119
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- apple 137 Vulns
- tenda 105 Vulns
- samsung 52 Vulns
- dlink 45 Vulns
- ruijie 35 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-4692 | Actors can use a maliciously crafted JavaScript object notation (JSON) web token (JWT) to perform privilege escalation … | Medium (6.8) | 2025-05-23 | General-Purpose |
| CVE-2025-4642 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | Unknown | 2025-05-22 | General-Purpose |
| CVE-2025-4562 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. | Unknown | 2025-05-22 | General-Purpose |
| CVE-2025-4338 | Lantronix Device installer is vulnerable to XML external entity (XXE) attacks in configuration files read from the netw… | Medium (6.8) | 2025-05-22 | Embedded |
| CVE-2025-48371 | OpenFGA is an authorization/permission engine. OpenFGA versions 1.8.0 through 1.8.12 (corresponding to Helm chart openf… | Unknown | 2025-05-22 | General-Purpose |