4023
New Embedded Vulns (7 Days)
9570
Active Critical ESVs
google
Top Target (30 Days)
6.95
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-86863
CRITICAL 9.8
CVE-2026-63472
CRITICAL 9.1
CVE-2026-92960
CRITICAL 10.0
CVE-2026-92957
CRITICAL 9.9
CVE-2026-92956
CRITICAL 10.0
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2014-5093 | Status2k does not remove the install directory allowing credential reset. | Critical (9.8) | 2020-01-10 | Environment Specific |
| CVE-2014-5092 | Status2k allows Remote Command Execution in admin/options/editpl.php. | High (8.8) | 2020-01-10 | General Purpose |
| CVE-2014-4561 | The ultimate-weather plugin 1.0 for WordPress has XSS | Medium (6.1) | 2020-01-10 | General Purpose |
| CVE-2013-7380 | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability | Critical (9.8) | 2020-01-10 | General Purpose |
| CVE-2013-6430 | The JavaScriptUtils.javaScriptEscape method in web/util/JavaScriptUtils.java in Spring MVC in Spring Framework before 3… | Medium (5.4) | 2020-01-10 | General Purpose |