An official Admiresty Corporation service
How to verify
Official Admiresty services use admiresty.co

Admiresty Corporation operates ThreatGrid and its full service ecosystem from admiresty.co. All official platforms run from this domain or a verified subdomain. If you’re unsure, visit admiresty.co directly to confirm.

Secure Admiresty services always use HTTPS

A padlock and https:// in your address bar confirm a safe, encrypted connection. Never enter credentials or share sensitive data on any page without a valid HTTPS connection to an Admiresty domain.

Security Bulletins

Active threat advisories and known exploited vulnerabilities.

Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jul 29, 2026.

1,656 total bulletins 1,656 critical or high severity Source: CISA KEV + NVD
Critical CVE-2015-0310 Adobe · Flash Player Added May 25, 2022

Adobe Flash Player ASLR Bypass Vulnerability

Adobe Flash Player does not properly restrict discovery of memory addresses, which allows attackers to bypass the address space layout randomization (ASLR) protection mechanism.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-0016 Microsoft · Windows Added May 25, 2022

Microsoft Windows TS WebProxy Directory Traversal Vulnerability

Directory traversal vulnerability in the TS WebProxy (TSWbPrxy) component in Microsoft Windows allows remote attackers to escalate privileges.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-0071 Microsoft · Internet Explorer Added May 25, 2022

Microsoft Internet Explorer ASLR Bypass Vulnerability

Microsoft Internet Explorer allows remote attackers to bypass the address space layout randomization (ASLR) protection mechanism via a crafted web site.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-2360 Microsoft · Win32k Added May 25, 2022

Microsoft Win32k Privilege Escalation Vulnerability

Win32k.sys in the kernel-mode drivers in Microsoft Windows allows local users to gain privileges or cause denial-of-service (DoS).

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-2425 Microsoft · Internet Explorer Added May 25, 2022

Microsoft Internet Explorer Memory Corruption Vulnerability

Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-1769 Microsoft · Windows Added May 25, 2022

Microsoft Windows Mount Manager Privilege Escalation Vulnerability

A privilege escalation vulnerability exists when the Windows Mount Manager component improperly processes symbolic links.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-4495 Mozilla · Firefox Added May 25, 2022

Mozilla Firefox Security Feature Bypass Vulnerability

Moxilla Firefox allows remote attackers to bypass the Same Origin Policy to read arbitrary files or gain privileges.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-8651 Adobe · Flash Player Added May 25, 2022

Adobe Flash Player Integer Overflow Vulnerability

Integer overflow in Adobe Flash Player allows attackers to execute code.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-6175 Microsoft · Windows Added May 25, 2022

Microsoft Windows Kernel Privilege Escalation Vulnerability

The kernel in Microsoft Windows contains a vulnerability that allows local users to gain privileges via a crafted application.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2015-1671 Microsoft · Windows Added May 25, 2022

Microsoft Windows Remote Code Execution Vulnerability

A remote code execution vulnerability exists when components of Windows, .NET Framework, Office, Lync, and Silverlight fail to properly handle TrueType fonts.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-4148 Microsoft · Windows Added May 25, 2022

Microsoft Windows Remote Code Execution Vulnerability

A remote code execution vulnerability exists when the Windows kernel-mode driver improperly handles TrueType fonts.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-8439 Adobe · Flash Player Added May 25, 2022

Adobe Flash Player Dereferenced Pointer Vulnerability

Adobe Flash Player has a vulnerability in the way it handles a dereferenced memory pointer which could lead to code execution.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-4123 Microsoft · Internet Explorer Added May 25, 2022

Microsoft Internet Explorer Privilege Escalation Vulnerability

Microsoft Internet Explorer contains an unspecified vulnerability that allows remote attackers to gain privileges via a crafted web site.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-0546 Adobe · Reader and Acrobat Added May 25, 2022

Adobe Reader and Acrobat Sandbox Bypass Vulnerability

Adobe Reader and Acrobat on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-2817 Microsoft · Internet Explorer Added May 25, 2022

Microsoft Internet Explorer Privilege Escalation Vulnerability

Microsoft Internet Explorer cotains an unspecified vulnerability that allows remote attackers to gain privileges via a crafted web site.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-4077 Microsoft · Input Method Editor (IME) Japanese Added May 25, 2022

Microsoft IME Japanese Privilege Escalation Vulnerability

Microsoft Input Method Editor (IME) Japanese is a keyboard with Japanese characters that can be enabled on Windows systems as it is included by default (with the default set as disabled). IME Japanese contains an unspecified vulnerability when IMJPDCT.EXE (IME for Japanese) is installed which allows attackers to bypass a sandbox and perform privilege escalation.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2014-3153 Linux · Kernel Added May 25, 2022

Linux Kernel Privilege Escalation Vulnerability

The futex_requeue function in kernel/futex.c in Linux kernel does not ensure that calls have two different futex addresses, which allows local users to gain privileges.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-7331 Microsoft · Internet Explorer Added May 25, 2022

Microsoft Internet Explorer Information Disclosure Vulnerability

An information disclosure vulnerability exists in Internet Explorer which allows resources loaded into memory to be queried. This vulnerability could allow an attacker to detect anti-malware applications.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-3993 IBM · InfoSphere BigInsights Added May 25, 2022

IBM InfoSphere BigInsights Invalid Input Vulnerability

Certain APIs within BigInsights can take invalid input that might allow attackers unauthorized access to read, write, modify, or delete data.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-3896 Microsoft · Silverlight Added May 25, 2022

Microsoft Silverlight Information Disclosure Vulnerability

Microsoft Silverlight does not properly validate pointers during access to Silverlight elements, which allows remote attackers to obtain sensitive information via a crafted Silverlight application.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-2423 Oracle · Java Runtime Environment (JRE) Added May 25, 2022

Oracle JRE Unspecified Vulnerability

Unspecified vulnerability in hotspot for Java Runtime Environment (JRE) allows remote attackers to affect integrity.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-0431 Oracle · Java Runtime Environment (JRE) Added May 25, 2022

Oracle JRE Sandbox Bypass Vulnerability

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle allows remote attackers to bypass the Java security sandbox.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-0422 Oracle · Java Runtime Environment (JRE) Added May 25, 2022

Oracle JRE Remote Code Execution Vulnerability

A vulnerability in the way Java restricts the permissions of Java applets could allow an attacker to execute commands on a vulnerable system.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2013-0074 Microsoft · Silverlight Added May 25, 2022

Microsoft Silverlight Double Dereference Vulnerability

Microsoft Silverlight does not properly validate pointers during HTML object rendering, which allows remote attackers to execute code via a crafted Silverlight application.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed
Critical CVE-2012-1710 Oracle · Fusion Middleware Added May 25, 2022

Oracle Fusion Middleware Unspecified Vulnerability

Unspecified vulnerability in the Oracle WebCenter Forms Recognition component in Oracle Fusion Middleware allows remote attackers to affect confidentiality, integrity, and availability via Unknown vectors related to Designer.

NVD Detail ↗ CISA KEV ↗ Patch deadline passed

Need help prioritizing these vulnerabilities?

ThreatGrid can assess your environment and map active CVEs to your monitored assets.