CISA Known Exploited Vulnerabilities
Vulnerabilities CISA has confirmed are being actively exploited. These are the top priority — federal agencies have a mandated patch-by date, and so should you. 1,716 entries.
| CVE | Added | Patch by | EPSS | CVSS | Ransomware | What |
|---|---|---|---|---|---|---|
| CVE-2021-1732 | 2021-11-03 | 2021-11-17 | 78.4% | 7.8 | yes | Windows Win32k Elevation of Privilege Vulnerability |
| CVE-2021-1782 | 2021-11-03 | 2021-11-17 | 2.2% | — | Apple iOS, iPadOs, macOS, watchOS, and tvOS contain a race condition v… | |
| CVE-2021-42258 | 2021-11-03 | 2021-11-17 | 74.4% | — | yes | BQE BillQuick Web Suite contains an SQL injection vulnerability when a… |
| CVE-2021-41773 | 2021-11-03 | 2021-11-17 | 100.0% | — | yes | Apache HTTP Server contains a path traversal vulnerability that allows… |
| CVE-2021-42013 | 2021-11-03 | 2021-11-17 | 100.0% | — | yes | Apache HTTP Server contains a path traversal vulnerability that allows… |
| CVE-2020-1147 | 2021-11-03 | 2022-05-03 | 94.0% | — | Microsoft .NET Framework, Microsoft SharePoint, and Visual Studio cont… | |
| CVE-2020-11651 | 2021-11-03 | 2022-05-03 | 96.6% | — | SaltStack Salt contains an authentication bypass vulnerability in the … | |
| CVE-2020-11652 | 2021-11-03 | 2022-05-03 | 86.2% | — | SaltStack Salt contains a path traversal vulnerability in the salt-mas… | |
| CVE-2020-11738 | 2021-11-03 | 2022-05-03 | 97.8% | — | WordPress Snap Creek Duplicator plugin contains a file download vulner… | |
| CVE-2020-1040 | 2021-11-03 | 2022-05-03 | 7.3% | — | Microsoft Hyper-V RemoteFX vGPU contains an improper input validation … | |
| CVE-2020-1054 | 2021-11-03 | 2022-05-03 | 54.2% | 7.0 | An elevation of privilege vulnerability exists in Windows when the Win… | |
| CVE-2020-10987 | 2021-11-03 | 2022-05-03 | 79.8% | — | Tenda AC1900 Router AC15 Model contains an unspecified vulnerability t… | |
| CVE-2020-0878 | 2021-11-03 | 2022-05-03 | 2.7% | — | yes | Microsoft Edge and Internet Explorer contain a memory corruption vulne… |
| CVE-2020-0938 | 2021-11-03 | 2022-05-03 | 69.2% | — | Microsoft Windows Adobe Font Manager Library contains an unspecified v… | |
| CVE-2020-0968 | 2021-11-03 | 2022-05-03 | 30.7% | — | yes | Microsoft Internet Explorer contains a memory corruption vulnerability… |
| CVE-2020-0986 | 2021-11-03 | 2022-05-03 | 15.9% | — | Microsoft Windows kernel contains an unspecified vulnerability when ha… | |
| CVE-2020-10148 | 2021-11-03 | 2022-05-03 | 92.0% | — | SolarWinds Orion API contains an authentication bypass vulnerability t… | |
| CVE-2020-10181 | 2021-11-03 | 2022-05-03 | 14.7% | — | Sumavision Enhanced Multimedia Router (EMR) contains a cross-site requ… | |
| CVE-2020-10189 | 2021-11-03 | 2022-05-03 | 99.9% | — | Zoho ManageEngine Desktop Central contains a file upload vulnerability… | |
| CVE-2020-10199 | 2021-11-03 | 2022-05-03 | 99.1% | — | Sonatype Nexus Repository contains an unspecified vulnerability that a… | |
| CVE-2020-1020 | 2021-11-03 | 2022-05-03 | 65.0% | — | Microsoft Windows Adobe Font Manager Library contains an unspecified v… | |
| CVE-2020-10221 | 2021-11-03 | 2022-05-03 | 80.2% | — | rConfig lib/ajaxHandlers/ajaxAddTemplate.php contains an OS command in… | |
| CVE-2020-0646 | 2021-11-03 | 2022-05-03 | 99.2% | — | Microsoft .NET Framework contains an improper input validation vulnera… | |
| CVE-2020-0674 | 2021-11-03 | 2022-05-03 | 86.9% | — | Microsoft Internet Explorer contains a memory corruption vulnerability… | |
| CVE-2020-0683 | 2021-11-03 | 2022-05-03 | 7.7% | — | Microsoft Windows Installer contains a privilege escalation vulnerabil… | |
| CVE-2020-0688 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Microsoft Exchange Server Validation Key fails to properly create uniq… |
| CVE-2019-9082 | 2021-11-03 | 2022-05-03 | 97.4% | — | ThinkPHP contains an unspecified vulnerability that allows for remote … | |
| CVE-2019-9978 | 2021-11-03 | 2022-05-03 | 72.9% | — | WordPress Social Warfare plugin contains a cross-site scripting (XSS) … | |
| CVE-2020-0041 | 2021-11-03 | 2022-05-03 | 3.2% | — | Android Kernel binder_transaction of binder.c contains an out-of-bound… | |
| CVE-2020-0069 | 2021-11-03 | 2022-05-03 | 1.4% | — | Multiple MediaTek chipsets contain an insufficient input validation vu… | |
| CVE-2020-0601 | 2021-11-03 | 2022-05-03 | 89.4% | — | Microsoft Windows CryptoAPI (Crypt32.dll) contains a spoofing vulnerab… | |
| CVE-2019-6223 | 2021-11-03 | 2022-05-03 | 2.6% | — | Apple iOS and macOS Group FaceTime contains an unspecified vulnerabili… | |
| CVE-2019-5544 | 2021-11-03 | 2022-05-03 | 97.3% | — | yes | VMware ESXi and Horizon Desktop as a Service (DaaS) OpenSLP contains a… |
| CVE-2019-5591 | 2021-11-03 | 2022-05-03 | 18.4% | 6.5 | yes | A Default Configuration vulnerability in FortiOS may allow an unauthen… |
| CVE-2019-8394 | 2021-11-03 | 2022-05-03 | 63.3% | — | Zoho ManageEngine ServiceDesk Plus (SDP) contains an unspecified vulne… | |
| CVE-2019-7481 | 2021-11-03 | 2022-05-03 | 99.9% | 7.5 | yes | Vulnerability in SonicWall SMA100 allow unauthenticated user to gain r… |
| CVE-2019-2215 | 2021-11-03 | 2022-05-03 | 72.1% | — | Android Kernel contains a use-after-free vulnerability in binder.c tha… | |
| CVE-2019-4716 | 2021-11-03 | 2022-05-03 | 86.4% | — | IBM Planning Analytics is vulnerable to a configuration overwrite that… | |
| CVE-2019-3396 | 2021-11-03 | 2022-05-03 | 99.9% | — | yes | Atlassian Confluence Server and Data Center contain a server-side temp… |
| CVE-2019-3398 | 2021-11-03 | 2022-05-03 | 96.8% | — | Atlassian Confluence Server and Data Center contain a path traversal v… | |
| CVE-2019-18935 | 2021-11-03 | 2022-05-03 | 99.7% | — | yes | Progress Telerik UI for ASP.NET AJAX contains a deserialization of unt… |
| CVE-2019-18988 | 2021-11-03 | 2022-05-03 | 4.7% | — | TeamViewer Desktop allows for bypass of remote-login access control be… | |
| CVE-2019-18187 | 2021-11-03 | 2022-05-03 | 25.1% | — | Trend Micro OfficeScan contains a directory traversal vulnerability by… | |
| CVE-2019-19356 | 2021-11-03 | 2022-05-03 | 28.2% | — | Netis WF2419 devices contains an unspecified vulnerability that allows… | |
| CVE-2019-19781 | 2021-11-03 | 2022-05-03 | 100.0% | 9.8 | yes | An issue was discovered in Citrix Application Delivery Controller (ADC… |
| CVE-2019-20085 | 2021-11-03 | 2022-05-03 | 96.1% | — | TVT devices utilizing NVMS-1000 software contain a directory traversal… | |
| CVE-2019-0211 | 2021-11-03 | 2022-05-03 | 65.0% | — | Apache HTTP Server, with MPM event, worker or prefork, code executing … | |
| CVE-2018-8653 | 2021-11-03 | 2022-05-03 | 29.6% | — | Microsoft Internet Explorer contains a memory corruption vulnerability… | |
| CVE-2019-0604 | 2021-11-03 | 2022-05-03 | 99.9% | — | yes | Microsoft SharePoint fails to check the source markup of an applicatio… |
| CVE-2019-0541 | 2021-11-03 | 2022-05-03 | 53.2% | — | Microsoft MSHTML engine contains an improper input validation vulnerab… | |
| CVE-2019-0797 | 2021-11-03 | 2022-05-03 | 1.9% | — | Microsoft Win32k contains a privilege escalation vulnerability when th… | |
| CVE-2019-0803 | 2021-11-03 | 2022-05-03 | 45.0% | — | yes | Microsoft Win32k contains an unspecified vulnerability due to it faili… |
| CVE-2019-0808 | 2021-11-03 | 2022-05-03 | 53.0% | — | Microsoft Win32k contains a privilege escalation vulnerability due to … | |
| CVE-2019-0859 | 2021-11-03 | 2022-05-03 | 4.2% | — | yes | Microsoft Win32k fails to properly handle objects in memory causing pr… |
| CVE-2019-0863 | 2021-11-03 | 2022-05-03 | 5.2% | — | Microsoft Windows Error Reporting (WER) contains a privilege escalatio… | |
| CVE-2019-0708 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Microsoft Remote Desktop Services, formerly known as Terminal Service,… |
| CVE-2019-11510 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Ivanti Pulse Connect Secure contains an arbitrary file read vulnerabil… |
| CVE-2019-11539 | 2021-11-03 | 2022-05-03 | 98.5% | — | yes | Ivanti Pulse Connect Secure and Policy Secure allows an authenticated … |
| CVE-2019-11580 | 2021-11-03 | 2022-05-03 | 95.4% | — | yes | Atlassian Crowd and Crowd Data Center contain a remote code execution … |
| CVE-2019-13608 | 2021-11-03 | 2022-05-03 | 30.0% | — | yes | Citrix StoreFront Server contains an XML External Entity (XXE) process… |
| CVE-2019-1367 | 2021-11-03 | 2022-05-03 | 52.4% | — | yes | Microsoft Internet Explorer contains a memory corruption vulnerability… |
| CVE-2019-1429 | 2021-11-03 | 2022-05-03 | 77.3% | — | Microsoft Internet Explorer contains a memory corruption vulnerability… | |
| CVE-2019-11634 | 2021-11-03 | 2022-05-03 | 8.0% | 9.8 | yes | Citrix Workspace App before 1904 for Windows has Incorrect Access Cont… |
| CVE-2019-1214 | 2021-11-03 | 2022-05-03 | 1.4% | — | Microsoft Windows Common Log File System (CLFS) driver improperly hand… | |
| CVE-2019-1215 | 2021-11-03 | 2022-05-03 | 19.3% | — | yes | Microsoft Windows contains an unspecified vulnerability due to the way… |
| CVE-2019-15949 | 2021-11-03 | 2022-05-03 | 77.0% | — | Nagios XI contains a remote code execution vulnerability in which a us… | |
| CVE-2019-16256 | 2021-11-03 | 2022-05-03 | 4.9% | — | SIMalliance Toolbox Browser contains an command injection vulnerabilit… | |
| CVE-2019-15752 | 2021-11-03 | 2022-05-03 | 31.9% | — | Docker Desktop Community Edition contains a vulnerability that may all… | |
| CVE-2019-1653 | 2021-11-03 | 2022-05-03 | 99.9% | — | Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers cont… | |
| CVE-2019-16759 | 2021-11-03 | 2022-05-03 | 99.7% | — | The PHP module within vBulletin contains an unspecified vulnerability … | |
| CVE-2019-17026 | 2021-11-03 | 2022-05-03 | 46.3% | — | Mozilla Firefox and Thunderbird contain a type confusion vulnerability… | |
| CVE-2019-17558 | 2021-11-03 | 2022-05-03 | 98.6% | — | The Apache Solr VelocityResponseWriter plug-in contains an unspecified… | |
| CVE-2018-15811 | 2021-11-03 | 2022-05-03 | 74.0% | — | DotNetNuke (DNN) contains an inadequate encryption strength vulnerabil… | |
| CVE-2018-15961 | 2021-11-03 | 2022-05-03 | 100.0% | — | Adobe ColdFusion contains an unrestricted file upload vulnerability th… | |
| CVE-2018-20062 | 2021-11-03 | 2022-05-03 | 99.5% | — | ThinkPHP "noneCms" contains an unspecified vulnerability that allows f… | |
| CVE-2018-14558 | 2021-11-03 | 2022-05-03 | 8.7% | — | Tenda AC7, AC9, and AC10 devices contain a command injection vulnerabi… | |
| CVE-2018-13379 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Fortinet FortiOS SSL VPN web portal contains a path traversal vulnerab… |
| CVE-2017-9805 | 2021-11-03 | 2022-05-03 | 99.4% | — | Apache Struts REST Plugin uses an XStreamHandler with an instance of X… | |
| CVE-2017-9822 | 2021-11-03 | 2022-05-03 | 94.8% | — | yes | DotNetNuke (DNN) contains a vulnerability that may allow for remote co… |
| CVE-2018-11776 | 2021-11-03 | 2022-05-03 | 100.0% | — | Apache Struts contains a vulnerability that allows for remote code exe… | |
| CVE-2018-7600 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Drupal Core contains a remote code execution vulnerability that could … |
| CVE-2018-18325 | 2021-11-03 | 2022-05-03 | 74.0% | — | DotNetNuke (DNN) contains an inadequate encryption strength vulnerabil… | |
| CVE-2018-4878 | 2021-11-03 | 2022-05-03 | 89.5% | — | yes | Adobe Flash Player contains a use-after-free vulnerability that could … |
| CVE-2018-4939 | 2021-11-03 | 2022-05-03 | 62.1% | — | Adobe ColdFusion contains a deserialization of untrusted data vulnerab… | |
| CVE-2018-2380 | 2021-11-03 | 2022-05-03 | 28.9% | — | yes | SAP Customer Relationship Management (CRM) contains a path traversal v… |
| CVE-2018-6789 | 2021-11-03 | 2022-05-03 | 82.1% | — | yes | Exim contains a buffer overflow vulnerability in the base64d function … |
| CVE-2017-5638 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Apache Struts Jakarta Multipart parser allows for malicious file uploa… |
| CVE-2017-11882 | 2021-11-03 | 2022-05-03 | 99.9% | — | yes | Microsoft Office contains a memory corruption vulnerability that allow… |
| CVE-2017-16651 | 2021-11-03 | 2022-05-03 | 36.7% | — | Roundcube Webmail contains a file disclosure vulnerability caused by i… | |
| CVE-2017-6327 | 2021-11-03 | 2022-05-03 | 35.9% | — | Symantec Messaging Gateway contains an unspecified vulnerability which… | |
| CVE-2017-7269 | 2021-11-03 | 2022-05-03 | 99.8% | — | Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerabil… | |
| CVE-2017-8759 | 2021-11-03 | 2022-05-03 | 88.7% | — | Microsoft .NET Framework contains a remote code execution vulnerabilit… | |
| CVE-2017-9248 | 2021-11-03 | 2022-05-03 | 75.1% | — | Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptograph… | |
| CVE-2018-0296 | 2021-11-03 | 2022-05-03 | 99.9% | 7.5 | A vulnerability in the web interface of the Cisco Adaptive Security Ap… | |
| CVE-2018-0798 | 2021-11-03 | 2022-05-03 | 95.1% | — | Microsoft Office contains a memory corruption vulnerability due to the… | |
| CVE-2018-0802 | 2021-11-03 | 2022-05-03 | 93.3% | — | yes | Microsoft Office contains a memory corruption vulnerability due to the… |
| CVE-2018-0171 | 2021-11-03 | 2022-05-03 | 99.5% | — | Cisco IOS and IOS XE Software improperly validates packet data, allowi… | |
| CVE-2010-5326 | 2021-11-03 | 2022-05-03 | 17.8% | — | SAP NetWeaver Application Server Java Platforms Invoker Servlet does n… | |
| CVE-2012-0158 | 2021-11-03 | 2022-05-03 | 100.0% | — | yes | Microsoft MSCOMCTL.OCX contains an unspecified vulnerability that allo… |
| CVE-2014-1812 | 2021-11-03 | 2022-05-03 | 64.9% | — | yes | Microsoft Windows Active Directory contains a privilege escalation vul… |