2271
New Embedded Vulns (7 Days)
10104
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- jetbrains 7 Vulns
Recent Critical ESVs
CVE-2026-76268
CRITICAL 9.8
CVE-2026-95606
CRITICAL 9.8
CVE-2026-76501
CRITICAL 9.8
CVE-2026-76500
CRITICAL 9.8
CVE-2026-76499
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-102407 | Incorrect Authorization (CWE-863) in Elasticsearch can lead to unauthorized data stream modification via Accessing Func… | Medium (5.4) | 2026-10-06 | Environment Specific |
| CVE-2026-102406 | Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana could lead to cross-tenant data interception. In t… | High (8.8) | 2026-10-06 | Environment Specific |
| CVE-2026-102404 | Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead to denial of service via Excessive Allocation (CA… | Medium (6.5) | 2026-10-06 | Environment Specific |
| CVE-2026-102169 | On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a c… | Medium (6.5) | 2026-10-06 | Environment Specific |
| CVE-2026-102168 | On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a C… | Medium (6.5) | 2026-10-06 | Environment Specific |