Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2021-39226 Grafana Authentication Bypass Vulnerability HIGH N/A 99.93% cvelistv5 2022-08-25
cve-2021-38406 Delta Electronics DOPSoft 2 Improper Input Validation Vulnerability HIGH 7.8 76.43% cvelistv5 2022-08-25
cve-2021-31010 Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability HIGH 7.5 3.67% cvelistv5 2022-08-25
cve-2020-36193 PEAR Archive_Tar Improper Link Resolution Vulnerability HIGH N/A 70.59% cvelistv5 2022-08-25
cve-2020-28949 PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability HIGH N/A 84.55% cvelistv5 2022-08-25
cve-2022-0028 Palo Alto Networks PAN-OS Reflected Amplification Denial-of-Service Vulnerability HIGH 8.6 2.38% cvelistv5 2022-08-22
cve-2022-32894 Apple iOS and macOS Out-of-Bounds Write Vulnerability HIGH 7.8 3.29% cvelistv5 2022-08-18
cve-2022-32893 SUSE CVE CVE-2022-32893 HIGH 8.8 9.93% cvelistv5 2026-08-31
cve-2022-2856 chromium-browser: Insufficient validation of untrusted input in Intents HIGH 8.8 4.53% cvelistv5 2025-11-21
cve-2022-26923 Microsoft Active Directory Domain Services Privilege Escalation Vulnerability HIGH 8.8 83.50% cvelistv5 2022-08-18
cve-2022-22536 SAP Multiple Products HTTP Request Smuggling Vulnerability CRITICAL 9.8 97.95% cvelistv5 2022-08-18
cve-2022-21971 Microsoft Windows Runtime Remote Code Execution Vulnerability HIGH 7.8 53.93% cvelistv5 2022-08-18
cve-2017-15944 Palo Alto Networks PAN-OS Remote Code Execution Vulnerability CRITICAL 9.8 98.30% cvelistv5 2022-08-18
cve-2022-37042 Synacor Zimbra Collaboration Suite (ZCS) Authentication Bypass Vulnerability CRITICAL 9.8 91.89% cvelistv5 2022-08-11
cve-2022-27925 Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability HIGH 7.2 98.68% cvelistv5 2022-08-11
cve-2022-34713 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability HIGH N/A 67.76% cvelistv5 2022-08-09
cve-2022-30333 SUSE CVE CVE-2022-30333 MEDIUM 6.6 99.09% cvelistv5 2026-08-05
cve-2022-27924 Synacor Zimbra Collaboration Suite (ZCS) Command Injection Vulnerability HIGH 7.5 85.40% cvelistv5 2022-08-04
cve-2022-26138 Atlassian Questions For Confluence App Hard-coded Credentials Vulnerability CRITICAL 9.8 98.17% cvelistv5 2022-07-29
cve-2022-22047 Microsoft Windows Client Server Runtime Subsystem (CSRSS) Privilege Escalation Vulnerability HIGH 7.8 18.77% cvelistv5 2022-07-12
cve-2022-26925 Microsoft Windows LSA Spoofing Vulnerability HIGH 8.1 10.72% cvelistv5 2022-07-01
cve-2022-29499 The Service Appliance component in Mitel MiVoice Connect through 19.2 SP3 allows remote code execution because of incorrect data validation. The Service Appliances are SA 100, SA 400, and Virtual SA. CRITICAL 9.8 55.60% cvelistv5 2026-08-06
cve-2021-4034 A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine. HIGH 7.8 94.92% cvelistv5 2026-08-15
cve-2021-30983 Apple iOS and iPadOS Buffer Overflow Vulnerability HIGH 7.8 2.92% cvelistv5 2022-06-27
cve-2021-30533 Google Chromium PopupBlocker Security Bypass Vulnerability HIGH N/A 16.61% cvelistv5 2022-06-27
cve-2020-9907 A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8. An application may be able to execute arbitrary code with kernel privileges. HIGH 7.8 3.88% cvelistv5 2026-06-17
cve-2020-3837 A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, macOS Catalina 10.15.3, tvOS 13.3.1, watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges. HIGH 7.8 16.11% cvelistv5 2026-06-17
cve-2019-8605 A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.3, macOS Mojave 10.14.5, tvOS 12.3, watchOS 5.2.1. A malicious application may be able to execute arbitrary code with system privileges. HIGH 7.8 17.51% cvelistv5 2026-06-17
cve-2018-4344 A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5. HIGH 7.8 2.91% cvelistv5 2026-06-17
cve-2022-30190 Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability HIGH 7.8 99.23% cvelistv5 2022-06-14