4286
New Embedded Vulns (7 Days)
9581
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-54767
CRITICAL 9.1
CVE-2026-54734
CRITICAL 10.0
CVE-2026-54670
CRITICAL 9.1
CVE-2026-54460
CRITICAL 9.8
CVE-2026-54752
CRITICAL 9.6
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-9334 | A stored XSS vulnerability exists in the Envira Photo Gallery plugin through 1.7.6 for WordPress. Successful exploitati… | Medium (5.4) | 2020-02-25 | General Purpose |
| CVE-2020-9017 | LiteCart through 2.2.1 allows CSV injection via a customer's profile. | High (8.0) | 2020-02-25 | General Purpose |
| CVE-2020-8794 | OpenSMTPD before 6.6.4 allows remote code execution because of an out-of-bounds read in mta_io in mta_session.c for mul… | Critical (9.8) | 2020-02-25 | General Purpose |
| CVE-2020-8793 | OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a comb… | Medium (4.7) | 2020-02-25 | General Purpose |
| CVE-2019-12863 | SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the W… | Medium (4.8) | 2020-02-25 | General Purpose |