CVE-2020-9934
Apple · iOS, iPadOS, and macOS
Added Sep 8, 2022
Security Bulletins
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jun 12, 2026.
Critical
Critical
CVE-2018-7445
MikroTik · RouterOS
Added Sep 8, 2022
MikroTik RouterOS Stack-Based Buffer Overflow Vulnerability
Critical
CVE-2018-6530
D-Link · Multiple Routers
Added Sep 8, 2022
D-Link Multiple Routers OS Command Injection Vulnerability
Critical
CVE-2018-2628
Oracle · WebLogic Server
Added Sep 8, 2022
Oracle WebLogic Server Unspecified Vulnerability
Critical
CVE-2018-13374
Fortinet · FortiOS and FortiADC
Added Sep 8, 2022
Fortinet FortiOS and FortiADC Improper Access Control Vulnerability
Critical
CVE-2017-5521
NETGEAR · Multiple Devices
Added Sep 8, 2022
NETGEAR Multiple Devices Exposure of Sensitive Information Vulnerability
Critical
CVE-2011-4723
D-Link · DIR-300 Router
Added Sep 8, 2022
D-Link DIR-300 Router Cleartext Storage of a Password Vulnerability
Critical
CVE-2011-1823
Android · Android OS
Added Sep 8, 2022
Android OS Privilege Escalation Vulnerability
Critical
CVE-2022-26352
dotCMS · dotCMS
Added Aug 25, 2022
dotCMS Unrestricted Upload of File Vulnerability
Critical
CVE-2022-24706
Apache · CouchDB
Added Aug 25, 2022
Apache CouchDB Insecure Default Initialization of Resource Vulnerability
Critical
CVE-2022-24112
Apache · APISIX
Added Aug 25, 2022
Apache APISIX Authentication Bypass Vulnerability
Critical
CVE-2022-22963
VMware Tanzu · Spring Cloud
Added Aug 25, 2022
VMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability
Critical
CVE-2022-2294
WebRTC · WebRTC
Added Aug 25, 2022
WebRTC Heap Buffer Overflow Vulnerability
Critical
CVE-2021-39226
Grafana Labs · Grafana
Added Aug 25, 2022
Grafana Authentication Bypass Vulnerability
Critical
CVE-2021-38406
Delta Electronics · DOPSoft 2
Added Aug 25, 2022
Delta Electronics DOPSoft 2 Improper Input Validation Vulnerability
Critical
CVE-2021-31010
Apple · iOS, macOS, watchOS
Added Aug 25, 2022
Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability
Critical
CVE-2020-36193
PEAR · Archive_Tar
Added Aug 25, 2022
PEAR Archive_Tar Improper Link Resolution Vulnerability
Critical
CVE-2020-28949
PEAR · Archive_Tar
Added Aug 25, 2022
PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability
Critical
CVE-2022-0028
Palo Alto Networks · PAN-OS
Added Aug 22, 2022
Palo Alto Networks PAN-OS Reflected Amplification Denial-of-Service Vulnerability
Critical
CVE-2022-22536
SAP · Multiple Products
Added Aug 18, 2022
SAP Multiple Products HTTP Request Smuggling Vulnerability
Critical
CVE-2022-32894
Apple · iOS and macOS
Added Aug 18, 2022
Apple iOS and macOS Out-of-Bounds Write Vulnerability
Critical
CVE-2022-32893
Apple · iOS and macOS
Added Aug 18, 2022
Apple iOS and macOS Out-of-Bounds Write Vulnerability
Critical
CVE-2022-2856
Google · Chromium Intents
Added Aug 18, 2022
Google Chromium Intents Insufficient Input Validation Vulnerability
Critical
CVE-2022-26923
Microsoft · Active Directory
Added Aug 18, 2022
Microsoft Active Directory Domain Services Privilege Escalation Vulnerability
Critical
CVE-2022-21971
Microsoft · Windows
Added Aug 18, 2022
Microsoft Windows Runtime Remote Code Execution Vulnerability
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.