Exploited vulnerabilities
The CISA Known Exploited Vulnerabilities catalogue, with severity and affected-product data from the National Vulnerability Database. Everything on this list has been observed in real attacks — it is not a forecast.
- 1695
- On the catalogue
- 1
- Added in 7 days
- 5
- Due within 7 days
- 354
- Used in ransomware
| CVE | Affected | CVSS | Added | Due | |
|---|---|---|---|---|---|
| CVE-2026-47930 | Adobe Coldfusion | 8.1high | — | — | |
| CVE-2026-42945 | F5 Dos | 8.1high | — | — | |
| CVE-2026-42055 | F5 Dos | 8.1high | — | — | |
| CVE-2026-41316 | Not specified | 8.1high | — | — | |
| CVE-2026-34693 | Adobe Experience Manager | 8.0high | — | — | |
| CVE-2026-21361 | Adobe Commerce | 8.1high | — | — | |
| CVE-2026-21311 | Adobe Commerce | 8.0high | — | — | |
| CVE-2026-21284 | Adobe Commerce B2b | 8.1high | — | — | |
| CVE-2024-22373 | Malaterre Grassroots Dicom | 8.1high | — | — | |
| CVE-2022-37966 | Microsoft Windows Server 2008 | 8.1high | — | — | |
| CVE-2021-36967 | Microsoft Windows 10 | 8.0high | — | — | |
| CVE-2021-34762 | Cisco Firepower Management Center Virtual Appliance | 8.1high | — | — | |
| CVE-2021-34524 | Microsoft Dynamics 365 | 8.1high | — | — | |
| CVE-2021-34520 | Microsoft Sharepoint Foundation | 8.1high | — | — | |
| CVE-2021-34492 | Microsoft Windows 10 | 8.1high | — | — | |
| CVE-2021-34474 | Microsoft Dynamics 365 Business Central | 8.0high | — | — | |
| CVE-2021-34470 | Microsoft Exchange Server | 8.0high | — | — | |
| CVE-2021-34446 | Microsoft Windows 10 | 8.0high | — | — | |
| CVE-2021-33786 | Microsoft Windows Server 2008 | 8.1high | — | — | |
| CVE-2021-33781 | Microsoft Windows 10 | 8.1high | — | — | |
| CVE-2021-33779 | Microsoft Windows Server 2016 | 8.1high | — | — | |
| CVE-2021-33768 | Microsoft Exchange Server | 8.0high | — | — | |
| CVE-2021-33754 | Microsoft Windows Server 2008 | 8.0high | — | — | |
| CVE-2021-33746 | Microsoft Windows Server 2008 | 8.0high | — | — | |
| CVE-2021-26435 | Microsoft Windows 10 | 8.1high | — | — |