2136
New Embedded Vulns (7 Days)
10001
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- jetbrains 7 Vulns
Recent Critical ESVs
CVE-2026-105763
CRITICAL 9.6
CVE-2026-105740
CRITICAL 9.9
CVE-2026-105697
CRITICAL 9.9
CVE-2026-105691
CRITICAL 9.9
CVE-2026-105641
CRITICAL 9.8
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-20525 | Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp driver parameter. | Medium (6.1) | 2020-03-19 | General Purpose |
| CVE-2019-20521 | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI. | Medium (6.1) | 2020-03-19 | General Purpose |
| CVE-2019-20520 | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/method/ URI. | Medium (6.1) | 2020-03-19 | General Purpose |
| CVE-2019-20519 | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the user/ URI, as demonstrated by a crafted e-mail address. | Medium (6.1) | 2020-03-19 | General Purpose |
| CVE-2019-20518 | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the project/ URI. | Medium (6.1) | 2020-03-19 | General Purpose |