Browse
CISA KEV catalog
Search and filter the complete official catalog.
My watchlist
| CVE | Vendor | Product | CVSS | Vulnerability | Added | Due | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2013-0641 | Adobe | Reader | 7.8 High | Adobe Reader Buffer Overflow Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2013-0640 | Adobe | Reader and Acrobat | 7.8 High | Adobe Reader and Acrobat Memory Corruption Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2013-0632 | Adobe | ColdFusion | 9.8 Critical | Adobe ColdFusion Authentication Bypass Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2012-4681 | Oracle | Java SE | 9.8 Critical | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Known |
| CVE-2012-1856 | Microsoft | Office | 8.8 High | Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2012-1723 | Oracle | Java SE | 9.8 Critical | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Known |
| CVE-2012-1535 | Adobe | Flash Player | 7.8 High | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2012-0507 | Oracle | Java SE | 9.8 Critical | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Known |
| CVE-2011-3544 | Oracle | Java SE JDK and JRE | 9.8 Critical | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2011-1889 | Microsoft | Forefront Threat Management Gateway (TMG) | 9.8 Critical | Microsoft Forefront TMG Remote Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2011-0611 | Adobe | Flash Player | 8.8 High | Adobe Flash Player Remote Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2010-3333 | Microsoft | Office | 7.8 High | Microsoft Office Stack-based Buffer Overflow Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2010-0232 | Microsoft | Windows | 7.8 High | Microsoft Windows Kernel Exception Handler Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2010-0188 | Adobe | Reader and Acrobat | 7.8 High | Adobe Reader and Acrobat Arbitrary Code Execution Vulnerability | 2022-03-03 | 2022-03-24 | Known |
| CVE-2009-3129 | Microsoft | Excel | 7.8 High | Microsoft Excel Featheader Record Memory Corruption Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2009-1123 | Microsoft | Windows | 7.8 High | Microsoft Windows Improper Input Validation Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2008-3431 | Oracle | VirtualBox | 8.8 High | Oracle VirtualBox Insufficient Input Validation Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2008-2992 | Adobe | Acrobat and Reader | 7.8 High | Adobe Reader and Acrobat Input Validation Vulnerability | 2022-03-03 | 2022-03-24 | Known |
| CVE-2004-0210 | Microsoft | Windows | 7.8 High | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2002-0367 | Microsoft | Windows | 7.8 High | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 | 2022-03-24 | Unknown |
| CVE-2022-24682 | Synacor | Zimbra Collaborate Suite (ZCS) | 6.1 Medium | Synacor Zimbra Collaborate Suite (ZCS) Cross-Site Scripting Vulnerability | 2022-02-25 | 2022-03-11 | Known |
| CVE-2017-8570 | Microsoft | Office | 7.8 High | Microsoft Office Remote Code Execution Vulnerability | 2022-02-25 | 2022-08-25 | Unknown |
| CVE-2017-0222 | Microsoft | Internet Explorer | 8.8 High | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2022-02-25 | 2022-08-25 | Unknown |
| CVE-2014-6352 | Microsoft | Windows | 7.8 High | Microsoft Windows Code Injection Vulnerability | 2022-02-25 | 2022-08-25 | Unknown |
| CVE-2022-23134 | Zabbix | Frontend | 5.3 Medium | Zabbix Frontend Improper Access Control Vulnerability | 2022-02-22 | 2022-03-08 | Unknown |
| CVE-2022-23131 | Zabbix | Frontend | 9.8 Critical | Zabbix Frontend Authentication Bypass Vulnerability | 2022-02-22 | 2022-03-08 | Unknown |
| CVE-2022-24086 | Adobe | Commerce and Magento Open Source | 9.8 Critical | Adobe Commerce and Magento Open Source Improper Input Validation Vulnerability | 2022-02-15 | 2022-03-01 | Unknown |
| CVE-2022-0609 | Chromium Animation | 8.8 High | Google Chromium Animation Use-After-Free Vulnerability | 2022-02-15 | 2022-03-01 | Unknown | |
| CVE-2019-0752 | Microsoft | Internet Explorer | 7.5 High | Microsoft Internet Explorer Type Confusion Vulnerability | 2022-02-15 | 2022-08-15 | Known |
| CVE-2018-8174 | Microsoft | Windows | 7.5 High | Microsoft Windows VBScript Engine Out-of-Bounds Write Vulnerability | 2022-02-15 | 2022-08-15 | Known |
| CVE-2018-20250 | RARLAB | WinRAR | 7.8 High | WinRAR Absolute Path Traversal Vulnerability | 2022-02-15 | 2022-08-15 | Known |
| CVE-2018-15982 | Adobe | Flash Player | 7.8 High | Adobe Flash Player Use-After-Free Vulnerability | 2022-02-15 | 2022-08-15 | Known |
| CVE-2017-9841 | PHPUnit | PHPUnit | 9.8 Critical | PHPUnit Command Injection Vulnerability | 2022-02-15 | 2022-08-15 | Unknown |
| CVE-2014-1761 | Microsoft | Word | 7.8 High | Microsoft Word Memory Corruption Vulnerability | 2022-02-15 | 2022-08-15 | Unknown |
| CVE-2013-3906 | Microsoft | Graphics Component | 7.8 High | Microsoft Graphics Component Memory Corruption Vulnerability | 2022-02-15 | 2022-08-15 | Unknown |
| CVE-2022-22620 | Apple | iOS, iPadOS, and macOS | 8.8 High | Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability | 2022-02-11 | 2022-02-25 | Unknown |
| CVE-2021-36934 | Microsoft | Windows | 7.8 High | Microsoft Windows SAM Local Privilege Escalation Vulnerability | 2022-02-10 | 2022-02-24 | Unknown |
| CVE-2020-0796 | Microsoft | SMBv3 | 10.0 Critical | Microsoft SMBv3 Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Known |
| CVE-2018-1000861 | Jenkins | Jenkins Stapler Web Framework | 9.8 Critical | Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2017-9791 | Apache | Struts 1 | 9.8 Critical | Apache Struts 1 Improper Input Validation Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2017-8464 | Microsoft | Windows | 8.8 High | Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2017-10271 | Oracle | WebLogic Server | 7.5 High | Oracle Corporation WebLogic Server Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Known |
| CVE-2017-0263 | Microsoft | Win32k | 7.8 High | Microsoft Win32k Privilege Escalation Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2017-0262 | Microsoft | Office | 7.8 High | Microsoft Office Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2017-0145 | Microsoft | SMBv1 | 8.8 High | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Known |
| CVE-2017-0144 | Microsoft | SMBv1 | 8.8 High | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Known |
| CVE-2016-3088 | Apache | ActiveMQ | 9.8 Critical | Apache ActiveMQ Improper Input Validation Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2015-2051 | D-Link | DIR-645 Router | 8.8 High | D-Link DIR-645 Router Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2015-1635 | Microsoft | HTTP.sys | 9.8 Critical | Microsoft HTTP.sys Remote Code Execution Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |
| CVE-2015-1130 | Apple | OS X | 7.8 High | Apple OS X Authentication Bypass Vulnerability | 2022-02-10 | 2022-08-10 | Unknown |