Browse all
Known Exploited Vulnerabilities (CISA KEV) — all
The full CISA KEV catalog of vulnerabilities confirmed exploited in the wild — filter and search by year, ransomware use, and date added.
1,622 results
| Urgency | CVE | Name / product | Vendor | KEV added |
|---|---|---|---|---|
| High | CVE-2018-11776 ↗ | Apache Struts — Apache Struts Remote Code Execution Vulnerability | Apache | Nov 3, 2021 |
| Critical | CVE-2017-5638 ↗ | Apache Struts — Apache Struts Remote Code Execution Vulnerability | Apache | Nov 3, 2021 |
| High | CVE-2020-17530 ↗ | Apache Struts — Apache Struts Remote Code Execution Vulnerability | Apache | Nov 3, 2021 |
| High | CVE-2019-17558 ↗ | Apache Solr — Apache Solr VelocityResponseWriter Plug-In Remote Code Execution... | Apache | Nov 3, 2021 |
| High | CVE-2016-4437 ↗ | Apache Shiro — Apache Shiro Code Execution Vulnerability | Apache | Nov 3, 2021 |
| High | CVE-2019-0211 ↗ | Apache HTTP Server — Apache HTTP Server Privilege Escalation Vulnerability | Apache | Nov 3, 2021 |
| Critical | CVE-2021-41773 ↗ | Apache HTTP Server — Apache HTTP Server Path Traversal Vulnerability | Apache | Nov 3, 2021 |
| Critical | CVE-2021-42013 ↗ | Apache HTTP Server — Apache HTTP Server Path Traversal Vulnerability | Apache | Nov 3, 2021 |
| High | CVE-2017-9805 ↗ | Apache Struts — Apache Struts Deserialization of Untrusted Data Vulnerability | Apache | Nov 3, 2021 |
| High | CVE-2020-0069 ↗ | MediaTek Multiple Chipsets — Mediatek Multiple Chipsets Insufficient Input Val... | MediaTek | Nov 3, 2021 |
| High | CVE-2020-0041 ↗ | Android Android Kernel — Android Kernel Out-of-Bounds Write Vulnerability | Android | Nov 3, 2021 |
| High | CVE-2019-2215 ↗ | Android Android Kernel — Android Kernel Use-After-Free Vulnerability | Android | Nov 3, 2021 |
| High | CVE-2020-5735 ↗ | Amcrest Cameras and Network Video Recorder (NVR) — Amcrest Cameras and NVR Sta... | Amcrest | Nov 3, 2021 |
| Critical | CVE-2018-4878 ↗ | Adobe Flash Player — Adobe Flash Player Use-After-Free Vulnerability | Adobe | Nov 3, 2021 |
| High | CVE-2018-15961 ↗ | Adobe ColdFusion — Adobe ColdFusion Unrestricted File Upload Vulnerability | Adobe | Nov 3, 2021 |
| High | CVE-2018-4939 ↗ | Adobe ColdFusion — Adobe ColdFusion Deserialization of Untrusted Data Vulnerab... | Adobe | Nov 3, 2021 |
| High | CVE-2021-28550 ↗ | Adobe Acrobat and Reader — Adobe Acrobat and Reader Use-After-Free Vulnerabili... | Adobe | Nov 3, 2021 |
| High | CVE-2021-21017 ↗ | Adobe Acrobat and Reader — Adobe Acrobat and Reader Heap-based Buffer Overflow... | Adobe | Nov 3, 2021 |
| Critical | CVE-2021-27103 ↗ | Accellion FTA — Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability | Accellion | Nov 3, 2021 |
| Critical | CVE-2021-27101 ↗ | Accellion FTA — Accellion FTA SQL Injection Vulnerability | Accellion | Nov 3, 2021 |
| Critical | CVE-2021-27102 ↗ | Accellion FTA — Accellion FTA OS Command Injection Vulnerability | Accellion | Nov 3, 2021 |
| Critical | CVE-2021-27104 ↗ | Accellion FTA — Accellion FTA OS Command Injection Vulnerability | Accellion | Nov 3, 2021 |
Source: official U.S. government open data. This is an organized index, not an official U.S. government site. "Explained" links to our summary page; otherwise links go to the official primary source.