Browse
CISA KEV catalog
Search and filter the complete official catalog.
My watchlist
| CVE | Vendor | Product | CVSS | Vulnerability | Added | Due | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2023-21839 | Oracle | WebLogic Server | 7.5 High | Oracle WebLogic Server Unspecified Vulnerability | 2023-05-01 | 2023-05-22 | Unknown |
| CVE-2023-1389 | TP-Link | Archer AX21 | 8.8 High | TP-Link Archer AX-21 Command Injection Vulnerability | 2023-05-01 | 2023-05-22 | Unknown |
| CVE-2021-45046 | Apache | Log4j2 | 9.0 Critical | Apache Log4j2 Deserialization of Untrusted Data Vulnerability | 2023-05-01 | 2023-05-22 | Known |
| CVE-2023-28432 | MinIO | MinIO | 7.5 High | MinIO Information Disclosure Vulnerability | 2023-04-21 | 2023-05-12 | Unknown |
| CVE-2023-27350 | PaperCut | MF/NG | 9.8 Critical | PaperCut MF/NG Improper Access Control Vulnerability | 2023-04-21 | 2023-05-12 | Known |
| CVE-2023-2136 | Chromium Skia | 9.6 Critical | Google Chrome Skia Integer Overflow Vulnerability | 2023-04-21 | 2023-05-12 | Unknown | |
| CVE-2017-6742 | Cisco | IOS and IOS XE Software | 8.8 High | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2023-04-19 | 2023-05-10 | Unknown |
| CVE-2023-2033 | Chromium V8 | 8.8 High | Google Chromium V8 Type Confusion Vulnerability | 2023-04-17 | 2023-05-08 | Unknown | |
| CVE-2019-8526 | Apple | macOS | 7.8 High | Apple macOS Use-After-Free Vulnerability | 2023-04-17 | 2023-05-08 | Unknown |
| CVE-2023-29492 | Novi Survey | Novi Survey | 9.8 Critical | Novi Survey Insecure Deserialization Vulnerability | 2023-04-13 | 2023-05-04 | Unknown |
| CVE-2023-20963 | Android | Framework | 7.8 High | Android Framework Privilege Escalation Vulnerability | 2023-04-13 | 2023-05-04 | Unknown |
| CVE-2023-28252 | Microsoft | Windows | 7.8 High | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-04-11 | 2023-05-02 | Known |
| CVE-2023-28206 | Apple | iOS, iPadOS, and macOS | 8.6 High | Apple iOS, iPadOS, and macOS IOSurfaceAccelerator Out-of-Bounds Write Vulnerability | 2023-04-10 | 2023-05-01 | Unknown |
| CVE-2023-28205 | Apple | Multiple Products | 8.8 High | Apple Multiple Products WebKit Use-After-Free Vulnerability | 2023-04-10 | 2023-05-01 | Unknown |
| CVE-2023-26083 | Arm | Mali Graphics Processing Unit (GPU) | 3.3 Low | Arm Mali GPU Kernel Driver Information Disclosure Vulnerability | 2023-04-07 | 2023-04-28 | Unknown |
| CVE-2021-27878 | Veritas | Backup Exec Agent | 8.8 High | Veritas Backup Exec Agent Command Execution Vulnerability | 2023-04-07 | 2023-04-28 | Known |
| CVE-2021-27877 | Veritas | Backup Exec Agent | 9.8 Critical | Veritas Backup Exec Agent Improper Authentication Vulnerability | 2023-04-07 | 2023-04-28 | Known |
| CVE-2021-27876 | Veritas | Backup Exec Agent | 8.1 High | Veritas Backup Exec Agent File Access Vulnerability | 2023-04-07 | 2023-04-28 | Known |
| CVE-2019-1388 | Microsoft | Windows | 7.8 High | Microsoft Windows Certificate Dialog Privilege Escalation Vulnerability | 2023-04-07 | 2023-04-28 | Known |
| CVE-2022-27926 | Synacor | Zimbra Collaboration Suite (ZCS) | 6.1 Medium | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2023-04-03 | 2023-04-24 | Unknown |
| CVE-2023-0266 | Linux | Kernel | 7.0 High | Linux Kernel Use-After-Free Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2022-42948 | Fortra | Cobalt Strike | 9.8 Critical | Fortra Cobalt Strike User Interface Remote Code Execution Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2022-39197 | Fortra | Cobalt Strike | 6.1 Medium | Fortra Cobalt Strike Teamserver Cross-Site Scripting (XSS) Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2022-38181 | Arm | Mali Graphics Processing Unit (GPU) | 8.8 High | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2022-3038 | Chromium Network Service | 8.8 High | Google Chromium Network Service Use-After-Free Vulnerability | 2023-03-30 | 2023-04-20 | Unknown | |
| CVE-2022-22706 | Arm | Mali Graphics Processing Unit (GPU) | 7.8 High | Arm Mali GPU Kernel Driver Unspecified Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2021-30900 | Apple | iOS, iPadOS, and macOS | 7.8 High | Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2017-7494 | Samba | Samba | 9.8 Critical | Samba Remote Code Execution Vulnerability | 2023-03-30 | 2023-04-20 | Known |
| CVE-2013-3163 | Microsoft | Internet Explorer | 8.8 High | Microsoft Internet Explorer Memory Corruption Vulnerability | 2023-03-30 | 2023-04-20 | Unknown |
| CVE-2023-26360 | Adobe | ColdFusion | 8.6 High | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2023-03-15 | 2023-04-05 | Unknown |
| CVE-2023-24880 | Microsoft | Windows | 4.4 Medium | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2023-03-14 | 2023-04-04 | Known |
| CVE-2023-23397 | Microsoft | Office | 9.8 Critical | Microsoft Office Outlook Privilege Escalation Vulnerability | 2023-03-14 | 2023-04-04 | Unknown |
| CVE-2022-41328 | Fortinet | FortiOS | 7.1 High | Fortinet FortiOS Path Traversal Vulnerability | 2023-03-14 | 2023-04-04 | Unknown |
| CVE-2021-39144 | XStream | XStream | 8.5 High | XStream Remote Code Execution Vulnerability | 2023-03-10 | 2023-03-31 | Unknown |
| CVE-2020-5741 | Plex | Media Server | 7.2 High | Plex Media Server Remote Code Execution Vulnerability | 2023-03-10 | 2023-03-31 | Unknown |
| CVE-2022-35914 | Teclib | GLPI | 9.8 Critical | Teclib GLPI Remote Code Execution Vulnerability | 2023-03-07 | 2023-03-28 | Unknown |
| CVE-2022-33891 | Apache | Spark | 8.8 High | Apache Spark Command Injection Vulnerability | 2023-03-07 | 2023-03-28 | Unknown |
| CVE-2022-28810 | Zoho | ManageEngine | 6.8 Medium | Zoho ManageEngine ADSelfService Plus Remote Code Execution Vulnerability | 2023-03-07 | 2023-03-28 | Unknown |
| CVE-2022-36537 | ZK Framework | AuUploader | 7.5 High | ZK Framework AuUploader Unspecified Vulnerability | 2023-02-27 | 2023-03-20 | Known |
| CVE-2022-47986 | IBM | Aspera Faspex | 9.8 Critical | IBM Aspera Faspex Code Execution Vulnerability | 2023-02-21 | 2023-03-14 | Known |
| CVE-2022-41223 | Mitel | MiVoice Connect | 6.8 Medium | Mitel MiVoice Connect Code Injection Vulnerability | 2023-02-21 | 2023-03-14 | Known |
| CVE-2022-40765 | Mitel | MiVoice Connect | 6.8 Medium | Mitel MiVoice Connect Command Injection Vulnerability | 2023-02-21 | 2023-03-14 | Known |
| CVE-2022-46169 | Cacti | Cacti | 9.8 Critical | Cacti Command Injection Vulnerability | 2023-02-16 | 2023-03-09 | Unknown |
| CVE-2023-23529 | Apple | Multiple Products | 8.8 High | Apple Multiple Products WebKit Type Confusion Vulnerability | 2023-02-14 | 2023-03-07 | Unknown |
| CVE-2023-23376 | Microsoft | Windows | 7.8 High | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-02-14 | 2023-03-07 | Known |
| CVE-2023-21823 | Microsoft | Windows | 7.8 High | Microsoft Windows Graphic Component Privilege Escalation Vulnerability | 2023-02-14 | 2023-03-07 | Unknown |
| CVE-2023-21715 | Microsoft | Office | 7.3 High | Microsoft Office Publisher Security Feature Bypass Vulnerability | 2023-02-14 | 2023-03-07 | Unknown |
| CVE-2023-0669 | Fortra | GoAnywhere MFT | 7.2 High | Fortra GoAnywhere MFT Remote Code Execution Vulnerability | 2023-02-10 | 2023-03-03 | Known |
| CVE-2022-24990 | TerraMaster | TerraMaster OS | 7.5 High | TerraMaster OS Remote Command Execution Vulnerability | 2023-02-10 | 2023-03-03 | Known |
| CVE-2015-2291 | Intel | Ethernet Diagnostics Driver for Windows | 7.8 High | Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability | 2023-02-10 | 2023-03-03 | Known |