Browse all
Known Exploited Vulnerabilities (CISA KEV) — all
The full CISA KEV catalog of vulnerabilities confirmed exploited in the wild — filter and search by year, ransomware use, and date added.
1,622 results
| Urgency | CVE | Name / product | Vendor | KEV added |
|---|---|---|---|---|
| Critical | CVE-2010-0188 ↗ | Adobe Reader and Acrobat — Adobe Reader and Acrobat Arbitrary Code Execution V... | Adobe | Mar 3, 2022 |
| High | CVE-2010-0232 ↗ | Microsoft Windows — Microsoft Windows Kernel Exception Handler Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2010-3333 ↗ | Microsoft Office — Microsoft Office Stack-based Buffer Overflow Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2011-0611 ↗ | Adobe Flash Player — Adobe Flash Player Remote Code Execution Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2011-1889 ↗ | Microsoft Forefront Threat Management Gateway (TMG) — Microsoft Forefront TMG... | Microsoft | Mar 3, 2022 |
| High | CVE-2011-3544 ↗ | Oracle Java SE JDK and JRE — Oracle Java SE Runtime Environment (JRE) Arbitrar... | Oracle | Mar 3, 2022 |
| Critical | CVE-2012-0507 ↗ | Oracle Java SE — Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execu... | Oracle | Mar 3, 2022 |
| High | CVE-2012-1535 ↗ | Adobe Flash Player — Adobe Flash Player Arbitrary Code Execution Vulnerability | Adobe | Mar 3, 2022 |
| Critical | CVE-2012-1723 ↗ | Oracle Java SE — Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execu... | Oracle | Mar 3, 2022 |
| High | CVE-2012-1856 ↗ | Microsoft Office — Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnera... | Microsoft | Mar 3, 2022 |
| Critical | CVE-2012-4681 ↗ | Oracle Java SE — Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execu... | Oracle | Mar 3, 2022 |
| High | CVE-2013-0632 ↗ | Adobe ColdFusion — Adobe ColdFusion Authentication Bypass Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2013-0640 ↗ | Adobe Reader and Acrobat — Adobe Reader and Acrobat Memory Corruption Vulnerab... | Adobe | Mar 3, 2022 |
| High | CVE-2013-0641 ↗ | Adobe Reader — Adobe Reader Buffer Overflow Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2013-1347 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Remote Code Executio... | Microsoft | Mar 3, 2022 |
| High | CVE-2013-1675 ↗ | Mozilla Firefox — Mozilla Firefox Information Disclosure Vulnerability | Mozilla | Mar 3, 2022 |
| High | CVE-2013-3346 ↗ | Adobe Reader and Acrobat — Adobe Reader and Acrobat Memory Corruption Vulnerab... | Adobe | Mar 3, 2022 |
| High | CVE-2013-3897 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Use-After-Free Vulne... | Microsoft | Mar 3, 2022 |
| High | CVE-2013-5065 ↗ | Microsoft Windows — Microsoft Windows Kernel Privilege Escalation Vulnerabilit... | Microsoft | Mar 3, 2022 |
| High | CVE-2014-0496 ↗ | Adobe Reader and Acrobat — Adobe Reader and Acrobat Use-After-Free Vulnerabili... | Adobe | Mar 3, 2022 |
| High | CVE-2014-4114 ↗ | Microsoft Windows — Microsoft Windows Object Linking & Embedding (OLE) Remote... | Microsoft | Mar 3, 2022 |
| High | CVE-2015-1642 ↗ | Microsoft Office — Microsoft Office Memory Corruption Vulnerability | Microsoft | Mar 3, 2022 |
| Critical | CVE-2015-1701 ↗ | Microsoft Win32k — Microsoft Win32k Privilege Escalation Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2015-2387 ↗ | Microsoft ATM Font Driver — Microsoft ATM Font Driver Privilege Escalation Vul... | Microsoft | Mar 3, 2022 |
| High | CVE-2015-2424 ↗ | Microsoft PowerPoint — Microsoft PowerPoint Memory Corruption Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2015-2545 ↗ | Microsoft Office — Microsoft Office Malformed EPS File Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2015-2590 ↗ | Oracle Java SE — Oracle Java SE and Java SE Embedded Remote Code Execution Vul... | Oracle | Mar 3, 2022 |
| High | CVE-2015-3043 ↗ | Adobe Flash Player — Adobe Flash Player Memory Corruption Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2015-4902 ↗ | Oracle Java SE — Oracle Java SE Integrity Check Vulnerability | Oracle | Mar 3, 2022 |
| High | CVE-2015-5119 ↗ | Adobe Flash Player — Adobe Flash Player Use-After-Free Vulnerability | Adobe | Mar 3, 2022 |
| Critical | CVE-2015-7645 ↗ | Adobe Flash Player — Adobe Flash Player Arbitrary Code Execution Vulnerability | Adobe | Mar 3, 2022 |
| Critical | CVE-2016-0099 ↗ | Microsoft Windows — Microsoft Windows Secondary Logon Service Privilege Escala... | Microsoft | Mar 3, 2022 |
| Critical | CVE-2016-1019 ↗ | Adobe Flash Player — Adobe Flash Player Arbitrary Code Execution Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2016-4117 ↗ | Adobe Flash Player — Adobe Flash Player Arbitrary Code Execution Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2016-5195 ↗ | Linux Kernel — Linux Kernel Race Condition Vulnerability | Linux | Mar 3, 2022 |
| High | CVE-2016-7193 ↗ | Microsoft Office — Microsoft Office Memory Corruption Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2016-7262 ↗ | Microsoft Excel — Microsoft Office Security Feature Bypass Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2016-7855 ↗ | Adobe Flash Player — Adobe Flash Player Use-After-Free Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2016-8562 ↗ | Siemens SIMATIC CP — Siemens SIMATIC CP 1543-1 Improper Privilege Management V... | Siemens | Mar 3, 2022 |
| High | CVE-2017-0001 ↗ | Microsoft Graphics Device Interface (GDI) — Microsoft Graphics Device Interfac... | Microsoft | Mar 3, 2022 |
| High | CVE-2017-0261 ↗ | Microsoft Office — Microsoft Office Use-After-Free Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2017-11292 ↗ | Adobe Flash Player — Adobe Flash Player Type Confusion Vulnerability | Adobe | Mar 3, 2022 |
| High | CVE-2017-11826 ↗ | Microsoft Office — Microsoft Office Remote Code Execution Vulnerability | Microsoft | Mar 3, 2022 |
| High | CVE-2017-12231 ↗ | Cisco IOS software — Cisco IOS Software Network Address Translation Denial-of-... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12232 ↗ | Cisco IOS software — Cisco IOS Software for Cisco Integrated Services Routers... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12233 ↗ | Cisco IOS software — Cisco IOS Software Common Industrial Protocol Request Den... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12234 ↗ | Cisco IOS software — Cisco IOS Software Common Industrial Protocol Request Den... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12235 ↗ | Cisco IOS software — Cisco IOS Software for Cisco Industrial Ethernet Switches... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12237 ↗ | Cisco IOS and IOS XE Software — Cisco IOS and IOS XE Software Internet Key Exc... | Cisco | Mar 3, 2022 |
| High | CVE-2017-12238 ↗ | Cisco Catalyst 6800 Series Switches — Cisco Catalyst 6800 Series Switches VPLS... | Cisco | Mar 3, 2022 |
Source: official U.S. government open data. This is an organized index, not an official U.S. government site. "Explained" links to our summary page; otherwise links go to the official primary source.