3513
New Embedded Vulns (7 Days)
9540
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-76423
CRITICAL 10.0
CVE-2026-20341
CRITICAL 9.1
CVE-2026-20330
CRITICAL 9.9
CVE-2026-20329
CRITICAL 9.9
CVE-2026-20326
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-1765 | An improper control of parameters allows the spoofing of the from fields of the following screens: AgentTicketCompose, … | Low (3.5) | 2020-01-10 | Environment Specific |
| CVE-2014-5093 | Status2k does not remove the install directory allowing credential reset. | Critical (9.8) | 2020-01-10 | Environment Specific |
| CVE-2014-5092 | Status2k allows Remote Command Execution in admin/options/editpl.php. | High (8.8) | 2020-01-10 | General Purpose |
| CVE-2014-4561 | The ultimate-weather plugin 1.0 for WordPress has XSS | Medium (6.1) | 2020-01-10 | General Purpose |
| CVE-2013-7380 | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability | Critical (9.8) | 2020-01-10 | General Purpose |