Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2024-13161 Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability CRITICAL 9.8 90.08% cvelistv5 2025-03-10
cve-2024-13160 Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability CRITICAL 9.8 91.25% cvelistv5 2025-03-10
cve-2024-13159 Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability CRITICAL 9.8 99.99% cvelistv5 2025-03-10
cve-2024-13030 CVE-2024-13030 HIGH 7.5 1.93% cvelistv5
cve-2024-12987 DrayTek Vigor Routers OS Command Injection Vulnerability HIGH 7.5 98.08% cvelistv5 2025-05-15
cve-2024-12912 CVE-2024-12912 HIGH 7.2 1.24% cvelistv5
cve-2024-12856 CVE-2024-12856 HIGH 7.2 84.22% cvelistv5
cve-2024-12847 CVE-2024-12847 CRITICAL 9.8 29.94% cvelistv5
cve-2024-12686 BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) OS Command Injection Vulnerability HIGH N/A 13.70% cvelistv5 2025-01-13
cve-2024-12356 BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability HIGH N/A 87.26% cvelistv5 2024-12-19
cve-2024-12209 WP Umbrella: Update Backup Restore & Monitoring <= 2.17.0 - Unauthenticated Local File Inclusion CRITICAL 9.8 23.22% cvelistv5 2026-06-17
cve-2024-1212 Progress Kemp LoadMaster OS Command Injection Vulnerability CRITICAL 10.0 95.39% cvelistv5 2024-11-18
cve-2024-11680 ProjectSend Improper Authentication Vulnerability CRITICAL 9.8 91.70% cvelistv5 2024-12-03
cve-2024-11667 Zyxel Multiple Firewalls Path Traversal Vulnerability HIGH 7.5 2.93% cvelistv5 2024-12-03
cve-2024-11305 CVE-2024-11305 MEDIUM 6.5 3.67% cvelistv5
cve-2024-11238 CVE-2024-11238 MEDIUM 6.9 5.75% cvelistv5
cve-2024-11182 MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability MEDIUM 5.3 17.71% cvelistv5 2025-05-19
cve-2024-11120 GeoVision Devices OS Command Injection Vulnerability CRITICAL 9.8 28.39% cvelistv5 2025-05-07
cve-2024-10914 D-Link DNS-320/DNS-320LW/DNS-325/DNS-340L account_mgr.cgi cgi_user_add os command injection HIGH 8.1 96.28% cvelistv5 2026-06-17
cve-2024-1086 Linux Kernel Use-After-Free Vulnerability CRITICAL N/A 28.06% cvelistv5 2024-05-30
cve-2024-1061 CVE-2024-1061 HIGH 8.6 11.21% cvelistv5
cve-2024-10586 CVE-2024-10586 CRITICAL 9.8 2.15% cvelistv5
cve-2024-1021 CVE-2024-1021 MEDIUM 6.5 34.71% cvelistv5
cve-2024-10081 CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Authentication bypass occurs when the API URL ends with Authentication. This bypass allows superuser access to all API endpoints other than Authentication. These endpoints include the ability to add, edit, and remove products, among others. All endpoints, apart from the /Authentication is affected by the vulnerability. This issue affects CodeChecker: through 6.24.1. CRITICAL 10.0 39.92% cvelistv5 2026-06-17
cve-2024-0778 CVE-2024-0778 HIGH 8.0 32.09% cvelistv5
cve-2024-0769 D-Link DIR-859 Router Path Traversal Vulnerability MEDIUM 5.3 82.71% cvelistv5 2025-06-25
cve-2024-0692 CVE-2024-0692 HIGH 8.8 92.25% cvelistv5
cve-2024-0519 Google Chromium V8 Out-of-Bounds Memory Access Vulnerability HIGH N/A 3.80% cvelistv5 2024-01-17
cve-2024-0352 CVE-2024-0352 HIGH 7.5 72.92% cvelistv5
cve-2024-0305 CVE-2024-0305 MEDIUM 5.3 66.93% cvelistv5