Exploited vulnerabilities
The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.
- 1695
- On the catalogue
- 8
- Added in 7 days
- 7
- Due within 7 days
- 354
- Used in ransomware
| CVE | Affected | CVSS | Added | Due | |
|---|---|---|---|---|---|
| CVE-2026-34655 | Adobe Commerce | 4.8medium | — | — | |
| CVE-2026-21359 | Adobe Commerce | 4.7medium | — | — | |
| CVE-2026-21291 | Adobe Magento | 4.8medium | — | — | |
| CVE-2026-34656 | Adobe Commerce | 4.3medium | — | — | |
| CVE-2026-21297 | Adobe Commerce | 4.3medium | — | — | |
| CVE-2026-21296 | Adobe Commerce | 4.3medium | — | — | |
| CVE-2026-21285 | Adobe Commerce B2b | 4.3medium | — | — | |
| CVE-2026-48289 | Adobe Experience Manager | 3.5low | — | — | |
| CVE-2026-48288 | Adobe Experience Manager | 3.5low | — | — | |
| CVE-2026-34685 | Adobe Commerce | 3.4low | — | — | |
| CVE-2026-21295 | Adobe Commerce | 3.1low | — | — | |
| CVE-2026-27308 | Adobe Coldfusion | 2.4low | — | — | |
| CVE-2026-27307 | Adobe Coldfusion | 2.4low | — | — |
Page 19 of 19 · 463 entriesPrevious