Live data
Exploited vulnerabilities, page 13
Entries 601 to 650
1,739 in total| Product | What an attacker gains | Concerns | Severity | Added |
|---|---|---|---|---|
ServiceNow Utah, Vancouver, and Washington DC Now PlatformCVE-2024-5217 | Vulnerability | Business | 9.2 | |
ServiceNow Utah, Vancouver, and Washington DC Now PlatformCVE-2024-4879 | Improper access control | Business | 9.3 | |
Acronis Cyber Infrastructure (ACI)CVE-2023-45249 | Authentication bypass | Business | 9.8 | |
Twilio AuthyCVE-2024-39891 | Information disclosure | Business | 5.3 | |
Microsoft Internet ExplorerCVE-2012-4792 | Memory corruption | Everyone | 8.8 | |
Adobe Commerce and Magento Open SourceCVE-2024-34102 | XML external entity | Business | 9.8 | |
SolarWinds Serv-UCVE-2024-28995 | File access | Business | 7.5 | |
VMware vCenter ServerCVE-2022-22948 | Vulnerability | Business | 6.5 | |
OSGeo GeoServerCVE-2024-36401 | Code execution | Business | 9.8 | |
Microsoft WindowsCVE-2024-38112 | Security bypass | Everyone | 7.5 | |
Microsoft WindowsCVE-2024-38080 | Privilege escalation | Everyone | 7.8 | |
Rejetto HTTP File ServerCVE-2024-23692 | Vulnerabilityused by ransomware | Business | 9.8 | |
Cisco NX-OSCVE-2024-20399 | Code execution | Business | 6.7 | |
Linux KernelCVE-2022-2586 | Memory corruption | Everyone | 7.8 | |
OSGeo JAI-EXTCVE-2022-24816 | Code execution | Business | 10.0 | |
Roundcube WebmailCVE-2020-13965 | Cross-site scripting | Business | 6.1 | |
Progress Telerik Report ServerCVE-2024-4358 | Authentication bypass | Business | 9.8 | |
Android PixelCVE-2024-32896 | Privilege escalation | Everyone | 7.8 | |
Microsoft WindowsCVE-2024-26169 | Privilege escalationused by ransomware | Everyone | 7.8 | |
Arm Mali GPU Kernel DriverCVE-2024-4610 | Memory corruption | Everyone | 7.8 | |
PHP Group PHPCVE-2024-4577 | Code executionused by ransomware | Business | 9.8 | |
Oracle WebLogic ServerCVE-2017-3506 | Code execution | Business | 7.4 | |
Check Point Quantum Security GatewaysCVE-2024-24919 | Information disclosureused by ransomware | Business | 8.6 | |
Linux KernelCVE-2024-1086 | Memory corruptionused by ransomware | Everyone | 7.8 | |
Justice AV Solutions ViewerCVE-2024-4978 | Vulnerability | Business | 8.7 | |
Google Chromium V8CVE-2024-5274 | Memory corruption | Everyone | 9.6 | |
Apache FlinkCVE-2020-17519 | Improper access control | Business | 7.5 | |
Google Chromium V8CVE-2024-4947 | Memory corruption | Everyone | 9.6 | |
NextGen Healthcare Mirth ConnectCVE-2023-43208 | Code executionused by ransomware | Business | 9.8 | |
Google Chromium V8CVE-2024-4761 | Memory corruption | Everyone | 8.8 | |
D-Link DIR-605 RouterCVE-2021-40655 | Information disclosure | Home network | 7.5 | |
D-Link DIR-600 RouterCVE-2014-100005 | Request forgery | Home network | 8.0 | |
Microsoft DWM Core LibraryCVE-2024-30051 | Privilege escalationused by ransomware | Business | 7.8 | |
Microsoft WindowsCVE-2024-30040 | Security bypass | Everyone | 8.8 | |
Google ChromiumCVE-2024-4671 | Memory corruption | Everyone | 9.6 | |
GitLab CE/EECVE-2023-7028 | Improper access control | Business | 9.8 | |
Microsoft SmartScreen PromptCVE-2024-29988 | Security bypass | Business | 8.8 | |
CrushFTPCVE-2024-4040 | Vulnerability | Business | 10.0 | |
Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)CVE-2024-20359 | Privilege escalation | Business | 6.0 | |
Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD)CVE-2024-20353 | Denial of service | Business | 8.6 | |
Microsoft WindowsCVE-2022-38028 | Privilege escalation | Everyone | 7.8 | |
Palo Alto Networks PAN-OSCVE-2024-3400 | Code executionused by ransomware | Business | 10.0 | |
D-Link Multiple NAS DevicesCVE-2024-3273 | Code execution | Home network | 9.8 | |
D-Link Multiple NAS DevicesCVE-2024-3272 | Authentication bypass | Home network | 9.8 | |
Android PixelCVE-2024-29748 | Privilege escalation | Everyone | 7.8 | |
Android PixelCVE-2024-29745 | Information disclosure | Everyone | 5.5 | |
Microsoft SharePoint ServerCVE-2023-24955 | Code executionused by ransomware | Business | 7.2 | |
Fortinet FortiClient EMSCVE-2023-48788 | SQL injectionused by ransomware | Business | 9.8 | |
Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA)CVE-2021-44529 | Code executionused by ransomware | Business | 9.8 | |
Nice Linear eMerge E3-SeriesCVE-2019-7256 | Code execution | Business | 9.8 |
Source: CISA Known Exploited Vulnerabilities catalogsource updated Oct 8, 2026, 20:09 UTC
Severity (CVSS): NIST NVD