30
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 105 Vulns
- apple 51 Vulns
- dlink 44 Vulns
- ruijie 35 Vulns
- qnap 31 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-65675 | Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arb… | Medium (5.4) | 2025-11-26 | General-Purpose |
| CVE-2025-65672 | Insecure Direct Object Reference (IDOR) in classroomio 0.1.13 allows unauthorized share and invite access to course set… | High (7.5) | 2025-11-26 | General-Purpose |
| CVE-2025-65669 | An issue was discovered in classroomio 0.1.13. Student accounts are able to delete courses from the Explore page withou… | Critical (9.1) | 2025-11-26 | General-Purpose |
| CVE-2025-26155 | NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerabilit… | Critical (9.8) | 2025-11-26 | General-Purpose |
| CVE-2021-4472 | The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' featu… | Medium (6.5) | 2025-11-26 | General-Purpose |