Live data
Exploited vulnerabilities, page 5
Entries 201 to 250
1,739 in total| Product | What an attacker gains | Concerns | Severity | Added |
|---|---|---|---|---|
Ivanti Endpoint Manager (EPM)CVE-2026-1603 | Authentication bypass | Business | 7.5 | |
SolarWinds Web Help DeskCVE-2025-26399 | Code executionused by ransomware | Business | 9.8 | |
Omnissa Workspace One UEMCVE-2021-22054 | Server-side request forgery | Business | 7.5 | |
Apple productsCVE-2023-43000 | Memory corruption | Everyone | 8.8 | |
Apple iOS and iPadOSCVE-2023-41974 | Memory corruption | Everyone | 7.8 | |
Apple productsCVE-2021-30952 | Memory corruption | Everyone | 7.8 | |
Rockwell productsCVE-2021-22681 | Authentication bypass | Everyone | 9.8 | |
Hikvision productsCVE-2017-7921 | Authentication bypass | Home network | 9.8 | |
Broadcom VMware Aria OperationsCVE-2026-22719 | Code execution | Business | 8.1 | |
Qualcomm productsCVE-2026-21385 | Memory corruption | Everyone | 7.8 | |
Cisco Catalyst SD-WAN Controller and ManagerCVE-2026-20127 | Authentication bypass | Business | 10.0 | |
Cisco SD-WANCVE-2022-20775 | File access | Business | 7.8 | |
Soliton Systems K.K FileZenCVE-2026-25108 | Code execution | Business | 8.7 | |
Roundcube WebmailCVE-2025-68461 | Cross-site scripting | Business | 6.1 | |
Roundcube WebmailCVE-2025-49113 | Code execution | Business | 8.8 | |
Dell RecoverPoint for Virtual Machines (RP4VMs)CVE-2026-22769 | Authentication bypass | Business | 10.0 | |
GitLabCVE-2021-22175 | Server-side request forgery | Business | 9.8 | |
Google ChromiumCVE-2026-2441 | Memory corruption | Everyone | 8.8 | |
TeamT5 ThreatSonar Anti-RansomwareCVE-2024-7694 | File access | Business | 7.2 | |
Synacor Zimbra Collaboration SuiteCVE-2020-7796 | Server-side request forgery | Business | 9.8 | |
Microsoft WindowsCVE-2008-0015 | Code execution | Everyone | 8.8 | |
BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA)CVE-2026-1731 | Code executionused by ransomware | Business | 9.9 | |
Apple productsCVE-2026-20700 | Memory corruption | Everyone | 7.8 | |
SolarWinds Web Help DeskCVE-2025-40536 | Security bypass | Business | 9.8 | |
Notepad++CVE-2025-15556 | Code execution | Business | 7.7 | |
Microsoft Configuration ManagerCVE-2024-43468 | SQL injection | Business | 9.8 | |
Microsoft WindowsCVE-2026-21533 | Privilege escalation | Everyone | 7.8 | |
Microsoft WindowsCVE-2026-21525 | Denial of service | Everyone | 6.2 | |
Microsoft WindowsCVE-2026-21519 | Memory corruption | Everyone | 7.8 | |
Microsoft OfficeCVE-2026-21514 | Vulnerability | Everyone | 7.8 | |
Microsoft WindowsCVE-2026-21513 | Security bypass | Everyone | 8.8 | |
Microsoft WindowsCVE-2026-21510 | Security bypass | Everyone | 8.8 | |
SmarterTools SmarterMailCVE-2026-24423 | Authentication bypassused by ransomware | Business | 9.3 | |
React Native Community CLICVE-2025-11953 | Code execution | Business | 9.8 | |
Sangoma FreePBXCVE-2025-64328 | Code execution | Business | 8.6 | |
SolarWinds Web Help DeskCVE-2025-40551 | Code execution | Business | 9.8 | |
GitLab Community and Enterprise EditionsCVE-2021-39935 | Server-side request forgery | Business | 7.5 | |
Sangoma FreePBXCVE-2019-19006 | Authentication bypass | Business | 9.8 | |
Ivanti Endpoint Manager Mobile (EPMM)CVE-2026-1281 | Code execution | Business | 9.8 | |
Fortinet productsCVE-2026-24858 | Authentication bypass | Everyone | 9.8 | |
GNU InetUtilsCVE-2026-24061 | Authentication bypass | Business | 9.8 | |
SmarterTools SmarterMailCVE-2026-23760 | Authentication bypassused by ransomware | Business | 9.3 | |
Microsoft OfficeCVE-2026-21509 | Security bypass | Everyone | 7.8 | |
SmarterTools SmarterMailCVE-2025-52691 | File accessused by ransomware | Business | 10.0 | |
Linux KernelCVE-2018-14634 | Memory corruption | Everyone | 7.8 | |
Broadcom VMware vCenter ServerCVE-2024-37079 | Memory corruption | Business | 9.8 | |
Synacor Zimbra Collaboration Suite (ZCS)CVE-2025-68645 | File access | Business | 8.8 | |
Prettier eslint-config-prettierCVE-2025-54313 | Vulnerability | Business | 7.5 | |
Versa ConcertoCVE-2025-34026 | Authentication bypass | Business | 9.2 | |
VitejsCVE-2025-31125 | Improper access control | Business | 7.5 |
Source: CISA Known Exploited Vulnerabilities catalogsource updated Oct 8, 2026, 20:09 UTC
Severity (CVSS): NIST NVD