126
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- apple 137 Vulns
- tenda 111 Vulns
- samsung 52 Vulns
- dlink 45 Vulns
- ruijie 35 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2021-47701 | OpenBMCS 2.4 allows an attacker to escalate privileges from a read user to an admin user by manipulating permissions an… | High (8.8) | 2025-12-09 | General-Purpose |
| CVE-2025-66625 | Umbraco is an ASP.NET CMS. Due to unsafe handling and deletion of temporary files in versions 10.0.0 through 13.12.0, d… | Medium (4.9) | 2025-12-09 | General-Purpose |
| CVE-2025-66457 | Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server commun… | High (8.8) | 2025-12-09 | General-Purpose |
| CVE-2025-66456 | Elysia is a Typescript framework for request validation, type inference, OpenAPI documentation and client-server commun… | Critical (9.8) | 2025-12-09 | General-Purpose |
| CVE-2025-66214 | Ladybug adds message-based debugging, unit, system, and regression testing to Java applications. Versions prior to 3.0-… | High (7.0) | 2025-12-09 | General-Purpose |