Home Embedded Vulns General Vulns
111
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • tenda 105 Vulns
  • apple 53 Vulns
  • samsung 52 Vulns
  • dlink 45 Vulns
  • ruijie 35 Vulns

Recent Critical ESVs

CVE-2020-37002 CRITICAL 9.8
CVE-2025-21589 CRITICAL 9.8
CVE-2026-24858 CRITICAL 9.8
CVE-2025-15467 CRITICAL 9.8
CVE-2020-36940 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2025-66206 Frappe is a full-stack web application framework. Prior to 15.86.0 and 14.99.2, certain requests were vulnerable to pat… Medium (6.8) 2025-12-01 General-Purpose
CVE-2025-66205 Frappe is a full-stack web application framework. Prior to 15.86.0 and 14.99.2, a certain endpoint was vulnerable to er… High (7.1) 2025-12-01 General-Purpose
CVE-2025-65840 PublicCMS V5.202506.b is vulnerable to Cross Site Request Forgery (CSRF) in the CkEditorAdminController. High (8.8) 2025-12-01 Embedded
CVE-2025-65621 Snipe-IT before 8.3.4 allows stored XSS, allowing a low-privileged authenticated user to inject JavaScript that execute… Medium (5.4) 2025-12-01 General-Purpose
CVE-2025-58044 JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to v3.10.19 and… Medium (6.1) 2025-12-01 General-Purpose