23
New Embedded Vulns (7 Days)
147
Active Critical ESVs
Cisco
Top Target (30 Days)
7.84
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- Cisco 89 Vulns
- Siemens 67 Vulns
- Schneider Electric 54 Vulns
- Rockwell Automation 42 Vulns
- Honeywell 38 Vulns
- ABB 31 Vulns
- Emerson 28 Vulns
- GE Digital 24 Vulns
- Phoenix Contact 19 Vulns
- Mitsubishi Electric 16 Vulns
Recent Critical ESVs
CVE-2024-8923
CRITICAL 9.8
CVE-2024-8756
CRITICAL 9.4
CVE-2024-8621
CRITICAL 9.1
CVE-2024-8509
CRITICAL 9.0
CVE-2024-8334
CRITICAL 9.0
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-32988 | A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the exp… | Medium (6.5) | 2025-07-10 | General-Purpose |
| CVE-2025-7387 | The Lana Downloads Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the endpoint parameter… | Medium (5.5) | 2025-07-10 | General-Purpose |
| CVE-2025-6236 | The Hostel WordPress plugin before 1.1.5.9 does not sanitise and escape some of its settings, which could allow high pr… | Medium (4.8) | 2025-07-10 | General-Purpose |
| CVE-2025-6234 | The Hostel WordPress plugin before 1.1.5.8 does not sanitise and escape a parameter before outputting it back in the pa… | Medium (6.1) | 2025-07-10 | General-Purpose |
| CVE-2023-50458 | In Dradis before 4.11.0, the Output Console shows a job queue that may contain information about other users' jobs. | Low (3.5) | 2025-07-10 | General-Purpose |