Home Embedded Vulns General Vulns

ESV-Tracker

An AI-powered database that classifies embedded vulnerabilities separately from general-purpose ones.

No Dedicated Database Existed. Until Now.

Embedded system vulnerabilities are critical, yet buried alongside millions of general CVEs. ESV-Tracker changes that.

Your Embedded Threat Center.

Search the database, track embedded CVEs, and explore real-time statistics — all in one place.

2271
New Embedded Vulns (7 Days)
10104
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • google 129 Vulns
  • dell 48 Vulns
  • microsoft 27 Vulns
  • apple 10 Vulns
  • jetbrains 7 Vulns

Recent Critical ESVs

CVE-2026-76268 CRITICAL 9.8
CVE-2026-95606 CRITICAL 9.8
CVE-2026-76501 CRITICAL 9.8
CVE-2026-76500 CRITICAL 9.8
CVE-2026-76499 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2026-102407 Incorrect Authorization (CWE-863) in Elasticsearch can lead to unauthorized data stream modification via Accessing Func… Medium (5.4) 2026-10-06 Environment Specific
CVE-2026-102406 Authorization Bypass Through User-Controlled Key (CWE-639) in Kibana could lead to cross-tenant data interception. In t… High (8.8) 2026-10-06 Environment Specific
CVE-2026-102404 Uncontrolled Resource Consumption (CWE-400) in Elasticsearch can lead to denial of service via Excessive Allocation (CA… Medium (6.5) 2026-10-06 Environment Specific
CVE-2026-102169 On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a c… Medium (6.5) 2026-10-06 Environment Specific
CVE-2026-102168 On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a C… Medium (6.5) 2026-10-06 Environment Specific