0
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 96 Vulns
- apple 47 Vulns
- ruijie 35 Vulns
- dlink 33 Vulns
- qnap 30 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-13854 | The Curved Text plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'radius' parameter of the arc… | Medium (6.4) | 2026-01-09 | General-Purpose |
| CVE-2025-13852 | The Debt.com Business in a Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'configuration… | Medium (6.4) | 2026-01-09 | General-Purpose |
| CVE-2025-13717 | The Contact Form vCard Generator plugin for WordPress is vulnerable to unauthorized access of data due to a missing cap… | Medium (5.3) | 2026-01-09 | General-Purpose |
| CVE-2025-13704 | The Autogen Headers Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'head_class' paramet… | Medium (6.4) | 2026-01-09 | General-Purpose |
| CVE-2025-13701 | The Shabat Keeper plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the $_SERVER['PHP_SELF'] par… | Medium (6.1) | 2026-01-09 | General-Purpose |