Home Embedded Vulns General Vulns
126
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • apple 137 Vulns
  • tenda 108 Vulns
  • samsung 52 Vulns
  • dlink 45 Vulns
  • ruijie 35 Vulns

Recent Critical ESVs

CVE-2020-37002 CRITICAL 9.8
CVE-2025-21589 CRITICAL 9.8
CVE-2026-24858 CRITICAL 9.8
CVE-2025-15467 CRITICAL 9.8
CVE-2020-36940 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2025-12965 The Magical Posts Display plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'mpac_title_tag' pa… Medium (6.4) 2025-12-12 General-Purpose
CVE-2025-12408 The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to Information Exposure … Medium (5.3) 2025-12-12 General-Purpose
CVE-2025-12407 The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to Cross-Site Request Fo… Medium (4.3) 2025-12-12 General-Purpose
CVE-2025-12841 The Bookit WordPress plugin before 2.5.1 has a publicly accessible REST endpoint that allows unauthenticated update of … Medium (5.3) 2025-12-12 General-Purpose
CVE-2025-12835 The WooMulti WordPress plugin through 17 does not validate a file parameter when deleting files, which could allow any … High (7.3) 2025-12-12 General-Purpose