Exploited vulnerabilities
The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.
- 1699
- On the catalogue
- 5
- Added in 7 days
- 7
- Due within 7 days
- 358
- Used in ransomware
| CVE | Affected | CVSS | Added | Due | |
|---|---|---|---|---|---|
| CVE-2023-22460 | Protocol Go-Ipld-Prime | 7.5high | — | — | |
| CVE-2022-37315 | Graphql-Go Project Graphql-Go | 7.5high | — | — | |
| CVE-2022-24030 | Insyde Insydeh2o | 7.5high | — | — | |
| CVE-2021-43522 | Insyde Insydeh2o | 7.5high | — | — | |
| CVE-2021-40690 | Apache Santuario Xml Security For Java | 7.5high | — | — | |
| CVE-2021-38652 | Microsoft Sharepoint Enterprise Server | 7.6high | — | — | |
| CVE-2021-38651 | Microsoft Sharepoint Enterprise Server | 7.6high | — | — | |
| CVE-2021-38650 | Microsoft 365 Apps | 7.6high | — | — | |
| CVE-2021-36960 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-36940 | Microsoft Sharepoint Enterprise Server | 7.6high | — | — | |
| CVE-2021-36933 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-36932 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-36926 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-34490 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-34476 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-33788 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-33785 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-33772 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-33758 | Microsoft Windows 10 | 7.7high | — | — | |
| CVE-2021-33625 | Insyde Insydeh2o | 7.5high | — | — | |
| CVE-2021-31984 | Microsoft Power Bi Report Server | 7.6high | — | — | |
| CVE-2021-31206 | Microsoft Exchange Server | 7.6high | — | — | |
| CVE-2021-31183 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-26433 | Microsoft Windows 10 | 7.5high | — | — | |
| CVE-2021-26429 | Microsoft Azure Sphere | 7.7high | — | — |