Exploited vulnerabilities
The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.
- 1695
- On the catalogue
- 1
- Added in 7 days
- 5
- Due within 7 days
- 354
- Used in ransomware
| CVE | Affected | CVSS | Added | Due | |
|---|---|---|---|---|---|
| CVE-2026-6477 | Postgresql Postgresql | 8.8high | — | — | |
| CVE-2026-6473 | Postgresql Postgresql | 8.8high | — | — | |
| CVE-2026-5367 | Not specified | 8.6high | — | — | |
| CVE-2026-53435 | Jenkins Jenkins | 8.8high | — | — | |
| CVE-2026-47932 | Adobe Coldfusion | 8.8high | — | — | |
| CVE-2026-47907 | Adobe Dreamweaver | 8.6high | — | — | |
| CVE-2026-47906 | Adobe Dreamweaver | 8.6high | — | — | |
| CVE-2026-44513 | Huggingface Diffusers | 8.8high | — | — | |
| CVE-2026-44494 | Axios Axios | 8.7high | — | — | |
| CVE-2026-44293 | Protobufjs Project Protobufjs | 8.8high | — | — | |
| CVE-2026-43503 | Linux Linux Kernel | 8.8high | — | — | |
| CVE-2026-42266 | Jupyter Jupyterlab | 8.8high | — | — | |
| CVE-2026-35397 | Jupyter Jupyter Server | 8.8high | — | — | |
| CVE-2026-34686 | Adobe Commerce | 8.7high | — | — | |
| CVE-2026-34653 | Adobe Commerce | 8.7high | — | — | |
| CVE-2026-34622 | Adobe Acrobat | 8.6high | — | — | |
| CVE-2026-34617 | Adobe Connect | 8.7high | — | — | |
| CVE-2026-33216 | Linuxfoundation Nats-Server | 8.6high | — | — | |
| CVE-2026-27305 | Adobe Coldfusion | 8.6high | — | — | |
| CVE-2026-27290 | Adobe Framemaker | 8.6high | — | — | |
| CVE-2026-27140 | Golang Go | 8.8high | — | — | |
| CVE-2026-23950 | Isaacs Tar | 8.8high | — | — | |
| CVE-2026-21333 | Adobe Illustrator | 8.6high | — | — | |
| CVE-2026-21290 | Adobe Commerce B2b | 8.7high | — | — | |
| CVE-2026-21280 | Adobe Illustrator | 8.6high | — | — |