CVE-2015-2051
D-Link · DIR-645 Router
Added Feb 10, 2022
Active threat advisories and known exploited vulnerabilities.
Pulled daily from the CISA Known Exploited Vulnerabilities catalog. Every entry has confirmed active exploitation in the wild. Last synced Jul 29, 2026.
CVE-2015-1635
Microsoft · HTTP.sys
Added Feb 10, 2022
Microsoft HTTP.sys Remote Code Execution Vulnerability
CVE-2015-1130
Apple · OS X
Added Feb 10, 2022
Apple OS X Authentication Bypass Vulnerability
CVE-2014-4404
Apple · OS X
Added Feb 10, 2022
Apple OS X Heap-Based Buffer Overflow Vulnerability
CVE-2022-21882
Microsoft · Win32k
Added Feb 4, 2022
Microsoft Win32k Privilege Escalation Vulnerability
CVE-2022-22587
Apple · iOS and macOS
Added Jan 28, 2022
Apple Memory Corruption Vulnerability
CVE-2021-20038
SonicWall · SMA 100 Appliances
Added Jan 28, 2022
SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability
CVE-2020-5722
Grandstream · UCM6200
Added Jan 28, 2022
Grandstream Networks UCM6200 Series SQL Injection Vulnerability
CVE-2020-0787
Microsoft · Windows
Added Jan 28, 2022
Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability
CVE-2017-5689
Intel · Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability
Added Jan 28, 2022
Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability
CVE-2014-1776
Microsoft · Internet Explorer
Added Jan 28, 2022
Microsoft Internet Explorer Memory Corruption Vulnerability
CVE-2014-6271
GNU · Bourne-Again Shell (Bash)
Added Jan 28, 2022
GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability
CVE-2014-7169
GNU · Bourne-Again Shell (Bash)
Added Jan 28, 2022
GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability
CVE-2006-1547
Apache · Struts 1
Added Jan 21, 2022
Apache Struts 1 ActionForm Denial-of-Service Vulnerability
CVE-2012-0391
Apache · Struts 2
Added Jan 21, 2022
Apache Struts 2 Improper Input Validation Vulnerability
CVE-2018-8453
Microsoft · Win32k
Added Jan 21, 2022
Microsoft Win32k Privilege Escalation Vulnerability
CVE-2021-35247
SolarWinds · Serv-U
Added Jan 21, 2022
SolarWinds Serv-U Improper Input Validation Vulnerability
CVE-2021-32648
October CMS · October CMS
Added Jan 18, 2022
October CMS Improper Authentication
CVE-2021-25296
Nagios · Nagios XI
Added Jan 18, 2022
Nagios XI OS Command Injection
CVE-2021-25297
Nagios · Nagios XI
Added Jan 18, 2022
Nagios XI OS Command Injection
CVE-2021-25298
Nagios · Nagios XI
Added Jan 18, 2022
Nagios XI OS Command Injection
CVE-2021-40870
Aviatrix · Aviatrix Controller
Added Jan 18, 2022
Aviatrix Controller Unrestricted Upload of File
CVE-2021-33766
Microsoft · Exchange Server
Added Jan 18, 2022
Microsoft Exchange Server Information Disclosure
CVE-2021-21975
VMware · vRealize Operations Manager API
Added Jan 18, 2022
VMware Server Side Request Forgery in vRealize Operations Manager API
CVE-2021-21315
Npm package · System Information Library for Node.JS
Added Jan 18, 2022
System Information Library for Node.JS Command Injection
Need help prioritizing these vulnerabilities?
ThreatGrid can assess your environment and map active CVEs to your monitored assets.