Home Embedded Vulns General Vulns

ESV-Tracker

An AI-powered database that classifies embedded vulnerabilities separately from general-purpose ones.

No Dedicated Database Existed. Until Now.

Embedded system vulnerabilities are critical, yet buried alongside millions of general CVEs. ESV-Tracker changes that.

Your Embedded Threat Center.

Search the database, track embedded CVEs, and explore real-time statistics — all in one place.

2625
New Embedded Vulns (7 Days)
9429
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score

Vulnerability Trends (Last 6 Months)

ESV Severity Distribution (90 Days)

Top Affected ESV Vendors (90 Days)

  • google 129 Vulns
  • dell 48 Vulns
  • microsoft 27 Vulns
  • apple 10 Vulns
  • snipeitapp 2 Vulns

Recent Critical ESVs

CVE-2026-90847 CRITICAL 9.1
CVE-2026-12944 CRITICAL 9.6
CVE-2026-65414 CRITICAL 9.8
CVE-2026-53713 CRITICAL 9.1
CVE-2026-55209 CRITICAL 9.8

Recently Added Vulnerabilities

CVE ID Description Severity Published Type
CVE-2020-6611 GNU LibreDWG 0.9.3.2564 has a NULL pointer dereference in get_next_owned_entity in dwg.c. Medium (6.5) 2020-01-08 General Purpose
CVE-2020-6610 GNU LibreDWG 0.9.3.2564 has an attempted excessive memory allocation in read_sections_map in decode_r2007.c. Medium (6.5) 2020-01-08 Environment Specific
CVE-2020-6609 GNU LibreDWG 0.9.3.2564 has a heap-based buffer over-read in read_pages_map in decode_r2007.c. High (8.8) 2020-01-08 General Purpose
CVE-2019-17000 An object tag with a data URI did not correctly inherit the document's Content Security Policy. This allowed a CSP bypa… Medium (6.1) 2020-01-08 General Purpose
CVE-2019-11765 A compromised content process could send a message to the parent process that would cause the 'Click to Play' permissio… Medium (6.5) 2020-01-08 General Purpose