Browse
CISA KEV catalog
Search and filter the complete official catalog.
My watchlist
| CVE | Vendor | Product | CVSS | Vulnerability | Added | Due | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2020-16013 | Chromium V8 | 8.8 High | Google Chromium V8 Incorrect Implementation Vulnerabililty | 2021-11-03 | 2022-05-03 | Unknown | |
| CVE-2020-16010 | Chrome for Android UI | 9.6 Critical | Google Chrome for Android UI Heap Buffer Overflow Vulnerability | 2021-11-03 | 2022-05-03 | Unknown | |
| CVE-2020-16009 | Chromium V8 | 8.8 High | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 | 2022-05-03 | Unknown | |
| CVE-2020-15999 | Chrome FreeType | 9.6 Critical | Google Chrome FreeType Heap Buffer Overflow Vulnerability | 2021-11-03 | 2021-11-17 | Unknown | |
| CVE-2020-15505 | Ivanti | MobileIron Multiple Products | 9.8 Critical | Ivanti MobileIron Multiple Products Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-14883 | Oracle | WebLogic Server | 7.2 High | Oracle WebLogic Server Unspecified Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-14882 | Oracle | WebLogic Server | 9.8 Critical | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-14871 | Oracle | Solaris and Zettabyte File System (ZFS) | 10.0 Critical | Oracle Solaris and Zettabyte File System (ZFS) Unspecified Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-14750 | Oracle | WebLogic Server | 9.8 Critical | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1472 | Microsoft | Netlogon | 5.5 Medium | Microsoft Netlogon Privilege Escalation Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-1464 | Microsoft | Windows | 7.8 High | Microsoft Windows Spoofing Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1380 | Microsoft | Internet Explorer | 7.8 High | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1350 | Microsoft | Windows | 10.0 Critical | Microsoft Windows DNS Server Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-12812 | Fortinet | FortiOS | 9.8 Critical | Fortinet FortiOS SSL VPN Improper Authentication Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-12271 | Sophos | SFOS | 9.8 Critical | Sophos SFOS SQL Injection Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-11738 | WordPress | Snap Creek Duplicator Plugin | 7.5 High | WordPress Snap Creek Duplicator Plugin File Download Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-11652 | SaltStack | Salt | 6.5 Medium | SaltStack Salt Path Traversal Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-11651 | SaltStack | Salt | 9.8 Critical | SaltStack Salt Authentication Bypass Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1147 | Microsoft | .NET Framework, SharePoint, Visual Studio | 7.8 High | Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10987 | Tenda | AC1900 Router AC15 Model | 9.8 Critical | Tenda AC1900 Router AC15 Model Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1054 | Microsoft | Win32k | 7.8 High | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1040 | Microsoft | Hyper-V RemoteFX | 9.0 Critical | Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10221 | rConfig | rConfig | 8.8 High | rConfig OS Command Injection Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-1020 | Microsoft | Windows | 8.8 High | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10199 | Sonatype | Nexus Repository | 8.8 High | Sonatype Nexus Repository Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10189 | Zoho | ManageEngine | 9.8 Critical | Zoho ManageEngine Desktop Central File Upload Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10181 | Sumavision | Enhanced Multimedia Router (EMR) | 9.8 Critical | Sumavision EMR Cross-Site Request Forgery (CSRF) Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-10148 | SolarWinds | Orion | 9.8 Critical | SolarWinds Orion Authentication Bypass Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0986 | Microsoft | Windows | 7.8 High | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0968 | Microsoft | Internet Explorer | 7.5 High | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-0938 | Microsoft | Windows | 7.8 High | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0878 | Microsoft | Edge and Internet Explorer | 4.2 Medium | Microsoft Edge and Internet Explorer Memory Corruption Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-0688 | Microsoft | Exchange Server | 8.8 High | Microsoft Exchange Server Validation Key Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2020-0683 | Microsoft | Windows | 7.8 High | Microsoft Windows Installer Privilege Escalation Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0674 | Microsoft | Internet Explorer | 7.5 High | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0646 | Microsoft | .NET Framework | 9.8 Critical | Microsoft .NET Framework Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0601 | Microsoft | Windows | 8.1 High | Microsoft Windows CryptoAPI Spoofing Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0069 | MediaTek | Multiple Chipsets | 7.8 High | Mediatek Multiple Chipsets Insufficient Input Validation Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2020-0041 | Android | Android Kernel | 7.8 High | Android Kernel Out-of-Bounds Write Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-9978 | WordPress | Social Warfare Plugin | 6.1 Medium | WordPress Social Warfare Plugin Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-9082 | ThinkPHP | ThinkPHP | 8.8 High | ThinkPHP Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-8394 | Zoho | ManageEngine | 6.5 Medium | Zoho ManageEngine ServiceDesk Plus (SDP) File Upload Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-7481 | SonicWall | SMA100 | 7.5 High | SonicWall SMA100 SQL Injection Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2019-6223 | Apple | iOS and macOS | 7.5 High | Apple iOS and macOS Group Facetime Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-5591 | Fortinet | FortiOS | 6.5 Medium | Fortinet FortiOS Default Configuration Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2019-5544 | VMware | VMware ESXi and Horizon DaaS | 9.8 Critical | VMware ESXi and Horizon DaaS OpenSLP Heap-Based Buffer Overflow Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2019-4716 | IBM | Planning Analytics | 9.8 Critical | IBM Planning Analytics Remote Code Execution Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-3398 | Atlassian | Confluence Server and Data Center | 8.8 High | Atlassian Confluence Server and Data Center Path Traversal Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |
| CVE-2019-3396 | Atlassian | Confluence Server and Data Server | 9.8 Critical | Atlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability | 2021-11-03 | 2022-05-03 | Known |
| CVE-2019-2215 | Android | Android Kernel | 7.8 High | Android Kernel Use-After-Free Vulnerability | 2021-11-03 | 2022-05-03 | Unknown |