1900
New Embedded Vulns (7 Days)
9349
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-82107
CRITICAL 9.6
CVE-2026-82100
CRITICAL 9.6
CVE-2026-81204
CRITICAL 9.8
CVE-2026-80424
CRITICAL 9.1
CVE-2026-79724
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-84941 | An information disclosure vulnerability in the SAML Single Sign-On (SSO) functionality of Omada Controller allows an au… | Unknown | 2026-09-11 | Environment Specific |
| CVE-2026-81906 | Concrete CMS OAuth callback login path prior to version 9.5.3 did not check whether an account was active or email-vali… | Unknown | 2026-09-11 | Environment Specific |
| CVE-2026-81905 | Concrete CMS below 9.5.3 stores user validation hashes for multiple purposes (email/registration validation, password r… | Unknown | 2026-09-11 | Environment Specific |
| CVE-2026-77807 | The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress plugin for WordPress is … | High (7.5) | 2026-09-11 | General Purpose |
| CVE-2026-18121 | Concrete CMS 9.5.2 and below is vulnerable to an authorization bypass (IDOR) because the frontend calendar lightbox end… | Unknown | 2026-09-11 | General Purpose |