Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2018-8453 Microsoft Win32k Privilege Escalation Vulnerability HIGH 7.8 70.04% cvelistv5 2022-01-21
cve-2012-0391 SUSE CVE CVE-2012-0391 UNKNOWN N/A 75.60% cvelistv5 2024-09-13
cve-2006-1547 Apache Struts 1 ActionForm Denial-of-Service Vulnerability HIGH N/A 54.63% cvelistv5 2022-01-21
cve-2021-40870 Aviatrix Controller Unrestricted Upload of File CRITICAL 9.8 93.02% cvelistv5 2022-01-18
cve-2021-33766 Microsoft Exchange Server Information Disclosure HIGH 7.3 98.14% cvelistv5 2022-01-18
cve-2021-32648 October CMS Improper Authentication HIGH 8.2 90.42% cvelistv5 2022-01-18
cve-2021-25298 Nagios XI OS Command Injection HIGH 8.8 75.15% cvelistv5 2022-01-18
cve-2021-25297 Nagios XI OS Command Injection HIGH 8.8 56.66% cvelistv5 2022-01-18
cve-2021-25296 Nagios XI OS Command Injection HIGH 8.8 72.18% cvelistv5 2022-01-18
cve-2021-22991 F5 BIG-IP Traffic Management Microkernel Buffer Overflow CRITICAL 9.8 61.06% cvelistv5 2022-01-18
cve-2021-21975 VMware Server Side Request Forgery in vRealize Operations Manager API HIGH 7.5 78.29% cvelistv5 2022-01-18
cve-2021-21315 System Information Library for Node.JS Command Injection HIGH 7.1 90.67% cvelistv5 2022-01-18
cve-2020-14864 Oracle Business Intelligence Enterprise Edition Path Transversal HIGH 7.5 97.23% cvelistv5 2022-01-18
cve-2020-13927 Apache Airflow's Experimental API Authentication Bypass CRITICAL 9.8 99.78% cvelistv5 2022-01-18
cve-2020-13671 Drupal core Un-restricted Upload of File HIGH N/A 35.35% cvelistv5 2022-01-18
cve-2020-11978 Apache Airflow Command Injection HIGH 8.8 99.19% cvelistv5 2022-01-18
cve-2021-36260 Hikvision Improper Input Validation CRITICAL 9.8 99.87% cvelistv5 2022-01-10
cve-2021-27860 FatPipe WARP, IPVPN, and MPVPN Configuration Upload exploit CRITICAL 9.8 39.82% cvelistv5 2022-01-10
cve-2021-22017 VMware vCenter Server Improper Access Control MEDIUM 5.3 49.18% cvelistv5 2022-01-10
cve-2020-6572 Google Chrome Media Use-After-Free Vulnerability HIGH 8.8 10.59% cvelistv5 2022-01-10
cve-2019-9670 Synacor Zimbra Collaboration Suite (ZCS) Improper Restriction of XML External Entity Reference CRITICAL 9.8 99.99% cvelistv5 2022-01-10
cve-2019-7609 kibana: Arbitrary code execution flaw in the Timelion visualizer HIGH 7.5 95.34% cvelistv5 2026-02-23
cve-2019-2725 Oracle WebLogic Server, Injection CRITICAL 9.8 99.96% cvelistv5 2022-01-10
cve-2019-1579 Palo Alto Networks PAN-OS Remote Code Execution Vulnerability HIGH 8.1 46.24% cvelistv5 2022-01-10
cve-2019-1458 Microsoft Win32k Privilege Escalation Vulnerability HIGH 7.8 74.26% cvelistv5 2022-01-10
cve-2019-10149 exim: Remote command execution in deliver_message() function in /src/deliver.c CRITICAL 9.0 99.96% cvelistv5 2025-11-21
cve-2018-13383 Fortinet FortiOS and FortiProxy Out-of-bounds Write MEDIUM 4.3 33.65% cvelistv5 2022-01-10
cve-2018-13382 Fortinet FortiOS and FortiProxy Improper Authorization CRITICAL 9.1 81.69% cvelistv5 2022-01-10
cve-2017-1000486 Primetek Primefaces Remote Code Execution Vulnerability CRITICAL 9.8 94.10% cvelistv5 2022-01-10
cve-2015-7450 IBM WebSphere Application Server and Server Hypervisor Edition Code Injection. HIGH N/A 97.76% cvelistv5 2022-01-10