54
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 105 Vulns
- apple 51 Vulns
- dlink 45 Vulns
- ruijie 35 Vulns
- advantech 34 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-69083 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability i… | High (8.1) | 2026-01-06 | General-Purpose |
| CVE-2025-63083 | Lack of output escaping leads to a XSS vector in the pagebreak plugin. | Unknown | 2026-01-06 | General-Purpose |
| CVE-2025-63082 | Lack of input filtering leads to an XSS vector in the HTML filter code related to data URLs in img tags. | Unknown | 2026-01-06 | General-Purpose |
| CVE-2025-60534 | Blue Access Cobalt v02.000.195 suffers from an authentication bypass vulnerability, which allows an attacker to selecti… | Critical (9.8) | 2026-01-06 | General-Purpose |
| CVE-2025-47553 | Deserialization of Untrusted Data vulnerability in Digital zoom studio DZS Video Gallery allows Object Injection.This i… | High (8.8) | 2026-01-06 | General-Purpose |