4289
New Embedded Vulns (7 Days)
9590
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-85878
CRITICAL 9.9
CVE-2026-69843
CRITICAL 10.0
CVE-2026-62874
CRITICAL 10.0
CVE-2026-85889
CRITICAL 10.0
CVE-2026-85885
CRITICAL 9.9
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2018-21035 | In Qt through 5.14.1, the WebSocket implementation accepts up to 2GB for frames and 2GB for messages. Smaller limits ca… | High (7.5) | 2020-02-28 | General Purpose |
| CVE-2020-9466 | The Export Users to CSV plugin through 1.4.2 for WordPress allows CSV Injection. | Medium (6.1) | 2020-02-28 | General Purpose |
| CVE-2020-9465 | An issue was discovered in EyesOfNetwork eonweb 5.1 through 5.3 before 5.3-3. The eonweb web interface is prone to a SQ… | Critical (9.8) | 2020-02-28 | General Purpose |
| CVE-2020-8132 | Lack of input validation in pdf-image npm package version <= 2.0.0 may allow an attacker to run arbitrary code if PDF f… | Critical (9.8) | 2020-02-28 | General Purpose |
| CVE-2020-8127 | Insufficient validation in cross-origin communication (postMessage) in reveal.js version 3.9.1 and earlier allow attack… | Medium (6.1) | 2020-02-28 | General Purpose |