30
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 105 Vulns
- apple 51 Vulns
- dlink 44 Vulns
- ruijie 35 Vulns
- qnap 31 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-59302 | In Apache CloudStack improper control of generation of code ('Code Injection') vulnerability is found in the following… | Medium (4.7) | 2025-11-27 | General-Purpose |
| CVE-2025-54057 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache SkyWalking. This… | Medium (6.1) | 2025-11-27 | General-Purpose |
| CVE-2025-59890 | Improper input sanitization in the file archives upload functionality of Eaton Galileo software allows traversing paths… | High (7.3) | 2025-11-27 | General-Purpose |
| CVE-2025-13742 | Emails sent by pretix can utilize placeholders that will be filled with customer data. For example, when {name} is used… | Medium (6.1) | 2025-11-27 | General-Purpose |
| CVE-2025-10476 | The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… | Medium (4.3) | 2025-11-27 | General-Purpose |