Home Embedded Vulns General Vulns
30
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • tenda 105 Vulns
  • apple 51 Vulns
  • dlink 44 Vulns
  • ruijie 35 Vulns
  • qnap 31 Vulns

Recent Critical ESVs

CVE-2020-37002 CRITICAL 9.8
CVE-2025-21589 CRITICAL 9.8
CVE-2026-24858 CRITICAL 9.8
CVE-2025-15467 CRITICAL 9.8
CVE-2020-36940 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2025-15282 User-controlled data URLs parsed by urllib.request.DataHandler allow injecting headers through newlines in the data URL… Unknown 2026-01-20 General-Purpose
CVE-2025-11468 When folding a long comment in an email header containing exclusively unfoldable characters, the parenthesis would not … Unknown 2026-01-20 General-Purpose
CVE-2026-21664 HackerOne community member Huynh Pham Thanh Luc (nigh7c0r3) has reported a reflected XSS vulnerability in the afr.php d… Unknown 2026-01-20 General-Purpose
CVE-2026-21663 HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the banner-acl.php script o… Unknown 2026-01-20 General-Purpose
CVE-2026-21642 HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the `banner-acl.php` and `c… Unknown 2026-01-20 General-Purpose