4023
New Embedded Vulns (7 Days)
9570
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-86863
CRITICAL 9.8
CVE-2026-63472
CRITICAL 9.1
CVE-2026-92960
CRITICAL 10.0
CVE-2026-92957
CRITICAL 9.9
CVE-2026-92956
CRITICAL 10.0
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-6859 | Multiple Insecure Direct Object Reference vulnerabilities in includes/core/class-files.php in the Ultimate Member plugi… | Medium (5.3) | 2020-01-13 | General Purpose |
| CVE-2019-18894 | In Avast Premium Security 19.8.2393, attackers can send a specially crafted request to the local web server run by Avas… | High (7.8) | 2020-01-13 | General Purpose |
| CVE-2019-18893 | XSS in the Video Downloader component before 1.5 of Avast Secure Browser 77.1.1831.91 and AVG Secure Browser 77.0.1790.… | Medium (6.1) | 2020-01-13 | General Purpose |
| CVE-2019-19547 | Symantec Endpoint Detection and Response (SEDR), prior to 4.3.0, may be susceptible to a cross site scripting (XSS) iss… | Medium (6.1) | 2020-01-13 | General Purpose |
| CVE-2014-9382 | Freebox OS Web interface 3.0.2 has CSRF which can allow VPN user account creation | Medium (6.5) | 2020-01-13 | Environment Specific |