0
New Embedded Vulns (7 Days)
348
Active Critical ESVs
tenda
Top Target (30 Days)
6.96
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- tenda 96 Vulns
- apple 48 Vulns
- dlink 44 Vulns
- ruijie 35 Vulns
- qnap 30 Vulns
Recent Critical ESVs
CVE-2020-37002
CRITICAL 9.8
CVE-2025-21589
CRITICAL 9.8
CVE-2026-24858
CRITICAL 9.8
CVE-2025-15467
CRITICAL 9.8
CVE-2020-36940
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-10484 | The Registration & Login with Mobile Phone Number for WooCommerce plugin for WordPress is vulnerable to Authentication … | Critical (9.8) | 2026-01-17 | General-Purpose |
| CVE-2025-14478 | The Demo Importer Plus plugin for WordPress is vulnerable to XML External Entity Injection (XXE) in all versions up to,… | High (7.5) | 2026-01-17 | General-Purpose |
| CVE-2025-12129 | The CubeWP – All-in-One Dynamic Content Framework plugin for WordPress is vulnerable to Information Exposure in all ver… | Medium (5.3) | 2026-01-17 | General-Purpose |
| CVE-2026-0833 | The Team Section Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block in all … | Medium (6.4) | 2026-01-17 | General-Purpose |
| CVE-2026-0808 | The Spin Wheel plugin for WordPress is vulnerable to client-side prize manipulation in all versions up to, and includin… | Medium (5.3) | 2026-01-17 | General-Purpose |