Browse
CISA KEV catalog
Search and filter the complete official catalog.
My watchlist
| CVE | Vendor | Product | CVSS | Vulnerability | Added | Due | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2021-31201 | Microsoft | Enhanced Cryptographic Provider | 5.2 Medium | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-31199 | Microsoft | Enhanced Cryptographic Provider | 5.2 Medium | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30869 | Apple | iOS, iPadOS, and macOS | 7.8 High | Apple iOS, iPadOS, and macOS Type Confusion Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30860 | Apple | Multiple Products | 7.8 High | Apple Multiple Products Integer Overflow Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30858 | Apple | iOS, iPadOS, and macOS | 8.8 High | Apple iOS, iPadOS, macOS Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30807 | Apple | Multiple Products | 7.8 High | Apple Multiple Products Memory Corruption Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30762 | Apple | iOS | 8.8 High | Apple iOS WebKit Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30761 | Apple | iOS | 8.8 High | Apple iOS WebKit Memory Corruption Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30713 | Apple | macOS | 7.8 High | Apple macOS Unspecified Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30666 | Apple | iOS | 8.8 High | Apple iOS WebKit Buffer Overflow Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30665 | Apple | Multiple Products | 8.8 High | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30663 | Apple | Multiple Products | 8.8 High | Apple Multiple Products WebKit Integer Overflow Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30661 | Apple | Multiple Products | 8.8 High | Apple Multiple Products WebKit Storage Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30657 | Apple | macOS | 5.5 Medium | Apple macOS Unspecified Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-30633 | Chromium Indexed DB API | 9.6 Critical | Google Chromium Indexed DB API Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2021-30632 | Chromium V8 | 8.8 High | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2021-30563 | Chromium V8 | 8.8 High | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2021-30554 | Chromium WebGL | 8.8 High | Google Chromium WebGL Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2021-30551 | Chromium V8 | 8.8 High | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2021-30116 | Kaseya | Virtual System/Server Administrator (VSA) | 9.8 Critical | Kaseya Virtual System/Server Administrator (VSA) Information Disclosure Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-28664 | Arm | Mali Graphics Processing Unit (GPU) | 8.8 High | Arm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-28663 | Arm | Mali Graphics Processing Unit (GPU) | 8.8 High | Arm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-28550 | Adobe | Acrobat and Reader | 8.8 High | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-28310 | Microsoft | Win32k | 7.8 High | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-27562 | Arm | Trusted Firmware | 5.5 Medium | Arm Trusted Firmware Out-of-Bounds Write Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-27561 | Yealink | Device Management | 9.8 Critical | Yealink Device Management Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-27104 | Accellion | FTA | 9.8 Critical | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-27103 | Accellion | FTA | 9.8 Critical | Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-27102 | Accellion | FTA | 7.8 High | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-27101 | Accellion | FTA | 9.8 Critical | Accellion FTA SQL Injection Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-27085 | Microsoft | Internet Explorer | 8.8 High | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-27065 | Microsoft | Exchange Server | 7.8 High | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-27059 | Microsoft | Office | 7.6 High | Microsoft Office Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-26858 | Microsoft | Exchange Server | 7.8 High | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-26857 | Microsoft | Exchange Server | 7.8 High | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-26855 | Microsoft | Exchange Server | 9.1 Critical | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-26411 | Microsoft | Internet Explorer | 8.8 High | Microsoft Internet Explorer Memory Corruption Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-26084 | Atlassian | Confluence Server and Data Center | 9.8 Critical | Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-23874 | McAfee | McAfee Total Protection (MTP) | 7.8 High | McAfee Total Protection (MTP) Improper Privilege Management Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-22986 | F5 | BIG-IP and BIG-IQ Centralized Management | 9.8 Critical | F5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-22900 | Ivanti | Pulse Connect Secure | 7.2 High | Ivanti Pulse Connect Secure Unrestricted File Upload Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2021-22899 | Ivanti | Pulse Connect Secure | 8.8 High | Ivanti Pulse Connect Secure Command Injection Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2021-22894 | Ivanti | Pulse Connect Secure | 8.8 High | Ivanti Pulse Connect Secure Collaboration Suite Buffer Overflow Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2021-22893 | Ivanti | Pulse Connect Secure | 10.0 Critical | Ivanti Pulse Connect Secure Use-After-Free Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-22506 | Micro Focus | Micro Focus Access Manager | 7.5 High | Micro Focus Access Manager Information Leakage Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-22502 | Micro Focus | Operation Bridge Reporter (OBR) | 9.8 Critical | Micro Focus Operation Bridge Report (OBR) Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Unknown |
| CVE-2021-22205 | GitLab | Community and Enterprise Editions | 10.0 Critical | GitLab Community and Enterprise Editions Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-22005 | VMware | vCenter Server | 9.8 Critical | VMware vCenter Server File Upload Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-21985 | VMware | vCenter Server | 9.8 Critical | VMware vCenter Server Improper Input Validation Vulnerability | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-21972 | VMware | vCenter Server | 9.8 Critical | VMware vCenter Server Remote Code Execution Vulnerability | 2021-11-03 | 2021-11-17 | Known |