Authoritative signal

Known exploited

The current CISA KEV catalog, bound to the active generation and ordered by catalog date and CASCA priority.

As known Jul 19, 2026, 5:00 AM UTCgen-56ccdaf9
KEV JSON is authoritativeCatalog absence remains unknown; CSV is serialization-only and never an independent vote.1,647 catalog members · showing 15511600
1551
CVE-2016-3718CISA KEVConflicting evidence

ImageMagick Server-Side Request Forgery (SSRF) Vulnerability

ImageMagick contains an unspecified vulnerability that allows attackers to perform server-side request forgery (SSRF) via a crafted image.

ImageMagickImageMagick

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
68.386.3
Coverage
73%
1552
CVE-2021-27103CISA KEVKnown ransomwareConflicting evidence

Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability

Accellion FTA contains a server-side request forgery (SSRF) vulnerability exploited via a crafted POST request to wmProgressstat.html.

AccellionFTA

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
65.586.2
Coverage
73%
1553
CVE-2021-21148CISA KEVConflicting evidence

Google Chromium V8 Heap Buffer Overflow Vulnerability

Google Chromium V8 Engine contains a heap buffer overflow vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

GoogleChromium V8

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
65.985.9
Coverage
73%
1554
CVE-2018-14558CISA KEVConflicting evidence

Tenda AC7, AC9, and AC10 Routers Command Injection Vulnerability

Tenda AC7, AC9, and AC10 devices contain a command injection vulnerability due to the "formsetUsbUnload" function executes a dosystemCmd function with untrusted input. Successful exploitation allows an attacker to execute OS commands via a crafted goform/setUsbUnload request.

TendaAC7, AC9, and AC10 Routers

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
70.485.9
Coverage
73%
1555
CVE-2021-37973CISA KEVConflicting evidence

Google Chromium Portals Use-After-Free Vulnerability

Google Chromium Portals contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability affects web browsers that utilize Chromium, including Google Chrome and Microsoft Edge.

GoogleChromium Portals

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.985.9
Coverage
73%
1556
CVE-2021-30657CISA KEVConflicting evidence

Apple macOS Unspecified Vulnerability

Apple macOS contains an unspecified logic issue in System Preferences that may allow a malicious application to bypass Gatekeeper checks.

ApplemacOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
67.385.3
Coverage
73%
1557
CVE-2019-11634CISA KEVKnown ransomwareConflicting evidence

Citrix Workspace Application and Receiver for Windows Remote Code Execution Vulnerability

Citrix Workspace Application and Receiver for Windows contains remote code execution vulnerability resulting from local drive access preferences not being enforced into the clients' local drives.

CitrixWorkspace Application and Receiver for Windows

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
64.485.2
Coverage
73%
1558
CVE-2021-1870CISA KEVConflicting evidence

Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability

Apple iOS, iPadOS, and macOS WebKit contain an unspecified logic vulnerability that allows a remote attacker to execute code. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleiOS, iPadOS, and macOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
64.485.1
Coverage
73%
1559

Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability

Microsoft Internet Explorer contains a memory corruption vulnerability due to how the Scripting Engine handles objects in memory, leading to remote code execution.

MicrosoftInternet Explorer

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
69.785.0
Coverage
85%
1560

Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability

Microsoft Internet Explorer contains a memory corruption vulnerability due to how the Scripting Engine handles objects in memory, leading to remote code execution.

MicrosoftInternet Explorer

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
69.784.9
Coverage
85%
1561
CVE-2021-1871CISA KEVConflicting evidence

Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability

Apple iOS, iPadOS, and macOS WebKit contain an unspecified logic vulnerability that allows a remote attacker to execute code. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleiOS, iPadOS, and macOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
64.184.8
Coverage
73%
1562
CVE-2019-13608CISA KEVKnown ransomwareConflicting evidence

Citrix StoreFront Server XML External Entity (XXE) Processing Vulnerability

Citrix StoreFront Server contains an XML External Entity (XXE) processing vulnerability that may allow an unauthenticated attacker to retrieve potentially sensitive information.

CitrixStoreFront Server

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
63.584.7
Coverage
73%
1563
CVE-2020-27932CISA KEVConflicting evidence

Apple Multiple Products Type Confusion Vulnerability

Apple iOS, iPadOS, macOS, and watchOS contain a type confusion vulnerability that may allow a malicious application to execute code with kernel privileges.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
65.984.7
Coverage
73%
1564

Arm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability

Arm Mali Graphics Processing Unit (GPU) kernel driver contains a use-after-free vulnerability that may allow a non-privileged user to make improper operations on GPU memory to gain root privilege, and/or disclose information.

ArmMali Graphics Processing Unit (GPU)

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
69.084.5
Coverage
85%
1565
CVE-2021-27101CISA KEVKnown ransomwareConflicting evidence

Accellion FTA SQL Injection Vulnerability

Accellion FTA contains a SQL injection vulnerability exploited via a crafted host header in a request to document_root.html.

AccellionFTA

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.684.4
Coverage
73%
1566
CVE-2021-30858CISA KEVConflicting evidence

Apple iOS, iPadOS, macOS Use-After-Free Vulnerability

Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleiOS, iPadOS, and macOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
64.384.3
Coverage
73%
1567
CVE-2020-16010CISA KEVConflicting evidence

Google Chrome for Android UI Heap Buffer Overflow Vulnerability

Google Chrome for Android UI contains a heap buffer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page.

GoogleChrome for Android UI

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
62.184.1
Coverage
73%
1568
CVE-2019-16256CISA KEVConflicting evidence

SIMalliance Toolbox Browser Command Injection Vulnerability

SIMalliance Toolbox Browser contains an command injection vulnerability that could allow remote attackers to retrieve location and IMEI information or execute a range of other attacks by modifying the attack message.

SIMallianceToolbox Browser

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
63.283.9
Coverage
73%
1569
CVE-2020-27930CISA KEVConflicting evidence

Apple Multiple Products Memory Corruption Vulnerability

Apple iOS, iPadOS, macOS, and watchOS FontParser contain a memory corruption vulnerability which may allow for code execution when processing maliciously crafted front.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
66.483.9
Coverage
73%
1570
CVE-2021-22506CISA KEVConflicting evidence

Micro Focus Access Manager Information Leakage Vulnerability

Micro Focus Access Manager contains an information leakage vulnerability resulting from a SAML service provider redirection issue when the Assertion Consumer Service URL is used.

Micro FocusMicro Focus Access Manager

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
62.683.9
Coverage
73%
1571

Cisco IOS XR Software Discovery Protocol Format String Vulnerability

Cisco IOS XR improperly validates string input from certain fields in Cisco Discovery Protocol messages. Exploitation could allow an unauthenticated, adjacent attacker to execute code with administrative privileges or cause a reload on an affected device.

CiscoIOS XR

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
67.683.8
Coverage
85%
1572
CVE-2021-30762CISA KEVConflicting evidence

Apple iOS WebKit Use-After-Free Vulnerability

Apple iOS WebKit contains a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleiOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.683.6
Coverage
73%
1573
CVE-2020-8467CISA KEVConflicting evidence

Trend Micro Apex One and OfficeScan Remote Code Execution Vulnerability

Trend Micro Apex One and OfficeScan contain an unspecified vulnerability within a migration tool component that allows for remote code execution.

Trend MicroApex One and OfficeScan

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
62.883.6
Coverage
73%
1574
CVE-2021-30761CISA KEVConflicting evidence

Apple iOS WebKit Memory Corruption Vulnerability

Apple iOS WebKit contains a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleiOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.583.5
Coverage
73%
1575
CVE-2021-36948CISA KEVConflicting evidence

Microsoft Windows Update Medic Service Privilege Escalation Vulnerability

Microsoft Windows Update Medic Service contains an unspecified vulnerability that allows for privilege escalation.

MicrosoftWindows

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
60.483.4
Coverage
73%
1576
CVE-2021-21193CISA KEVConflicting evidence

Google Chromium Blink Use-After-Free Vulnerability

Google Chromium Blink contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

GoogleChromium Blink

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.383.3
Coverage
73%
1577
CVE-2019-1215CISA KEVKnown ransomware

Microsoft Windows Privilege Escalation Vulnerability

Microsoft Windows contains an unspecified vulnerability due to the way ws2ifsl.sys (Winsock) handles objects in memory, allowing for privilege escalation. Successful exploitation allows an attacker to execute code with elevated privileges.

MicrosoftWindows

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
66.883.3
Coverage
85%
1578
CVE-2021-21206CISA KEVConflicting evidence

Google Chromium Blink Use-After-Free Vulnerability

Google Chromium Blink contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

GoogleChromium Blink

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.183.1
Coverage
73%
1579
CVE-2021-30563CISA KEVConflicting evidence

Google Chromium V8 Type Confusion Vulnerability

Google Chromium V8 Engine contains a type confusion vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

GoogleChromium V8

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.083.0
Coverage
73%
1580
CVE-2020-8195CISA KEVConflicting evidence

Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability

Citrix ADC, Citrix Gateway, and multiple Citrix SD-WAN WANOP appliance models contain an information disclosure vulnerability.

CitrixApplication Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
61.582.8
Coverage
73%
1581
CVE-2020-1040CISA KEVConflicting evidence

Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability

Microsoft Hyper-V RemoteFX vGPU contains an improper input validation vulnerability due to the host server failing to properly validate input from an authenticated user on a guest operating system. Successful exploitation allows for remote code execution on the host operating system.

MicrosoftHyper-V RemoteFX

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
64.582.8
Coverage
73%
1582

Microsoft Windows Kernel Privilege Escalation Vulnerability

Microsoft Windows kernel contains an unspecified vulnerability when handling objects in memory that allows attackers to escalate privileges and execute code in kernel mode.

MicrosoftWindows

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
66.082.5
Coverage
85%
1583
CVE-2021-30554CISA KEVConflicting evidence

Google Chromium WebGL Use-After-Free Vulnerability

Google Chromium WebGL contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

GoogleChromium WebGL

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
62.482.4
Coverage
73%
1584
CVE-2021-30869CISA KEVConflicting evidence

Apple iOS, iPadOS, and macOS Type Confusion Vulnerability

Apple iOS, iPadOS, and macOS contain a type confusion vulnerability in the XNU which may allow a malicious application to execute code with kernel privileges.

AppleiOS, iPadOS, and macOS

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
63.682.3
Coverage
73%
1585
CVE-2020-16017CISA KEVConflicting evidence

Google Chrome Use-After-Free Vulnerability

Google Chrome contains a use-after-free vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page.

GoogleChrome

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
60.382.3
Coverage
73%
1586

IBM Data Risk Manager Directory Traversal Vulnerability

IBM Data Risk Manager contains a directory traversal vulnerability that could allow a remote authenticated attacker to traverse directories and send a specially crafted URL request to download arbitrary files from the system.

IBMData Risk Manager

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
66.682.3
Coverage
85%
1587
CVE-2018-2380CISA KEVKnown ransomware

SAP Customer Relationship Management (CRM) Path Traversal Vulnerability

SAP Customer Relationship Management (CRM) contains a path traversal vulnerability that allows an attacker to exploit insufficient validation of path information provided by users.

SAPCustomer Relationship Management (CRM)

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
67.082.3
Coverage
85%
1588

Arm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability

Arm Mali Graphics Processing Unit (GPU) kernel driver contains an unspecified vulnerability that may allow a non-privileged user to gain write access to read-only memory, gain root privilege, corrupt memory, and modify the memory of other processes.

ArmMali Graphics Processing Unit (GPU)

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
66.782.2
Coverage
85%
1589
CVE-2021-20022CISA KEVKnown ransomware

SonicWall Email Security Unrestricted Upload of File Vulnerability

SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation.

SonicWallSonicWall Email Security

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
66.181.9
Coverage
85%
1590
CVE-2020-8468CISA KEVConflicting evidence

Trend Micro Multiple Products Content Validation Escape Vulnerability

Trend Micro Apex One, OfficeScan, and Worry-Free Business Security agents contain a content validation escape vulnerability that could allow an attacker to manipulate certain agent client components.

Trend MicroApex One, OfficeScan and Worry-Free Business Security Agents

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
61.081.8
Coverage
73%
1591
CVE-2021-20023CISA KEVKnown ransomware

SonicWall Email Security Path Traversal Vulnerability

SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation.

SonicWallSonicWall Email Security

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
64.381.6
Coverage
85%
1592
CVE-2021-36741CISA KEVConflicting evidence

Trend Micro Multiple Products Improper Input Validation Vulnerability

Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an improper input validation vulnerability that allows a remote attacker to upload files.

Trend MicroApex One, Apex One as a Service, and Worry-Free Business Security

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
60.781.5
Coverage
73%
1593
CVE-2021-38648CISA KEVConflicting evidence

Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability

Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation.

MicrosoftOpen Management Infrastructure (OMI)

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
58.381.3
Coverage
73%
1594
CVE-2021-30661CISA KEVConflicting evidence

Apple Multiple Products WebKit Storage Use-After-Free Vulnerability

Apple iOS, iPadOS, macOS, tvOS, watchOS, and Safari WebKit Storage contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
61.381.3
Coverage
73%
1595
CVE-2021-33739CISA KEVConflicting evidence

Microsoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability

Microsoft Desktop Window Manager (DWM) Core Library contains an unspecified vulnerability that allows for privilege escalation.

MicrosoftWindows

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
56.681.1
Coverage
73%
1596
CVE-2016-9563CISA KEVConflicting evidence

SAP NetWeaver XML External Entity (XXE) Vulnerability

SAP NetWeaver Application Server Java Platforms contains an unspecified vulnerability in BC-BMT-BPM-DSK which allows remote, authenticated users to conduct XML External Entity (XXE) attacks.

SAPNetWeaver

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
59.881.0
Coverage
73%
1597
CVE-2020-27950CISA KEVConflicting evidence

Apple Multiple Products Memory Initialization Vulnerability

Apple iOS, iPadOS, macOS, and watchOS contain a memory initialization vulnerability that may allow a malicious application to disclose kernel memory.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2022-05-03
Priority interval
61.980.9
Coverage
73%
1598
CVE-2021-27085CISA KEVConflicting evidence

Microsoft Internet Explorer Remote Code Execution Vulnerability

Microsoft Internet Explorer contains an unspecified vulnerability that allows for remote code execution.

MicrosoftInternet Explorer

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
62.980.9
Coverage
73%
1599
CVE-2021-30665CISA KEVConflicting evidence

Apple Multiple Products WebKit Memory Corruption Vulnerability

Apple iOS, iPadOS, macOS, watchOS, and tvOS WebKit contain a memory corruption vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
60.880.8
Coverage
73%
1600
CVE-2021-30663CISA KEVConflicting evidence

Apple Multiple Products WebKit Integer Overflow Vulnerability

Apple iOS, iPadOS, macOS, tvOS, and Safari WebKit contain an integer overflow vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing.

AppleMultiple Products

Required actionApply updates per vendor instructions.

Added
2021-11-03
Due
2021-11-17
Priority interval
60.880.8
Coverage
73%