Exploited vulnerabilities

The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.

1695
On the catalogue
8
Added in 7 days
7
Due within 7 days
354
Used in ransomware
CVEAffectedCVSSAddedDue
CVE-2022-22954VMware Workspace ONE Access and Identity Manager2022-04-142022-05-05ransomware
CVE-2022-2294WebRTC WebRTC2022-08-252022-09-15ransomware
CVE-2022-21999Microsoft Windows2022-03-252022-04-15ransomware
CVE-2022-21587Oracle E-Business Suite2023-02-022023-02-23ransomware
CVE-2022-1388F5 BIG-IP2022-05-102022-05-31ransomware
CVE-2021-45046Apache Log4j22023-05-012023-05-22ransomware
CVE-2021-44529Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA)2024-03-252024-04-15ransomware
CVE-2021-43890Microsoft Windows2021-12-152021-12-29ransomware
CVE-2021-43226Microsoft Windows2025-10-062025-10-27ransomware
CVE-2021-42321Microsoft Exchange2021-11-172021-12-01ransomware
CVE-2021-42287Microsoft Active Directory2022-04-112022-05-02ransomware
CVE-2021-42278Microsoft Active Directory2022-04-112022-05-02ransomware
CVE-2021-42258BQE BillQuick Web Suite2021-11-032021-11-17ransomware
CVE-2021-42237Sitecore XP2022-03-252022-04-15ransomware
CVE-2021-42013Apache HTTP Server2021-11-032021-11-17ransomware
CVE-2021-41773Apache HTTP Server2021-11-032021-11-17ransomware
CVE-2021-41379Microsoft Windows2022-03-032022-03-17ransomware
CVE-2021-40539Zoho ManageEngine2021-11-032021-11-17ransomware
CVE-2021-40449Microsoft Windows2021-11-172021-12-01ransomware
CVE-2021-40438Apache Apache2021-12-012021-12-15ransomware
CVE-2021-35464ForgeRock Access Management (AM)2021-11-032021-11-17ransomware
CVE-2021-35211SolarWinds Serv-U2021-11-032021-11-17ransomware
CVE-2021-3129Laravel Ignition2023-09-182023-10-09ransomware
CVE-2021-31207Microsoft Exchange Server2021-11-032021-11-17ransomware
CVE-2021-28799QNAP Network Attached Storage (NAS)2022-03-312022-04-21ransomware
Page 10 of 15 · 354 entriesPreviousNext