CISA Known Exploited Vulnerabilities (KEV)

CISA's Known Exploited Vulnerabilities (KEV) catalog is the authoritative list of security flaws that have been confirmed exploited in real-world attacks. CVEFeed.io mirrors every entry, joins it to full CVE and severity data, and tracks new additions so you can prioritize remediation the moment a vulnerability enters the catalog.

Because each KEV entry carries direct evidence of active exploitation, the catalog is one of the highest-signal inputs for risk-based patch management — start here before triaging vulnerabilities that are only theoretically exploitable.

    9.3

    HIGH
    CVE-2012-4969 - Microsoft Internet Explorer Use-After-Free Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Microsoft

    Description :Microsoft Internet Explorer contains a use-after-free vulnerability that allows remote attackers to execute code via a crafted web site.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2012-4969

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.3

    HIGH
    CVE-2012-1889 - Microsoft XML Core Services Memory Corruption Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Microsoft

    Description :Microsoft XML Core Services contains a memory corruption vulnerability which could allow for remote code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2012-1889

    Alert Date: Jun 08, 2022 | 1545 days ago

    6.1

    MEDIUM
    CVE-2012-0767 - Adobe Flash Player Cross-Site Scripting (XSS) Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Adobe

    Description :Adobe Flash Player contains a XSS vulnerability that allows remote attackers to inject web script or HTML.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2012-0767

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.3

    HIGH
    CVE-2007-5659 - Adobe Acrobat and Reader Buffer Overflow Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Adobe

    Description :Adobe Acrobat and Reader contain a buffer overflow vulnerability that allows remote attackers to execute code via a PDF file with long arguments to unspecified JavaScript methods.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2007-5659

    Alert Date: Jun 08, 2022 | 1545 days ago

    8.8

    HIGH
    CVE-2006-2492 - Microsoft Word Malformed Object Pointer Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Microsoft

    Description :Microsoft Word and Microsoft Works Suites contain a malformed object pointer which allows attackers to execute code.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2006-2492

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.8

    CRITICAL
    CVE-2008-0655 - Adobe Acrobat and Reader Unspecified Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Adobe

    Description :Adobe Acrobat and Reader contains an unespecified vulnerability described as a design flaw which could allow a specially crafted file to be printed silently an arbitrary number of times.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2008-0655

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.8

    CRITICAL
    CVE-2019-7195 - QNAP Photo Station Path Traversal Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : QNAP

    Description :QNAP devices running Photo Station contain an external control of file name or path vulnerability allowing remote attackers to access or modify system files.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Jun 08, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2019-7195

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.8

    CRITICAL
    CVE-2019-7194 - QNAP Photo Station Path Traversal Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : QNAP

    Description :QNAP devices running Photo Station contain an external control of file name or path vulnerability allowing remote attackers to access or modify system files.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Jun 08, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2019-7194

    Alert Date: Jun 08, 2022 | 1545 days ago

    8.8

    HIGH
    CVE-2016-5198 - Google Chromium V8 Out-of-Bounds Memory Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Google

    Description :Google Chromium V8 Engine contains an out-of-bounds memory access vulnerability that allows a remote attacker to perform read/write operations, leading to code execution, via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-5198

    Alert Date: Jun 08, 2022 | 1545 days ago

    8.8

    HIGH
    CVE-2017-5030 - Google Chromium V8 Memory Corruption Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : Google

    Description :Google Chromium V8 Engine contains a memory corruption vulnerability that allows a remote attacker to execute code via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-5030

    Alert Date: Jun 08, 2022 | 1545 days ago

    10.0

    HIGH
    CVE-2019-7193 - QNAP QTS Improper Input Validation Vulnerability -

    Action Due Jun 22, 2022 Target Vendor : QNAP

    Description :QNAP QTS contains an improper input validation vulnerability allowing remote attackers to inject code on the system.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Jun 08, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2019-7193

    Alert Date: Jun 08, 2022 | 1545 days ago

    9.8

    CRITICAL
    CVE-2022-26134 - Atlassian Confluence Server and Data Center Remote Code Execution Vulnerability -

    Action Due Jun 06, 2022 Target Vendor : Atlassian

    Description :Atlassian Confluence Server and Data Center contain a remote code execution vulnerability that allows for an unauthenticated attacker to perform remote code execution.

    Action :Immediately block all internet traffic to and from affected products AND apply the update per vendor instructions [https://confluence.atlassian.com/doc/confluence-security-advisory-2022-06-02-1130377146.html] OR remove the affected products by the due date on the right. Note: Once the update is successfully deployed, agencies can reassess the internet blocking rules.

    Known To Be Used in Ransomware Campaigns? : Known Detected Jun 02, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-26134

    Alert Date: Jun 02, 2022 | 1551 days ago

    9.3

    HIGH
    CVE-2016-1010 - Adobe Flash Player and AIR Integer Overflow Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Adobe

    Description :Integer overflow vulnerability in Adobe Flash Player and AIR allows attackers to execute code.

    Action :The impacted products are end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-1010

    Alert Date: May 25, 2022 | 1559 days ago

    7.8

    HIGH
    CVE-2015-6175 - Microsoft Windows Kernel Privilege Escalation Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Microsoft

    Description :The kernel in Microsoft Windows contains a vulnerability that allows local users to gain privileges via a crafted application.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2015-6175

    Alert Date: May 25, 2022 | 1559 days ago

    9.3

    HIGH
    CVE-2014-4148 - Microsoft Windows Remote Code Execution Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists when the Windows kernel-mode driver improperly handles TrueType fonts.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2014-4148

    Alert Date: May 25, 2022 | 1559 days ago

    9.3

    HIGH
    CVE-2016-7256 - Microsoft Windows Open Type Font Remote Code Execution Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts. An attacker who successfully exploits this vulnerability could take control of the affected system.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-7256

    Alert Date: May 25, 2022 | 1559 days ago

    9.3

    HIGH
    CVE-2016-0984 - Adobe Flash Player and AIR Use-After-Free Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Adobe

    Description :Use-after-free vulnerability in Adobe Flash Player and Adobe AIR allows attackers to execute code.

    Action :The impacted products are end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-0984

    Alert Date: May 25, 2022 | 1559 days ago

    9.3

    HIGH
    CVE-2016-0034 - Microsoft Silverlight Runtime Remote Code Execution Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Microsoft

    Description :Microsoft Silverlight mishandles negative offsets during decoding, which allows attackers to execute remote code or cause a denial-of-service (DoS).

    Action :The impacted products are end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Known Detected May 25, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-0034

    Alert Date: May 25, 2022 | 1559 days ago

    10.0

    HIGH
    CVE-2015-0310 - Adobe Flash Player ASLR Bypass Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Adobe

    Description :Adobe Flash Player does not properly restrict discovery of memory addresses, which allows attackers to bypass the address space layout randomization (ASLR) protection mechanism.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2015-0310

    Alert Date: May 25, 2022 | 1559 days ago

    9.3

    HIGH
    CVE-2015-0016 - Microsoft Windows TS WebProxy Directory Traversal Vulnerability -

    Action Due Jun 15, 2022 Target Vendor : Microsoft

    Description :Directory traversal vulnerability in the TS WebProxy (TSWbPrxy) component in Microsoft Windows allows remote attackers to escalate privileges.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2015-0016

    Alert Date: May 25, 2022 | 1559 days ago
Showing 20 of 1689 Results

Filters