Exploited vulnerabilities
The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.
- 1695
- On the catalogue
- 8
- Added in 7 days
- 7
- Due within 7 days
- 354
- Used in ransomware
| CVE | Affected | CVSS | Added | Due | |
|---|---|---|---|---|---|
| CVE-2026-48526 | Pyjwt Project Pyjwt | 7.4high | — | — | |
| CVE-2026-47960 | Adobe Coldfusion | 7.4high | — | — | |
| CVE-2026-44393 | Not specified | 7.4high | — | — | |
| CVE-2026-43869 | Apache Thrift | 7.3high | — | — | |
| CVE-2026-42246 | Ruby-Lang Net\ | 7.4high | — | — | |
| CVE-2026-41605 | Apache Thrift | 7.3high | — | — | |
| CVE-2026-4134 | Lenovo Software Fix | 7.3high | — | — | |
| CVE-2026-40542 | Apache Httpclient | 7.3high | — | — | |
| CVE-2026-3593 | Isc Bind | 7.4high | — | — | |
| CVE-2026-34647 | Adobe Commerce | 7.4high | — | — | |
| CVE-2026-33247 | Linuxfoundation Nats-Server | 7.4high | — | — | |
| CVE-2026-12992 | Redhat Build Of Apicurio Registry | 7.4high | — | — | |
| CVE-2026-11837 | Not specified | 7.3high | — | — | |
| CVE-2022-20866 | Cisco Adaptive Security Appliance Software | 7.4high | — | — | |
| CVE-2022-20742 | Cisco Secure Firewall Threat Defense | 7.4high | — | — | |
| CVE-2021-36945 | Microsoft Windows 10 Update Assistant | 7.3high | — | — | |
| CVE-2020-3577 | Cisco Secure Firewall Threat Defense | 7.4high | — | — | |
| CVE-2020-3334 | Cisco Adaptive Security Appliance Software | 7.4high | — | — | |
| CVE-2019-12676 | Cisco Adaptive Security Appliance | 7.4high | — | — | |
| CVE-2019-10086 | Apache Commons Beanutils | 7.3high | — | — | |
| CVE-2026-46333 | Linux Linux Kernel | 7.1high | — | — | |
| CVE-2026-46054 | Linux Linux Kernel | 7.1high | — | — | |
| CVE-2026-33217 | Linuxfoundation Nats-Server | 7.1high | — | — | |
| CVE-2026-1497 | Neo4j Neo4j | 7.2high | — | — | |
| CVE-2026-0827 | Lenovo Diagnostics | 7.1high | — | — |