Browse all
Known Exploited Vulnerabilities (CISA KEV) — all
The full CISA KEV catalog of vulnerabilities confirmed exploited in the wild — filter and search by year, ransomware use, and date added.
1,622 results
| Urgency | CVE | Name / product | Vendor | KEV added |
|---|---|---|---|---|
| High | CVE-2020-8260 ↗ | Ivanti Pulse Connect Secure — Ivanti Pulse Connect Secure Code Execution Vulne... | Ivanti | Nov 3, 2021 |
| High | CVE-2021-22894 ↗ | Ivanti Pulse Connect Secure — Ivanti Pulse Connect Secure Collaboration Suite... | Ivanti | Nov 3, 2021 |
| High | CVE-2021-22900 ↗ | Ivanti Pulse Connect Secure — Ivanti Pulse Connect Secure Unrestricted File Up... | Ivanti | Nov 3, 2021 |
| High | CVE-2020-8243 ↗ | Ivanti Pulse Connect Secure — Ivanti Pulse Connect Secure Code Execution Vulne... | Ivanti | Nov 3, 2021 |
| Critical | CVE-2021-22893 ↗ | Ivanti Pulse Connect Secure — Ivanti Pulse Connect Secure Use-After-Free Vulne... | Ivanti | Nov 3, 2021 |
| Critical | CVE-2019-18935 ↗ | Progress Telerik UI for ASP.NET AJAX — Progress Telerik UI for ASP.NET AJAX De... | Progress | Nov 3, 2021 |
| High | CVE-2020-8644 ↗ | PlaySMS PlaySMS — PlaySMS Server-Side Template Injection Vulnerability | PlaySMS | Nov 3, 2021 |
| High | CVE-2020-14883 ↗ | Oracle WebLogic Server — Oracle WebLogic Server Unspecified Vulnerability | Oracle | Nov 3, 2021 |
| High | CVE-2020-14882 ↗ | Oracle WebLogic Server — Oracle WebLogic Server Remote Code Execution Vulnerab... | Oracle | Nov 3, 2021 |
| High | CVE-2020-14750 ↗ | Oracle WebLogic Server — Oracle WebLogic Server Remote Code Execution Vulnerab... | Oracle | Nov 3, 2021 |
| High | CVE-2015-4852 ↗ | Oracle WebLogic Server — Oracle WebLogic Server Deserialization of Untrusted D... | Oracle | Nov 3, 2021 |
| High | CVE-2020-14871 ↗ | Oracle Solaris and Zettabyte File System (ZFS) — Oracle Solaris and Zettabyte... | Oracle | Nov 3, 2021 |
| High | CVE-2012-3152 ↗ | Oracle Fusion Middleware — Oracle Fusion Middleware Unspecified Vulnerability | Oracle | Nov 3, 2021 |
| High | CVE-2020-2555 ↗ | Oracle Multiple Products — Oracle Multiple Products Remote Code Execution Vuln... | Oracle | Nov 3, 2021 |
| High | CVE-2019-19356 ↗ | Netis WF2419 Devices — Netis WF2419 Devices Remote Code Execution Vulnerabilit... | Netis | Nov 3, 2021 |
| High | CVE-2020-26919 ↗ | NETGEAR JGS516PE Devices — Netgear JGS516PE Devices Missing Function Level Acc... | NETGEAR | Nov 3, 2021 |
| High | CVE-2019-15949 ↗ | Nagios Nagios XI — Nagios XI Remote Code Execution Vulnerability | Nagios | Nov 3, 2021 |
| High | CVE-2019-17026 ↗ | Mozilla Firefox and Thunderbird — Mozilla Firefox And Thunderbird Type Confusi... | Mozilla | Nov 3, 2021 |
| High | CVE-2020-6820 ↗ | Mozilla Firefox and Thunderbird — Mozilla Firefox And Thunderbird Use-After-Fr... | Mozilla | Nov 3, 2021 |
| High | CVE-2020-6819 ↗ | Mozilla Firefox and Thunderbird — Mozilla Firefox And Thunderbird Use-After-Fr... | Mozilla | Nov 3, 2021 |
| High | CVE-2021-38648 ↗ | Microsoft Open Management Infrastructure (OMI) — Microsoft Open Management Inf... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-36955 ↗ | Microsoft Windows — Microsoft Windows Common Log File System (CLFS) Driver Pri... | Microsoft | Nov 3, 2021 |
| High | CVE-2019-0863 ↗ | Microsoft Windows — Microsoft Windows Error Reporting (WER) Privilege Escalati... | Microsoft | Nov 3, 2021 |
| High | CVE-2016-3235 ↗ | Microsoft Office — Microsoft Office OLE DLL Side Loading Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2019-1214 ↗ | Microsoft Windows — Microsoft Windows Privilege Common Log File System (CLFS)... | Microsoft | Nov 3, 2021 |
| High | CVE-2020-1147 ↗ | Microsoft .NET Framework, SharePoint, Visual Studio — Microsoft .NET Framework... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-26857 ↗ | Microsoft Exchange Server — Microsoft Exchange Server Remote Code Execution Vu... | Microsoft | Nov 3, 2021 |
| High | CVE-2019-0808 ↗ | Microsoft Win32k — Microsoft Win32k Privilege Escalation Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2020-0646 ↗ | Microsoft .NET Framework — Microsoft .NET Framework Remote Code Execution Vuln... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2019-0604 ↗ | Microsoft SharePoint — Microsoft SharePoint Remote Code Execution Vulnerabilit... | Microsoft | Nov 3, 2021 |
| High | CVE-2020-0601 ↗ | Microsoft Windows — Microsoft Windows CryptoAPI Spoofing Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2021-34448 ↗ | Microsoft Windows — Microsoft Windows Scripting Engine Memory Corruption Vulne... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-1675 ↗ | Microsoft Windows — Microsoft Windows Print Spooler Remote Code Execution Vuln... | Microsoft | Nov 3, 2021 |
| High | CVE-2020-1054 ↗ | Microsoft Win32k — Microsoft Win32k Privilege Escalation Vulnerability | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-27065 ↗ | Microsoft Exchange Server — Microsoft Exchange Server Remote Code Execution Vu... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-26858 ↗ | Microsoft Exchange Server — Microsoft Exchange Server Remote Code Execution Vu... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2021-26855 ↗ | Microsoft Exchange Server — Microsoft Exchange Server Remote Code Execution Vu... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2020-1472 ↗ | Microsoft Netlogon — Microsoft Netlogon Privilege Escalation Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2020-0968 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Scripting Engine Mem... | Microsoft | Nov 3, 2021 |
| High | CVE-2017-11774 ↗ | Microsoft Office — Microsoft Office Outlook Security Feature Bypass Vulnerabil... | Microsoft | Nov 3, 2021 |
| High | CVE-2019-1429 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Scripting Engine Mem... | Microsoft | Nov 3, 2021 |
| High | CVE-2020-1380 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Scripting Engine Mem... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2017-0199 ↗ | Microsoft Office and WordPad — Microsoft Office and WordPad Remote Code Execut... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2019-1367 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Scripting Engine Mem... | Microsoft | Nov 3, 2021 |
| High | CVE-2021-27059 ↗ | Microsoft Office — Microsoft Office Remote Code Execution Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2020-0674 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Scripting Engine Mem... | Microsoft | Nov 3, 2021 |
| Critical | CVE-2017-11882 ↗ | Microsoft Office — Microsoft Office Memory Corruption Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2019-0541 ↗ | Microsoft MSHTML — Microsoft MSHTML Remote Code Execution Vulnerability | Microsoft | Nov 3, 2021 |
| High | CVE-2021-27085 ↗ | Microsoft Internet Explorer — Microsoft Internet Explorer Remote Code Executio... | Microsoft | Nov 3, 2021 |
| High | CVE-2015-1641 ↗ | Microsoft Office — Microsoft Office Memory Corruption Vulnerability | Microsoft | Nov 3, 2021 |
Source: official U.S. government open data. This is an organized index, not an official U.S. government site. "Explained" links to our summary page; otherwise links go to the official primary source.