Home Embedded Vulns General Vulns

ESV-Tracker

An AI-powered database that classifies embedded vulnerabilities separately from general-purpose ones.

No Dedicated Database Existed. Until Now.

Embedded system vulnerabilities are critical, yet buried alongside millions of general CVEs. ESV-Tracker changes that.

Your Embedded Threat Center.

Search the database, track embedded CVEs, and explore real-time statistics — all in one place.

2588
New Embedded Vulns (7 Days)
9832
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • google 129 Vulns
  • dell 48 Vulns
  • microsoft 27 Vulns
  • apple 10 Vulns
  • snipeitapp 2 Vulns

Recent Critical ESVs

CVE-2026-102361 CRITICAL 9.1
CVE-2026-101264 CRITICAL 9.1
CVE-2026-101263 CRITICAL 9.1
CVE-2026-101262 CRITICAL 9.1
CVE-2026-101261 CRITICAL 9.1

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2026-101010 A vulnerability was identified in aaPanel BaoTa up to 11.8.0. The impacted element is the function getData of the file … Medium (4.7) 2026-09-28 Environment Specific
CVE-2026-93000 The SPS-Suite WordPress plugin through 1.4.0 does not sanitise the search query before using it in a SQL query when its… Medium (6.8) 2026-09-28 Environment Specific
CVE-2026-92996 The Verge3D WordPress plugin from 4.1.0 through 4.13.0 does not verify with the payment provider that a payment was act… Medium (5.3) 2026-09-28 General Purpose
CVE-2026-89411 The Paymattic WordPress plugin from 4.6.20 before 4.6.26 does not verify that a confirmed Stripe payment belongs to the… Medium (5.3) 2026-09-28 Environment Specific
CVE-2026-89303 The Post Voting System WordPress plugin through 1.0 does not properly sanitize and escape a parameter before using it i… Medium (6.4) 2026-09-28 Environment Specific