2647
New Embedded Vulns (7 Days)
9760
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-93577
CRITICAL 9.9
CVE-2026-89078
CRITICAL 9.9
CVE-2026-93352
CRITICAL 9.8
CVE-2026-6928
CRITICAL 9.8
CVE-2026-6730
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-87900 | Argument injection in WP Toolkit for cPanel 6.11.2-10794 and earlier allows remote authenticated users to read arbitrar… | Unknown | 2026-09-23 | Environment Specific |
| CVE-2026-87899 | Execution with unnecessary privileges in cPanel allows remote authenticated users to execute arbitrary code with root p… | Unknown | 2026-09-23 | Environment Specific |
| CVE-2026-87898 | OS command injection in Plesk allows remote authenticated users to execute arbitrary code with root privileges. | Unknown | 2026-09-23 | Environment Specific |
| CVE-2026-86065 | Klever-Go is the Go implementation of the Klever blockchain protocol. Prior to 1.7.20, the default-open GET /subscribe … | High (7.5) | 2026-09-23 | Environment Specific |
| CVE-2026-86064 | Klever-Go is the Go implementation of the Klever blockchain protocol. Prior to 1.7.20, the default-open GET /log WebSoc… | High (8.6) | 2026-09-23 | Environment Specific |