CVE-2019-0344
SAP · Commerce Cloud
Added Sep 30, 2024
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Sep 11, 2026.
CVE-2020-15415
DrayTek · Multiple Vigor Routers
Added Sep 30, 2024
DrayTek Multiple Vigor Routers OS Command Injection Vulnerability
CVE-2023-25280
D-Link · DIR-820 Router
Added Sep 30, 2024
D-Link DIR-820 Router OS Command Injection Vulnerability
CVE-2024-7593
Ivanti · Virtual Traffic Manager
Added Sep 24, 2024
Ivanti Virtual Traffic Manager Authentication Bypass Vulnerability
CVE-2024-8963
Ivanti · Cloud Services Appliance (CSA)
Added Sep 19, 2024
Ivanti Cloud Services Appliance (CSA) Path Traversal Vulnerability
CVE-2020-14644
Oracle · WebLogic Server
Added Sep 18, 2024
Oracle WebLogic Server Remote Code Execution Vulnerability
CVE-2022-21445
Oracle · ADF Faces
Added Sep 18, 2024
Oracle ADF Faces Deserialization of Untrusted Data Vulnerability
CVE-2020-0618
Microsoft · SQL Server
Added Sep 18, 2024
Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability
CVE-2024-27348
Apache · HugeGraph-Server
Added Sep 18, 2024
Apache HugeGraph-Server Improper Access Control Vulnerability
CVE-2014-0502
Adobe · Flash Player
Added Sep 17, 2024
Adobe Flash Player Double Free Vulnerablity
CVE-2013-0648
Adobe · Flash Player
Added Sep 17, 2024
Adobe Flash Player Code Execution Vulnerability
CVE-2013-0643
Adobe · Flash Player
Added Sep 17, 2024
Adobe Flash Player Incorrect Default Permissions Vulnerability
CVE-2014-0497
Adobe · Flash Player
Added Sep 17, 2024
Adobe Flash Player Integer Underflow Vulnerablity
CVE-2024-6670
Progress · WhatsUp Gold
Added Sep 16, 2024
Progress WhatsUp Gold SQL Injection Vulnerability
CVE-2024-43461
Microsoft · Windows
Added Sep 16, 2024
Microsoft Windows MSHTML Platform Spoofing Vulnerability
CVE-2024-8190
Ivanti · Cloud Services Appliance
Added Sep 13, 2024
Ivanti Cloud Services Appliance OS Command Injection Vulnerability
CVE-2024-38217
Microsoft · Windows
Added Sep 10, 2024
Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
CVE-2024-38014
Microsoft · Windows
Added Sep 10, 2024
Microsoft Windows Installer Improper Privilege Management Vulnerability
CVE-2024-38226
Microsoft · Publisher
Added Sep 10, 2024
Microsoft Publisher Protection Mechanism Failure Vulnerability
CVE-2024-40766
SonicWall · SonicOS
Added Sep 9, 2024
SonicWall SonicOS Improper Access Control Vulnerability
CVE-2017-1000253
Linux · Kernel
Added Sep 9, 2024
Linux Kernel PIE Stack Buffer Corruption Vulnerability
CVE-2016-3714
ImageMagick · ImageMagick
Added Sep 9, 2024
ImageMagick Improper Input Validation Vulnerability
CVE-2024-7262
Kingsoft · WPS Office
Added Sep 3, 2024
Kingsoft WPS Office Path Traversal Vulnerability
CVE-2021-20124
DrayTek · VigorConnect
Added Sep 3, 2024
Draytek VigorConnect Path Traversal Vulnerability
CVE-2021-20123
DrayTek · VigorConnect
Added Sep 3, 2024
Draytek VigorConnect Path Traversal Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.