Home Embedded Vulns General Vulns

ESV-Tracker

An AI-powered database that classifies embedded vulnerabilities separately from general-purpose ones.

No Dedicated Database Existed. Until Now.

Embedded system vulnerabilities are critical, yet buried alongside millions of general CVEs. ESV-Tracker changes that.

Your Embedded Threat Center.

Search the database, track embedded CVEs, and explore real-time statistics — all in one place.

2585
New Embedded Vulns (7 Days)
9363
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • google 129 Vulns
  • dell 48 Vulns
  • microsoft 27 Vulns
  • apple 10 Vulns
  • snipeitapp 2 Vulns

Recent Critical ESVs

CVE-2026-79395 CRITICAL 9.8
CVE-2026-62103 CRITICAL 9.8
CVE-2026-54072 CRITICAL 9.3
CVE-2026-72710 CRITICAL 9.8
CVE-2026-72709 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2020-6618 stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__find_table. High (8.8) 2020-01-08 Environment Specific
CVE-2020-6617 stb stb_truetype.h through 1.22 has an assertion failure in stbtt__cff_int. High (8.8) 2020-01-08 Environment Specific
CVE-2011-5266 Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass. Critical (9.8) 2020-01-08 General Purpose
CVE-2011-5250 Snare for Linux before 1.7.0 has CSRF in the web interface. Medium (6.5) 2020-01-08 General Purpose
CVE-2011-5247 Snare for Linux before 1.7.0 has password disclosure because the rendered page contains the field RemotePassword. High (7.5) 2020-01-08 General Purpose