03-07 | 7.5 | past due |
| overdue 1464d2022-09-07 | CVE-2013-0625 | Adobe / ColdFusion | Adobe ColdFusion Authentication Bypass Vulnerability | 2022-03-07 | 9.8 | past due |
| overdue 1464d2022-09-07 | CVE-2009-3960 | Adobe / BlazeDS | Adobe BlazeDS Information Disclosure Vulnerability | 2022-03-07 | 6.5 | past dueransomware |
| overdue 1638d2022-03-17 | CVE-2022-20708 | Cisco / Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 8.0 | past due |
| overdue 1638d2022-03-17 | CVE-2022-20703 | Cisco / Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 8.0 | past due |
| overdue 1638d2022-03-17 | CVE-2022-20701 | Cisco / Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1638d2022-03-17 | CVE-2022-20700 | Cisco / Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1638d2022-03-17 | CVE-2022-20699 | Cisco / Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1638d2022-03-17 | CVE-2021-41379 | Microsoft / Windows | Microsoft Windows Installer Privilege Escalation Vulnerability | 2022-03-03 | 5.5 | past dueransomware |
| overdue 1638d2022-03-17 | CVE-2020-1938 | Apache / Tomcat | Apache Tomcat Improper Privilege Management Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1638d2022-03-17 | CVE-2020-11899 | Treck TCP/IP stack / IPv6 | Treck TCP/IP stack Out-of-Bounds Read Vulnerability | 2022-03-03 | 5.4 | past due |
| overdue 1638d2022-03-17 | CVE-2019-16928 | Exim / Exim Internet Mailer | Exim Out-of-bounds Write Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1638d2022-03-17 | CVE-2019-1652 | Cisco / Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers | Cisco Small Business Routers Improper Input Validation Vulnerability | 2022-03-03 | 7.2 | past due |
| overdue 1638d2022-03-17 | CVE-2019-1297 | Microsoft / Excel | Microsoft Excel Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1638d2022-03-17 | CVE-2018-8581 | Microsoft / Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2022-03-03 | 7.4 | past dueransomware |
| overdue 1638d2022-03-17 | CVE-2018-8298 | ChakraCore / ChakraCore scripting engine | ChakraCore Scripting Engine Type Confusion Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0180 | Cisco / IOS Software | Cisco IOS Software Denial-of-Service Vulnerability | 2022-03-03 | 5.9 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0179 | Cisco / IOS Software | Cisco IOS Software Denial-of-Service Vulnerability | 2022-03-03 | 5.9 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0175 | Cisco / IOS, XR, and XE Software | Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | 2022-03-03 | 8.0 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0174 | Cisco / IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 | 8.6 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0173 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 | 8.6 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0172 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 | 8.6 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0167 | Cisco / IOS, XR, and XE Software | Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0161 | Cisco / IOS Software | Cisco IOS Software Resource Management Errors Vulnerability | 2022-03-03 | 6.3 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0159 | Cisco / IOS Software and Cisco IOS XE Software | Cisco IOS and XE Software Internet Key Exchange Version 1 Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0158 | Cisco / IOS Software and Cisco IOS XE Software | Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability | 2022-03-03 | 8.6 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0156 | Cisco / IOS Software and Cisco IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Smart Install Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0155 | Cisco / Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches | Cisco Catalyst Bidirectional Forwarding Detection Denial-of-Service Vulnerability | 2022-03-03 | 8.6 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0154 | Cisco / IOS Software | Cisco IOS Software Integrated Services Module for VPN Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1638d2022-03-17 | CVE-2018-0151 | Cisco / IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-8540 | Microsoft / Malware Protection Engine | Microsoft Malware Protection Engine Improper Restriction of Operations Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6744 | Cisco / IOS software | Cisco IOS Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6743 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6740 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6739 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6738 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6737 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6736 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6663 | Cisco / IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Denial-of-Service Vulnerability | 2022-03-03 | 6.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-6627 | Cisco / IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12319 | Cisco / IOS XE Software | Cisco IOS XE Software Ethernet Virtual Private Network Border Gateway Protocol Denial-of-Service Vulnerability | 2022-03-03 | 5.9 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12240 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software DHCP Remote Code Execution Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12238 | Cisco / Catalyst 6800 Series Switches | Cisco Catalyst 6800 Series Switches VPLS Denial-of-Service Vulnerability | 2022-03-03 | 6.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12237 | Cisco / IOS and IOS XE Software | Cisco IOS and IOS XE Software Internet Key Exchange Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12235 | Cisco / IOS software | Cisco IOS Software for Cisco Industrial Ethernet Switches PROFINET Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12234 | Cisco / IOS software | Cisco IOS Software Common Industrial Protocol Request Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12233 | Cisco / IOS software | Cisco IOS Software Common Industrial Protocol Request Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12232 | Cisco / IOS software | Cisco IOS Software for Cisco Integrated Services Routers Denial-of-Service Vulnerability | 2022-03-03 | 6.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-12231 | Cisco / IOS software | Cisco IOS Software Network Address Translation Denial-of-Service Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2017-11826 | Microsoft / Office | Microsoft Office Remote Code Execution Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-11292 | Adobe / Flash Player | Adobe Flash Player Type Confusion Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-0261 | Microsoft / Office | Microsoft Office Use-After-Free Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2017-0001 | Microsoft / Graphics Device Interface (GDI) | Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2016-8562 | Siemens / SIMATIC CP | Siemens SIMATIC CP 1543-1 Improper Privilege Management Vulnerability | 2022-03-03 | 7.5 | past due |
| overdue 1631d2022-03-24 | CVE-2016-7855 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2016-7262 | Microsoft / Excel | Microsoft Office Security Feature Bypass Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2016-7193 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2016-5195 | Linux / Kernel | Linux Kernel Race Condition Vulnerability | 2022-03-03 | 7.0 | past due |
| overdue 1631d2022-03-24 | CVE-2016-4117 | Adobe / Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2016-1019 | Adobe / Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2016-0099 | Microsoft / Windows | Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2015-7645 | Adobe / Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 | 7.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2015-5119 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-4902 | Oracle / Java SE | Oracle Java SE Integrity Check Vulnerability | 2022-03-03 | 5.3 | past due |
| overdue 1631d2022-03-24 | CVE-2015-3043 | Adobe / Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-2590 | Oracle / Java SE | Oracle Java SE and Java SE Embedded Remote Code Execution Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-2545 | Microsoft / Office | Microsoft Office Malformed EPS File Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-2424 | Microsoft / PowerPoint | Microsoft PowerPoint Memory Corruption Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-2387 | Microsoft / ATM Font Driver | Microsoft ATM Font Driver Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2015-1701 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2015-1642 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2014-4114 | Microsoft / Windows | Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2014-0496 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Use-After-Free Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-5065 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-3897 | Microsoft / Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-3346 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Memory Corruption Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-1675 | Mozilla / Firefox | Mozilla Firefox Information Disclosure Vulnerability | 2022-03-03 | 6.5 | past due |
| overdue 1631d2022-03-24 | CVE-2013-1347 | Microsoft / Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-0641 | Adobe / Reader | Adobe Reader Buffer Overflow Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-0640 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Memory Corruption Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2013-0632 | Adobe / ColdFusion | Adobe ColdFusion Authentication Bypass Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2012-4681 | Oracle / Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2012-1856 | Microsoft / Office | Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2012-1723 | Oracle / Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2012-1535 | Adobe / Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2012-0507 | Oracle / Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2011-3544 | Oracle / Java SE JDK and JRE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2011-1889 | Microsoft / Forefront Threat Management Gateway (TMG) | Microsoft Forefront TMG Remote Code Execution Vulnerability | 2022-03-03 | 9.8 | past due |
| overdue 1631d2022-03-24 | CVE-2011-0611 | Adobe / Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2010-3333 | Microsoft / Office | Microsoft Office Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2010-0232 | Microsoft / Windows | Microsoft Windows Kernel Exception Handler Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2010-0188 | Adobe / Reader and Acrobat | Adobe Reader and Acrobat Arbitrary Code Execution Vulnerability | 2022-03-03 | 7.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2009-3129 | Microsoft / Excel | Microsoft Excel Featheader Record Memory Corruption Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2009-1123 | Microsoft / Windows | Microsoft Windows Improper Input Validation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2008-3431 | Oracle / VirtualBox | Oracle VirtualBox Insufficient Input Validation Vulnerability | 2022-03-03 | 8.8 | past due |
| overdue 1631d2022-03-24 | CVE-2008-2992 | Adobe / Acrobat and Reader | Adobe Reader and Acrobat Input Validation Vulnerability | 2022-03-03 | 7.8 | past dueransomware |
| overdue 1631d2022-03-24 | CVE-2004-0210 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1631d2022-03-24 | CVE-2002-0367 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 | 7.8 | past due |
| overdue 1644d2022-03-11 | CVE-2022-24682 | Synacor / Zimbra Collaborate Suite (ZCS) | Synacor Zimbra Collaborate Suite (ZCS) Cross-Site Scripting Vulnerability | 2022-02-25 | 6.1 | past dueransomware |
| overdue 1477d2022-08-25 | CVE-2017-8570 | Microsoft / Office | Microsoft Office Remote Code Execution Vulnerability | 2022-02-25 | 7.8 | past due |
| overdue 1477d2022-08-25 | CVE-2017-0222 | Microsoft / Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2022-02-25 | 8.8 | past due |
| overdue 1477d2022-08-25 | CVE-2014-6352 | Microsoft / Windows | Microsoft Windows Code Injection Vulnerability | 2022-02-25 | 7.8 | past due |
| overdue 1647d2022-03-08 | CVE-2022-23134 | Zabbix / Frontend | Zabbix Frontend Improper Access Control Vulnerability | 2022-02-22 | 5.3 | past due |
| overdue 1647d2022-03-08 | CVE-2022-23131 | Zabbix / Frontend | Zabbix Frontend Authentication Bypass Vulnerability | 2022-02-22 | 9.8 | past due |
| overdue 1654d2022-03-01 | CVE-2022-24086 | Adobe / Commerce and Magento Open Source | Adobe Commerce and Magento Open Source Improper Input Validation Vulnerability | 2022-02-15 | 9.8 | past due |
| overdue 1654d2022-03-01 | CVE-2022-0609 | Google / Chromium Animation | Google Chromium Animation Use-After-Free Vulnerability | 2022-02-15 | 8.8 | past due |
| overdue 1487d2022-08-15 | CVE-2019-0752 | Microsoft / Internet Explorer | Microsoft Internet Explorer Type Confusion Vulnerability | 2022-02-15 | 7.5 | past dueransomware |
| overdue 1487d2022-08-15 | CVE-2018-8174 | Microsoft / Windows | Microsoft Windows VBScript Engine Out-of-Bounds Write Vulnerability | 2022-02-15 | 7.5 | past dueransomware |
| overdue 1487d2022-08-15 | CVE-2018-20250 | RARLAB / WinRAR | WinRAR Absolute Path Traversal Vulnerability | 2022-02-15 | 7.8 | past dueransomware |
| overdue 1487d2022-08-15 | CVE-2018-15982 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-02-15 | 7.8 | past dueransomware |
| overdue 1487d2022-08-15 | CVE-2017-9841 | PHPUnit / PHPUnit | PHPUnit Command Injection Vulnerability | 2022-02-15 | 9.8 | past due |
| overdue 1487d2022-08-15 | CVE-2014-1761 | Microsoft / Word | Microsoft Word Memory Corruption Vulnerability | 2022-02-15 | 7.8 | past due |
| overdue 1487d2022-08-15 | CVE-2013-3906 | Microsoft / Graphics Component | Microsoft Graphics Component Memory Corruption Vulnerability | 2022-02-15 | 7.8 | past due |
| overdue 1658d2022-02-25 | CVE-2022-22620 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability | 2022-02-11 | 8.8 | past due |
| overdue 1659d2022-02-24 | CVE-2021-36934 | Microsoft / Windows | Microsoft Windows SAM Local Privilege Escalation Vulnerability | 2022-02-10 | 7.8 | past due |
| overdue 1492d2022-08-10 | CVE-2020-0796 | Microsoft / SMBv3 | Microsoft SMBv3 Remote Code Execution Vulnerability | 2022-02-10 | 10.0 | past dueransomware |
| overdue 1492d2022-08-10 | CVE-2018-1000861 | Jenkins / Jenkins Stapler Web Framework | Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability | 2022-02-10 | 9.8 | past due |
| overdue 1492d2022-08-10 | CVE-2017-9791 | Apache / Struts 1 | Apache Struts 1 Improper Input Validation Vulnerability | 2022-02-10 | 9.8 | past due |
| overdue 1492d2022-08-10 | CVE-2017-8464 | Microsoft / Windows | Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability | 2022-02-10 | 8.8 | past due |
| overdue 1492d2022-08-10 | CVE-2017-10271 | Oracle / WebLogic Server | Oracle Corporation WebLogic Server Remote Code Execution Vulnerability | 2022-02-10 | 7.5 | past dueransomware |
| overdue 1492d2022-08-10 | CVE-2017-0263 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-02-10 | 7.8 | past due |
| overdue 1492d2022-08-10 | CVE-2017-0262 | Microsoft / Office | Microsoft Office Remote Code Execution Vulnerability | 2022-02-10 | 7.8 | past due |
| overdue 1492d2022-08-10 | CVE-2017-0145 | Microsoft / SMBv1 | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 | 8.8 | past dueransomware |
| overdue 1492d2022-08-10 | CVE-2017-0144 | Microsoft / SMBv1 | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 | 8.8 | past dueransomware |
| overdue 1492d2022-08-10 | CVE-2016-3088 | Apache / ActiveMQ | Apache ActiveMQ Improper Input Validation Vulnerability | 2022-02-10 | 9.8 | past due |
| overdue 1492d2022-08-10 | CVE-2015-2051 | D-Link / DIR-645 Router | D-Link DIR-645 Router Remote Code Execution Vulnerability | 2022-02-10 | 8.8 | past due |
| overdue 1492d2022-08-10 | CVE-2015-1635 | Microsoft / HTTP.sys | Microsoft HTTP.sys Remote Code Execution Vulnerability | 2022-02-10 | 9.8 | past due |
| overdue 1492d2022-08-10 | CVE-2015-1130 | Apple / OS X | Apple OS X Authentication Bypass Vulnerability | 2022-02-10 | 7.8 | past due |
| overdue 1492d2022-08-10 | CVE-2014-4404 | Apple / OS X | Apple OS X Heap-Based Buffer Overflow Vulnerability | 2022-02-10 | 7.8 | past due |
| overdue 1665d2022-02-18 | CVE-2022-21882 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-02-04 | 7.8 | past dueransomware |
| overdue 1672d2022-02-11 | CVE-2022-22587 | Apple / iOS and macOS | Apple Memory Corruption Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1672d2022-02-11 | CVE-2021-20038 | SonicWall / SMA 100 Appliances | SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability | 2022-01-28 | 9.8 | past dueransomware |
| overdue 1505d2022-07-28 | CVE-2020-5722 | Grandstream / UCM6200 | Grandstream Networks UCM6200 Series SQL Injection Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1505d2022-07-28 | CVE-2020-0787 | Microsoft / Windows | Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability | 2022-01-28 | 7.8 | past dueransomware |
| overdue 1505d2022-07-28 | CVE-2017-5689 | Intel / Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability | Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1505d2022-07-28 | CVE-2014-7169 | GNU / Bourne-Again Shell (Bash) | GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1505d2022-07-28 | CVE-2014-6271 | GNU / Bourne-Again Shell (Bash) | GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1505d2022-07-28 | CVE-2014-1776 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-01-28 | 9.8 | past due |
| overdue 1679d2022-02-04 | CVE-2021-35247 | SolarWinds / Serv-U | SolarWinds Serv-U Improper Input Validation Vulnerability | 2022-01-21 | 5.3 | past due |
| overdue 1512d2022-07-21 | CVE-2018-8453 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-01-21 | 7.8 | past dueransomware |
| overdue 1512d2022-07-21 | CVE-2012-0391 | Apache / Struts 2 | Apache Struts 2 Improper Input Validation Vulnerability | 2022-01-21 | 9.8 | past due |
| overdue 1512d2022-07-21 | CVE-2006-1547 | Apache / Struts 1 | Apache Struts 1 ActionForm Denial-of-Service Vulnerability | 2022-01-21 | 7.5 | past due |
| overdue 1682d2022-02-01 | CVE-2021-40870 | Aviatrix / Aviatrix Controller | Aviatrix Controller Unrestricted Upload of File | 2022-01-18 | 9.8 | past due |
| overdue 1682d2022-02-01 | CVE-2021-33766 | Microsoft / Exchange Server | Microsoft Exchange Server Information Disclosure | 2022-01-18 | 7.3 | past due |
| overdue 1682d2022-02-01 | CVE-2021-32648 | October CMS / October CMS | October CMS Improper Authentication | 2022-01-18 | 9.1 | past due |
| overdue 1682d2022-02-01 | CVE-2021-25298 | Nagios / Nagios XI | Nagios XI OS Command Injection | 2022-01-18 | 8.8 | past due |
| overdue 1682d2022-02-01 | CVE-2021-25297 | Nagios / Nagios XI | Nagios XI OS Command Injection | 2022-01-18 | 8.8 | past due |
| overdue 1682d2022-02-01 | CVE-2021-25296 | Nagios / Nagios XI | Nagios XI OS Command Injection | 2022-01-18 | 8.8 | past due |
| overdue 1682d2022-02-01 | CVE-2021-22991 | F5 / BIG-IP Traffic Management Microkernel | F5 BIG-IP Traffic Management Microkernel Buffer Overflow | 2022-01-18 | 9.8 | past due |
| overdue 1682d2022-02-01 | CVE-2021-21975 | VMware / vRealize Operations Manager API | VMware Server Side Request Forgery in vRealize Operations Manager API | 2022-01-18 | 7.5 | past dueransomware |
| overdue 1682d2022-02-01 | CVE-2021-21315 | Npm package / System Information Library for Node.JS | System Information Library for Node.JS Command Injection | 2022-01-18 | 7.8 | past due |
| overdue 1515d2022-07-18 | CVE-2020-14864 | Oracle / Intelligence Enterprise Edition | Oracle Business Intelligence Enterprise Edition Path Transversal | 2022-01-18 | 7.5 | past due |
| overdue 1515d2022-07-18 | CVE-2020-13927 | Apache / Airflow's Experimental API | Apache Airflow's Experimental API Authentication Bypass | 2022-01-18 | 9.8 | past due |
| overdue 1515d2022-07-18 | CVE-2020-13671 | Drupal / Drupal core | Drupal core Un-restricted Upload of File | 2022-01-18 | 8.8 | past due |
| overdue 1515d2022-07-18 | CVE-2020-11978 | Apache / Airflow | Apache Airflow Command Injection | 2022-01-18 | 8.8 | past due |
| overdue 1690d2022-01-24 | CVE-2021-36260 | Hikvision / Security cameras web server | Hikvision Improper Input Validation | 2022-01-10 | 9.8 | past due |
| overdue 1690d2022-01-24 | CVE-2021-27860 | FatPipe / WARP, IPVPN, and MPVPN software | FatPipe WARP, IPVPN, and MPVPN Configuration Upload exploit | 2022-01-10 | 8.8 | past due |
| overdue 1690d2022-01-24 | CVE-2021-22017 | VMware / vCenter Server | VMware vCenter Server Improper Access Control | 2022-01-10 | 5.3 | past due |
| overdue 1523d2022-07-10 | CVE-2020-6572 | Google / Chrome Media | Google Chrome Media Use-After-Free Vulnerability | 2022-01-10 | 8.8 | past due |
| overdue 1523d2022-07-10 | CVE-2019-9670 | Synacor / Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Improper Restriction of XML External Entity Reference | 2022-01-10 | 9.8 | past due |
| overdue 1523d2022-07-10 | CVE-2019-7609 | Elastic / Kibana | Kibana Arbitrary Code Execution | 2022-01-10 | 10.0 | past due |
| overdue 1523d2022-07-10 | CVE-2019-2725 | Oracle / WebLogic Server | Oracle WebLogic Server, Injection | 2022-01-10 | 9.8 | past dueransomware |
| overdue 1523d2022-07-10 | CVE-2019-1579 | Palo Alto Networks / PAN-OS | Palo Alto Networks PAN-OS Remote Code Execution Vulnerability | 2022-01-10 | 8.1 | past dueransomware |
| overdue 1523d2022-07-10 | CVE-2019-1458 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-01-10 | 7.8 | past dueransomware |
| overdue 1523d2022-07-10 | CVE-2019-10149 | Exim / Mail Transfer Agent (MTA) | Exim Mail Transfer Agent (MTA) Improper Input Validation | 2022-01-10 | 9.8 | past due |
| overdue 1523d2022-07-10 | CVE-2018-13383 | Fortinet / FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Out-of-bounds Write | 2022-01-10 | 6.5 | past dueransomware |
| overdue 1523d2022-07-10 | CVE-2018-13382 | Fortinet / FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Improper Authorization | 2022-01-10 | 7.5 | past dueransomware |
| overdue 1523d2022-07-10 | CVE-2017-1000486 | Primetek / Primefaces Application | Primetek Primefaces Remote Code Execution Vulnerability | 2022-01-10 | 9.8 | past due |
| overdue 1523d2022-07-10 | CVE-2015-7450 | IBM / WebSphere Application Server and Server Hypervisor Edition | IBM WebSphere Application Server and Server Hypervisor Edition Code Injection. | 2022-01-10 | 9.8 | past due |
| overdue 1523d2022-07-10 | CVE-2013-3900 | Microsoft / WinVerifyTrust function | Microsoft WinVerifyTrust function Remote Code Execution | 2022-01-10 | 5.5 | past due |
| overdue 1716d2021-12-29 | CVE-2021-43890 | Microsoft / Windows | Microsoft Windows AppX Installer Spoofing Vulnerability | 2021-12-15 | 7.1 | past dueransomware |
| overdue 1716d2021-12-29 | CVE-2021-4102 | Google / Chromium V8 | Google Chromium V8 Use-After-Free Vulnerability | 2021-12-15 | 8.8 | past due |
| overdue 1721d2021-12-24 | CVE-2021-44515 | Zoho / Desktop Central | Zoho Desktop Central Authentication Bypass Vulnerability | 2021-12-10 | 9.8 | past due |
| overdue 1721d2021-12-24 | CVE-2021-44228 | Apache / Log4j2 | Apache Log4j2 Remote Code Execution Vulnerability | 2021-12-10 | 10.0 | past dueransomware |
| overdue 1721d2021-12-24 | CVE-2021-44168 | Fortinet / FortiOS | Fortinet FortiOS Arbitrary File Download | 2021-12-10 | 7.8 | past due |
| overdue 1721d2021-12-24 | CVE-2021-35394 | Realtek / Jungle Software Development Kit (SDK) | Realtek Jungle SDK Remote Code Execution Vulnerability | 2021-12-10 | 9.8 | past due |
| overdue 1553d2022-06-10 | CVE-2020-8816 | Pi-hole / AdminLTE | Pi-Hole AdminLTE Remote Code Execution Vulnerability | 2021-12-10 | 7.2 | past due |
| overdue 1553d2022-06-10 | CVE-2020-17463 | Fuel CMS / Fuel CMS | Fuel CMS SQL Injection Vulnerability | 2021-12-10 | 9.8 | past due |
| overdue 1553d2022-06-10 | CVE-2019-7238 | Sonatype / Nexus Repository Manager | Sonatype Nexus Repository Manager Incorrect Access Control Vulnerability | 2021-12-10 | 9.8 | past due |
| overdue 1553d2022-06-10 | CVE-2019-13272 | Linux / Kernel | Linux Kernel Improper Privilege Management Vulnerability | 2021-12-10 | 7.8 | past due |
| overdue 1553d2022-06-10 | CVE-2019-10758 | MongoDB / mongo-express | MongoDB mongo-express Remote Code Execution Vulnerability | 2021-12-10 | 9.9 | past due |
| overdue 1553d2022-06-10 | CVE-2019-0193 | Apache / Solr | Apache Solr DataImportHandler Code Injection Vulnerability | 2021-12-10 | 7.2 | past due |
| overdue 1553d2022-06-10 | CVE-2017-17562 | Embedthis / GoAhead | Embedthis GoAhead Remote Code Execution Vulnerability | 2021-12-10 | 8.1 | past due |
| overdue 1553d2022-06-10 | CVE-2017-12149 | Red Hat / JBoss Application Server | Red Hat JBoss Application Server Remote Code Execution Vulnerability | 2021-12-10 | 9.8 | past dueransomware |
| overdue 1553d2022-06-10 | CVE-2010-1871 | Red Hat / JBoss Seam 2 | Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability | 2021-12-10 | 8.8 | past due |
| overdue 1730d2021-12-15 | CVE-2021-44077 | Zoho / ManageEngine ServiceDesk Plus (SDP) / SupportCenter Plus | Zoho ManageEngine ServiceDesk Plus Remote Code Execution Vulnerability | 2021-12-01 | 9.8 | past due |
| overdue 1730d2021-12-15 | CVE-2021-40438 | Apache / Apache | Apache HTTP Server-Side Request Forgery (SSRF) | 2021-12-01 | 9.0 | past dueransomware |
| overdue 1730d2021-12-15 | CVE-2021-37415 | Zoho / ManageEngine ServiceDesk Plus (SDP) | Zoho ManageEngine ServiceDesk Authentication Bypass Vulnerability | 2021-12-01 | 9.8 | past due |
| overdue 1562d2022-06-01 | CVE-2020-11261 | Qualcomm / Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | Qualcomm Multiple Chipsets Improper Input Validation Vulnerability | 2021-12-01 | 7.8 | past due |
| overdue 1562d2022-06-01 | CVE-2018-14847 | MikroTik / RouterOS | MikroTik Router OS Directory Traversal Vulnerability | 2021-12-01 | 9.1 | past due |
| overdue 1744d2021-12-01 | CVE-2021-42321 | Microsoft / Exchange | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-17 | 8.8 | past dueransomware |
| overdue 1744d2021-12-01 | CVE-2021-42292 | Microsoft / Office | Microsoft Excel Security Feature Bypass | 2021-11-17 | 7.8 | past due |
| overdue 1744d2021-12-01 | CVE-2021-40449 | Microsoft / Windows | Microsoft Windows Win32k Privilege Escalation Vulnerability | 2021-11-17 | 7.8 | past dueransomware |
| overdue 1744d2021-12-01 | CVE-2021-22204 | Perl / Exiftool | ExifTool Remote Code Execution Vulnerability | 2021-11-17 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-42258 | BQE / BillQuick Web Suite | BQE BillQuick Web Suite SQL Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-42013 | Apache / HTTP Server | Apache HTTP Server Path Traversal Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-41773 | Apache / HTTP Server | Apache HTTP Server Path Traversal Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-40539 | Zoho / ManageEngine | Zoho ManageEngine ADSelfService Plus Authentication Bypass Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-40444 | Microsoft / MSHTML | Microsoft MSHTML Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-38649 | Microsoft / Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 | 7.0 | past due |
| overdue 1758d2021-11-17 | CVE-2021-38648 | Microsoft / Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-38647 | Microsoft / Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-38645 | Microsoft / Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-38003 | Google / Chromium V8 | Google Chromium V8 Memory Corruption Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-38000 | Google / Chromium Intents | Google Chromium Intents Improper Input Validation Vulnerability | 2021-11-03 | 6.1 | past due |
| overdue 1758d2021-11-17 | CVE-2021-37976 | Google / Chromium | Google Chromium Information Disclosure Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-37975 | Google / Chromium V8 | Google Chromium V8 Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-37973 | Google / Chromium Portals | Google Chromium Portals Use-After-Free Vulnerability | 2021-11-03 | 9.6 | past due |
| overdue 1758d2021-11-17 | CVE-2021-36955 | Microsoft / Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-36948 | Microsoft / Windows | Microsoft Windows Update Medic Service Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-36942 | Microsoft / Windows | Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability | 2021-11-03 | 7.5 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-36742 | Trend Micro / Apex One, Apex One as a Service, and Worry-Free Business Security | Trend Micro Multiple Products Improper Input Validation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-36741 | Trend Micro / Apex One, Apex One as a Service, and Worry-Free Business Security | Trend Micro Multiple Products Improper Input Validation Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-35464 | ForgeRock / Access Management (AM) | ForgeRock Access Management (AM) Core Server Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-35395 | Realtek / AP-Router SDK | Realtek AP-Router SDK Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-35211 | SolarWinds / Serv-U | SolarWinds Serv-U Remote Code Execution Vulnerability | 2021-11-03 | 10.0 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2021-34527 | Microsoft / Windows | Microsoft Windows Print Spooler Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-34523 | Microsoft / Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2021-11-03 | 9.0 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-34473 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 9.1 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-34448 | Microsoft / Windows | Microsoft Windows Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 6.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-33771 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-33742 | Microsoft / Windows | Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-33739 | Microsoft / Windows | Microsoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability | 2021-11-03 | 8.4 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31979 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31956 | Microsoft / Windows | Microsoft Windows NTFS Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31955 | Microsoft / Windows | Microsoft Windows Kernel Information Disclosure Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31755 | Tenda / AC11 Router | Tenda AC11 Router Stack Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31207 | Microsoft / Exchange Server | Microsoft Exchange Server Security Feature Bypass Vulnerability | 2021-11-03 | 6.6 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-31201 | Microsoft / Enhanced Cryptographic Provider | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 | 5.2 | past due |
| overdue 1758d2021-11-17 | CVE-2021-31199 | Microsoft / Enhanced Cryptographic Provider | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 | 5.2 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30869 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Type Confusion Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30860 | Apple / Multiple Products | Apple Multiple Products Integer Overflow Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30858 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, macOS Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30807 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30762 | Apple / iOS | Apple iOS WebKit Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30761 | Apple / iOS | Apple iOS WebKit Memory Corruption Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30713 | Apple / macOS | Apple macOS Unspecified Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30666 | Apple / iOS | Apple iOS WebKit Buffer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30665 | Apple / Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30663 | Apple / Multiple Products | Apple Multiple Products WebKit Integer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30661 | Apple / Multiple Products | Apple Multiple Products WebKit Storage Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30657 | Apple / macOS | Apple macOS Unspecified Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30633 | Google / Chromium Indexed DB API | Google Chromium Indexed DB API Use-After-Free Vulnerability | 2021-11-03 | 9.6 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30632 | Google / Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30563 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30554 | Google / Chromium WebGL | Google Chromium WebGL Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30551 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-30116 | Kaseya / Virtual System/Server Administrator (VSA) | Kaseya Virtual System/Server Administrator (VSA) Information Disclosure Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-28664 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-28663 | Arm / Mali Graphics Processing Unit (GPU) | Arm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-28550 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-28310 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-27562 | Arm / Trusted Firmware | Arm Trusted Firmware Out-of-Bounds Write Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-27561 | Yealink / Device Management | Yealink Device Management Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-27104 | Accellion / FTA | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-27103 | Accellion / FTA | Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-27102 | Accellion / FTA | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-27101 | Accellion / FTA | Accellion FTA SQL Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-27085 | Microsoft / Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2021-27065 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-27059 | Microsoft / Office | Microsoft Office Remote Code Execution Vulnerability | 2021-11-03 | 7.6 | past due |
| overdue 1591d2022-05-03 | CVE-2021-26858 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2021-26857 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2021-26855 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 9.1 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-26411 | Microsoft / Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-26084 | Atlassian / Confluence Server and Data Center | Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-23874 | McAfee / McAfee Total Protection (MTP) | McAfee Total Protection (MTP) Improper Privilege Management Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-22986 | F5 / BIG-IP and BIG-IQ Centralized Management | F5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2021-22900 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Unrestricted File Upload Vulnerability | 2021-11-03 | 7.2 | past due |
| overdue 1591d2022-05-03 | CVE-2021-22899 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Command Injection Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2021-22894 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Collaboration Suite Buffer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2021-22893 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Use-After-Free Vulnerability | 2021-11-03 | 10.0 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-22506 | Micro Focus / Micro Focus Access Manager | Micro Focus Access Manager Information Leakage Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1758d2021-11-17 | CVE-2021-22502 | Micro Focus / Operation Bridge Reporter (OBR) | Micro Focus Operation Bridge Report (OBR) Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-22205 | GitLab / Community and Enterprise Editions | GitLab Community and Enterprise Editions Remote Code Execution Vulnerability | 2021-11-03 | 10.0 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-22005 | VMware / vCenter Server | VMware vCenter Server File Upload Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-21985 | VMware / vCenter Server | VMware vCenter Server Improper Input Validation Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-21972 | VMware / vCenter Server | VMware vCenter Server Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-21224 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21220 | Google / Chromium V8 | Google Chromium V8 Improper Input Validation Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21206 | Google / Chromium Blink | Google Chromium Blink Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21193 | Google / Chromium Blink | Google Chromium Blink Use-After-Free Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21166 | Google / Chromium | Google Chromium Race Condition Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21148 | Google / Chromium V8 | Google Chromium V8 Heap Buffer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-21017 | Adobe / Acrobat and Reader | Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-20090 | Arcadyan / Buffalo Firmware | Arcadyan Buffalo Firmware Path Traversal Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-20023 | SonicWall / SonicWall Email Security | SonicWall Email Security Path Traversal Vulnerability | 2021-11-03 | 4.9 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-20022 | SonicWall / SonicWall Email Security | SonicWall Email Security Unrestricted Upload of File Vulnerability | 2021-11-03 | 7.2 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-20021 | SonicWall / SonicWall Email Security | SonicWall Email Security Improper Privilege Management Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-20016 | SonicWall / SSLVPN SMA100 | SonicWall SSLVPN SMA100 SQL Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-1906 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Detection of Error Condition Without Action Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1591d2022-05-03 | CVE-2021-1905 | Qualcomm / Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1879 | Apple / iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS WebKit Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 | 6.1 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1871 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1870 | Apple / iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1782 | Apple / Multiple Products | Apple Multiple Products Race Condition Vulnerability | 2021-11-03 | 7.0 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1732 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-1675 | Microsoft / Windows | Microsoft Windows Print Spooler Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1758d2021-11-17 | CVE-2021-1647 | Microsoft / Defender | Microsoft Defender Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1498 | Cisco / HyperFlex HX | Cisco HyperFlex HX Data Platform Command Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1758d2021-11-17 | CVE-2021-1497 | Cisco / HyperFlex HX | Cisco HyperFlex HX Installer Virtual Machine Command Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-9859 | Apple / Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-9819 | Apple / iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Memory Corruption Vulnerability | 2021-11-03 | 4.3 | past due |
| overdue 1591d2022-05-03 | CVE-2020-9818 | Apple / iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Out-of-Bounds Write Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8657 | EyesOfNetwork / EyesOfNetwork | EyesOfNetwork Use of Hard-Coded Credentials Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8655 | EyesOfNetwork / EyesOfNetwork | EyesOfNetwork Improper Privilege Management Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8644 | PlaySMS / PlaySMS | PlaySMS Server-Side Template Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8599 | Trend Micro / Apex One and OfficeScan | Trend Micro Apex One and OfficeScan Authentication Bypass Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8515 | DrayTek / Multiple Vigor Routers | Multiple DrayTek Vigor Routers Web Management Page Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8468 | Trend Micro / Apex One, OfficeScan and Worry-Free Business Security Agents | Trend Micro Multiple Products Content Validation Escape Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8467 | Trend Micro / Apex One and OfficeScan | Trend Micro Apex One and OfficeScan Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8260 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Code Execution Vulnerability | 2021-11-03 | 7.2 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8243 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Code Execution Vulnerability | 2021-11-03 | 7.2 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8196 | Citrix / Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability | 2021-11-03 | 4.3 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8195 | Citrix / Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-8193 | Citrix / Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Authorization Bypass Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-7961 | Liferay / Liferay Portal | Liferay Portal Deserialization of Untrusted Data Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-6820 | Mozilla / Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 | 8.1 | past due |
| overdue 1591d2022-05-03 | CVE-2020-6819 | Mozilla / Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 | 8.1 | past due |
| overdue 1591d2022-05-03 | CVE-2020-6418 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-6287 | SAP / NetWeaver | SAP NetWeaver Missing Authentication for Critical Function Vulnerability | 2021-11-03 | 10.0 | past due |
| overdue 1591d2022-05-03 | CVE-2020-6207 | SAP / Solution Manager | SAP Solution Manager Missing Authentication for Critical Function Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-5902 | F5 / BIG-IP | F5 BIG-IP Traffic Management User Interface (TMUI) Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-5849 | Unraid / Unraid | Unraid Authentication Bypass Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-5847 | Unraid / Unraid | Unraid Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-5735 | Amcrest / Cameras and Network Video Recorder (NVR) | Amcrest Cameras and NVR Stack-based Buffer Overflow Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-4430 | IBM / Data Risk Manager | IBM Data Risk Manager Directory Traversal Vulnerability | 2021-11-03 | 4.3 | past due |
| overdue 1591d2022-05-03 | CVE-2020-4428 | IBM / Data Risk Manager | IBM Data Risk Manager Remote Code Execution Vulnerability | 2021-11-03 | 9.1 | past due |
| overdue 1591d2022-05-03 | CVE-2020-4427 | IBM / Data Risk Manager | IBM Data Risk Manager Security Bypass Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-4006 | VMware / Multiple Products | Multiple VMware Products Command Injection Vulnerability | 2021-11-03 | 9.1 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3992 | VMware / ESXi | VMware ESXi OpenSLP Use-After-Free Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-3952 | VMware / vCenter Server | VMware vCenter Server Information Disclosure Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3950 | VMware / Multiple Products | VMware Multiple Products Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3580 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 | 6.1 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-3569 | Cisco / IOS XR | Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | 2021-11-03 | 8.6 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3566 | Cisco / IOS XR | Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | 2021-11-03 | 8.6 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3452 | Cisco / Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Read-Only Path Traversal Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3161 | Cisco / Cisco IP Phones | Cisco IP Phones Web Server Remote Code Execution and Denial-of-Service Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-3118 | Cisco / IOS XR | Cisco IOS XR Software Discovery Protocol Format String Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-29583 | Zyxel / Multiple Products | Zyxel Multiple Products Use of Hard-Coded Credentials Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-29557 | D-Link / DIR-825 R1 Devices | D-Link DIR-825 R1 Devices Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-27950 | Apple / Multiple Products | Apple Multiple Products Memory Initialization Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-27932 | Apple / Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-27930 | Apple / Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-26919 | NETGEAR / JGS516PE Devices | Netgear JGS516PE Devices Missing Function Level Access Control Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-2555 | Oracle / Multiple Products | Oracle Multiple Products Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-25506 | D-Link / DNS-320 Device | D-Link DNS-320 Device Command Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-25213 | WordPress / File Manager Plugin | WordPress File Manager Plugin Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-24557 | Trend Micro / Apex One, OfficeScan, and Worry-Free Business Security | Trend Micro Multiple Products Improper Access Control Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-17530 | Apache / Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-17496 | vBulletin / vBulletin | vBulletin PHP Module Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-17144 | Microsoft / Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 8.4 | past due |
| overdue 1591d2022-05-03 | CVE-2020-17087 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-16846 | SaltStack / Salt | SaltStack Salt Shell Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-16017 | Google / Chrome | Google Chrome Use-After-Free Vulnerability | 2021-11-03 | 9.6 | past due |
| overdue 1591d2022-05-03 | CVE-2020-16013 | Google / Chromium V8 | Google Chromium V8 Incorrect Implementation Vulnerabililty | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-16010 | Google / Chrome for Android UI | Google Chrome for Android UI Heap Buffer Overflow Vulnerability | 2021-11-03 | 9.6 | past due |
| overdue 1591d2022-05-03 | CVE-2020-16009 | Google / Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1758d2021-11-17 | CVE-2020-15999 | Google / Chrome FreeType | Google Chrome FreeType Heap Buffer Overflow Vulnerability | 2021-11-03 | 9.6 | past due |
| overdue 1591d2022-05-03 | CVE-2020-15505 | Ivanti / MobileIron Multiple Products | Ivanti MobileIron Multiple Products Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-14883 | Oracle / WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2021-11-03 | 7.2 | past due |
| overdue 1591d2022-05-03 | CVE-2020-14882 | Oracle / WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-14871 | Oracle / Solaris and Zettabyte File System (ZFS) | Oracle Solaris and Zettabyte File System (ZFS) Unspecified Vulnerability | 2021-11-03 | 10.0 | past due |
| overdue 1591d2022-05-03 | CVE-2020-14750 | Oracle / WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1472 | Microsoft / Netlogon | Microsoft Netlogon Privilege Escalation Vulnerability | 2021-11-03 | 5.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-1464 | Microsoft / Windows | Microsoft Windows Spoofing Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1380 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1350 | Microsoft / Windows | Microsoft Windows DNS Server Remote Code Execution Vulnerability | 2021-11-03 | 10.0 | past due |
| overdue 1591d2022-05-03 | CVE-2020-12812 | Fortinet / FortiOS | Fortinet FortiOS SSL VPN Improper Authentication Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-12271 | Sophos / SFOS | Sophos SFOS SQL Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-11738 | WordPress / Snap Creek Duplicator Plugin | WordPress Snap Creek Duplicator Plugin File Download Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-11652 | SaltStack / Salt | SaltStack Salt Path Traversal Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-11651 | SaltStack / Salt | SaltStack Salt Authentication Bypass Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1147 | Microsoft / .NET Framework, SharePoint, Visual Studio | Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10987 | Tenda / AC1900 Router AC15 Model | Tenda AC1900 Router AC15 Model Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1054 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.0 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1040 | Microsoft / Hyper-V RemoteFX | Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability | 2021-11-03 | 9.0 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10221 | rConfig / rConfig | rConfig OS Command Injection Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-1020 | Microsoft / Windows | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10199 | Sonatype / Nexus Repository | Sonatype Nexus Repository Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10189 | Zoho / ManageEngine | Zoho ManageEngine Desktop Central File Upload Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10181 | Sumavision / Enhanced Multimedia Router (EMR) | Sumavision EMR Cross-Site Request Forgery (CSRF) Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-10148 | SolarWinds / Orion | SolarWinds Orion Authentication Bypass Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0986 | Microsoft / Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0968 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-0938 | Microsoft / Windows | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0878 | Microsoft / Edge and Internet Explorer | Microsoft Edge and Internet Explorer Memory Corruption Vulnerability | 2021-11-03 | 4.2 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-0688 | Microsoft / Exchange Server | Microsoft Exchange Server Validation Key Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2020-0683 | Microsoft / Windows | Microsoft Windows Installer Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0674 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0646 | Microsoft / .NET Framework | Microsoft .NET Framework Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0601 | Microsoft / Windows | Microsoft Windows CryptoAPI Spoofing Vulnerability | 2021-11-03 | 8.1 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0069 | MediaTek / Multiple Chipsets | Mediatek Multiple Chipsets Insufficient Input Validation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2020-0041 | Android / Android Kernel | Android Kernel Out-of-Bounds Write Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-9978 | WordPress / Social Warfare Plugin | WordPress Social Warfare Plugin Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 | 6.1 | past due |
| overdue 1591d2022-05-03 | CVE-2019-9082 | ThinkPHP / ThinkPHP | ThinkPHP Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-8394 | Zoho / ManageEngine | Zoho ManageEngine ServiceDesk Plus (SDP) File Upload Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-7481 | SonicWall / SMA100 | SonicWall SMA100 SQL Injection Vulnerability | 2021-11-03 | 7.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-6223 | Apple / iOS and macOS | Apple iOS and macOS Group Facetime Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-5591 | Fortinet / FortiOS | Fortinet FortiOS Default Configuration Vulnerability | 2021-11-03 | 6.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-5544 | VMware / VMware ESXi and Horizon DaaS | VMware ESXi and Horizon DaaS OpenSLP Heap-Based Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-4716 | IBM / Planning Analytics | IBM Planning Analytics Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-3398 | Atlassian / Confluence Server and Data Center | Atlassian Confluence Server and Data Center Path Traversal Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-3396 | Atlassian / Confluence Server and Data Server | Atlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-2215 | Android / Android Kernel | Android Kernel Use-After-Free Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-20085 | TVT / NVMS-1000 | TVT NVMS-1000 Directory Traversal Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-19781 | Citrix / Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-19356 | Netis / WF2419 Devices | Netis WF2419 Devices Remote Code Execution Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-18988 | TeamViewer / Desktop | TeamViewer Desktop Bypass Remote Login Vulnerability | 2021-11-03 | 7.0 | past due |
| overdue 1591d2022-05-03 | CVE-2019-18935 | Progress / Telerik UI for ASP.NET AJAX | Progress Telerik UI for ASP.NET AJAX Deserialization of Untrusted Data Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-18187 | Trend Micro / OfficeScan | Trend Micro OfficeScan Directory Traversal Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-17558 | Apache / Solr | Apache Solr VelocityResponseWriter Plug-In Remote Code Execution Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-17026 | Mozilla / Firefox and Thunderbird | Mozilla Firefox And Thunderbird Type Confusion Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-16759 | vBulletin / vBulletin | vBulletin PHP Module Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-1653 | Cisco / Small Business RV320 and RV325 Routers | Cisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-16256 | SIMalliance / Toolbox Browser | SIMalliance Toolbox Browser Command Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-15949 | Nagios / Nagios XI | Nagios XI Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-15752 | Docker / Desktop Community Edition | Docker Desktop Community Edition Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-1429 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2019-1367 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-13608 | Citrix / StoreFront Server | Citrix StoreFront Server XML External Entity (XXE) Processing Vulnerability | 2021-11-03 | 7.5 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-1215 | Microsoft / Windows | Microsoft Windows Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-1214 | Microsoft / Windows | Microsoft Windows Privilege Common Log File System (CLFS) Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-11634 | Citrix / Workspace Application and Receiver for Windows | Citrix Workspace Application and Receiver for Windows Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-11580 | Atlassian / Crowd and Crowd Data Center | Atlassian Crowd and Crowd Data Center Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-11539 | Ivanti / Pulse Connect Secure and Pulse Policy Secure | Ivanti Pulse Connect Secure and Policy Secure Command Injection Vulnerability | 2021-11-03 | 7.2 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-11510 | Ivanti / Pulse Connect Secure | Ivanti Pulse Connect Secure Arbitrary File Read Vulnerability | 2021-11-03 | 10.0 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-0863 | Microsoft / Windows | Microsoft Windows Error Reporting (WER) Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-0859 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-0808 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-0803 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-0797 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-0708 | Microsoft / Remote Desktop Services | Microsoft Remote Desktop Services Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-0604 | Microsoft / SharePoint | Microsoft SharePoint Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2019-0541 | Microsoft / MSHTML | Microsoft MSHTML Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2019-0211 | Apache / HTTP Server | Apache HTTP Server Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-8653 | Microsoft / Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2018-7600 | Drupal / Drupal Core | Drupal Core Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-6789 | Exim / Exim | Exim Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-4939 | Adobe / ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-4878 | Adobe / Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-2380 | SAP / Customer Relationship Management (CRM) | SAP Customer Relationship Management (CRM) Path Traversal Vulnerability | 2021-11-03 | 6.6 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-20062 | ThinkPHP / noneCms | ThinkPHP "noneCms" Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-18325 | DotNetNuke (DNN) / DotNetNuke (DNN) | DotNetNuke (DNN) Inadequate Encryption Strength Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2018-15961 | Adobe / ColdFusion | Adobe ColdFusion Unrestricted File Upload Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-15811 | DotNetNuke (DNN) / DotNetNuke (DNN) | DotNetNuke (DNN) Inadequate Encryption Strength Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2018-14558 | Tenda / AC7, AC9, and AC10 Routers | Tenda AC7, AC9, and AC10 Routers Command Injection Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-13379 | Fortinet / FortiOS | Fortinet FortiOS SSL VPN Path Traversal Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-11776 | Apache / Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 | 8.1 | past due |
| overdue 1591d2022-05-03 | CVE-2018-0802 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2018-0798 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2018-0296 | Cisco / Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) Denial-of-Service Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2018-0171 | Cisco / IOS and IOS XE | Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-9822 | DotNetNuke (DNN) / DotNetNuke (DNN) | DotNetNuke (DNN) Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2017-9805 | Apache / Struts | Apache Struts Deserialization of Untrusted Data Vulnerability | 2021-11-03 | 8.1 | past due |
| overdue 1591d2022-05-03 | CVE-2017-9248 | Progress / ASP.NET AJAX and Sitefinity | Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-8759 | Microsoft / .NET Framework | Microsoft .NET Framework Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-7269 | Microsoft / Internet Information Services (IIS) | Microsoft Windows Server Buffer Overflow Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-6327 | Symantec / Symantec Messaging Gateway | Symantec Messaging Gateway Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-5638 | Apache / Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 | 9.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2017-16651 | Roundcube / Roundcube Webmail | Roundcube Webmail File Disclosure Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-11882 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2017-11774 | Microsoft / Office | Microsoft Office Outlook Security Feature Bypass Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2017-0199 | Microsoft / Office and WordPad | Microsoft Office and WordPad Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2017-0143 | Microsoft / Windows | Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2016-9563 | SAP / NetWeaver | SAP NetWeaver XML External Entity (XXE) Vulnerability | 2021-11-03 | 6.5 | past due |
| overdue 1591d2022-05-03 | CVE-2016-7255 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2016-4437 | Apache / Shiro | Apache Shiro Code Execution Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2016-3976 | SAP / NetWeaver | SAP NetWeaver Directory Traversal Vulnerability | 2021-11-03 | 7.5 | past due |
| overdue 1591d2022-05-03 | CVE-2016-3718 | ImageMagick / ImageMagick | ImageMagick Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1591d2022-05-03 | CVE-2016-3715 | ImageMagick / ImageMagick | ImageMagick Arbitrary File Deletion Vulnerability | 2021-11-03 | 5.5 | past due |
| overdue 1591d2022-05-03 | CVE-2016-3643 | SolarWinds / Virtualization Manager | SolarWinds Virtualization Manager Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2016-3235 | Microsoft / Office | Microsoft Office OLE DLL Side Loading Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2016-0185 | Microsoft / Windows | Microsoft Windows Media Center Remote Code Execution Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2016-0167 | Microsoft / Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 7.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2015-4852 | Oracle / WebLogic Server | Oracle WebLogic Server Deserialization of Untrusted Data Vulnerability | 2021-11-03 | 9.8 | past due |
| overdue 1591d2022-05-03 | CVE-2015-1641 | Microsoft / Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 | 7.8 | past due |
| overdue 1591d2022-05-03 | CVE-2014-1812 | Microsoft / Windows | Microsoft Windows Group Policy Preferences Password Privilege Escalation Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2012-3152 | Oracle / Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2021-11-03 | 9.1 | past due |
| overdue 1591d2022-05-03 | CVE-2012-0158 | Microsoft / MSCOMCTL.OCX | Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability | 2021-11-03 | 8.8 | past dueransomware |
| overdue 1591d2022-05-03 | CVE-2010-5326 | SAP / NetWeaver | SAP NetWeaver Remote Code Execution Vulnerability | 2021-11-03 | 10.0 | past due |
No records match these filters.
Clear them or search a CVE ID directly.