2719
New Embedded Vulns (7 Days)
9794
Active Critical ESVs
google
Top Target (30 Days)
6.94
Average ESV CVSS Score
Vulnerability Trends (Last 6 Months)
ESV Severity Distribution (90 Days)
Top Affected ESV Vendors (90 Days)
- google 129 Vulns
- dell 48 Vulns
- microsoft 27 Vulns
- apple 10 Vulns
- snipeitapp 2 Vulns
Recent Critical ESVs
CVE-2026-82901
CRITICAL 9.8
CVE-2026-85984
CRITICAL 9.8
CVE-2026-100717
CRITICAL 9.9
CVE-2026-100715
CRITICAL 9.6
CVE-2026-100714
CRITICAL 9.1
Recently Added Vulnerabilities
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-10781 | In schema-inspector before 1.6.9, a maliciously crafted JavaScript object can bypass the `sanitize()` and the `validate… | Critical (9.8) | 2020-01-22 | General Purpose |
| CVE-2019-10780 | BibTeX-ruby before 5.1.0 allows shell command injection due to unsanitized user input being passed directly to the buil… | Critical (9.8) | 2020-01-22 | General Purpose |
| CVE-2018-16272 | The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-… | Critical (9.8) | 2020-01-22 | Environment Specific |
| CVE-2018-16271 | The wemail_consumer_service (from the built-in application wemail) in Samsung Galaxy Gear series allows an unprivileged… | Medium (6.5) | 2020-01-22 | Environment Specific |
| CVE-2018-16270 | Samsung Galaxy Gear series before build RE2 includes the hcidump utility with no privilege or permission restriction. T… | High (7.5) | 2020-01-22 | Environment Specific |