23
New Embedded Vulns (7 Days)
147
Active Critical ESVs
Cisco
Top Target (30 Days)
7.84
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- Cisco 89 Vulns
- Siemens 67 Vulns
- Schneider Electric 54 Vulns
- Rockwell Automation 42 Vulns
- Honeywell 38 Vulns
- ABB 31 Vulns
- Emerson 28 Vulns
- GE Digital 24 Vulns
- Phoenix Contact 19 Vulns
- Mitsubishi Electric 16 Vulns
Recent Critical ESVs
CVE-2024-8923
CRITICAL 9.8
CVE-2024-8756
CRITICAL 9.4
CVE-2024-8621
CRITICAL 9.1
CVE-2024-8509
CRITICAL 9.0
CVE-2024-8334
CRITICAL 9.0
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-4827 | A vulnerability, which was classified as critical, was found in TOTOLINK A702R, A3002R and A3002RU 3.0.0-B20230809.1615… | High (8.8) | 2025-05-17 | Embedded |
| CVE-2025-4101 | The MultiVendorX – WooCommerce Multivendor Marketplace Solutions plugin for WordPress is vulnerable to unauthorized los… | Medium (4.3) | 2025-05-17 | General-Purpose |
| CVE-2025-48187 | RAGFlow through 0.18.1 allows account takeover because it is possible to conduct successful brute-force attacks against… | Critical (9.1) | 2025-05-17 | General-Purpose |
| CVE-2025-4669 | The WP Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpbc shortco… | Medium (6.4) | 2025-05-17 | General-Purpose |
| CVE-2025-3888 | The Jupiter X Core plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File inclusion in all vers… | Medium (6.4) | 2025-05-17 | General-Purpose |