CISA Known Exploited Vulnerabilities (KEV)

CISA's Known Exploited Vulnerabilities (KEV) catalog is the authoritative list of security flaws that have been confirmed exploited in real-world attacks. CVEFeed.io mirrors every entry, joins it to full CVE and severity data, and tracks new additions so you can prioritize remediation the moment a vulnerability enters the catalog.

Because each KEV entry carries direct evidence of active exploitation, the catalog is one of the highest-signal inputs for risk-based patch management — start here before triaging vulnerabilities that are only theoretically exploitable.

    10.0

    CRITICAL
    CVE-2022-20703 - Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability -

    Action Due Mar 17, 2022 Target Vendor : Cisco

    Description :A vulnerability in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code elevate privileges, execute arbitrary commands, bypass authentication and authorization protections, fetch and run unsigned software, or cause a denial of service (DoS).

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-20703

    Alert Date: Mar 03, 2022 | 1642 days ago

    7.8

    HIGH
    CVE-2013-5065 - Microsoft Windows Kernel Privilege Escalation Vulnerability -

    Action Due Mar 24, 2022 Target Vendor : Microsoft

    Description :Microsoft Windows NDProxy.sys in the kernel contains an improper input validation vulnerability which can allow a local attacker to escalate privileges.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2013-5065

    Alert Date: Mar 03, 2022 | 1642 days ago

    7.8

    HIGH
    CVE-2021-41379 - Microsoft Windows Installer Privilege Escalation Vulnerability -

    Action Due Mar 17, 2022 Target Vendor : Microsoft

    Description :Microsoft Windows Installer contains an unspecified vulnerability that allows for privilege escalation.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 03, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2021-41379

    Alert Date: Mar 03, 2022 | 1642 days ago

    10.0

    HIGH
    CVE-2016-1019 - Adobe Flash Player Arbitrary Code Execution Vulnerability -

    Action Due Mar 24, 2022 Target Vendor : Adobe

    Description :Adobe Flash Player allows remote attackers to cause a denial of service or possibly execute arbitrary code.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 03, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-1019

    Alert Date: Mar 03, 2022 | 1642 days ago

    8.6

    HIGH
    CVE-2018-0173 - Cisco IOS and IOS XE Software Improper Input Validation Vulnerability -

    Action Due Mar 17, 2022 Target Vendor : Cisco

    Description :A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Version 4 (DHCPv4) packets can allow for denial-of-service (DoS).

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-0173

    Alert Date: Mar 03, 2022 | 1642 days ago

    7.1

    HIGH
    CVE-2018-0179 - Cisco IOS Software Denial-of-Service Vulnerability -

    Action Due Mar 17, 2022 Target Vendor : Cisco

    Description :A vulnerability in the Login Enhancements (Login Block) feature of Cisco IOS Software could allow an unauthenticated, remote attacker to trigger a reload of an affected system, resulting in a denial of service (DoS) condition.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-0179

    Alert Date: Mar 03, 2022 | 1642 days ago

    9.3

    HIGH
    CVE-2017-8570 - Microsoft Office Remote Code Execution Vulnerability -

    Action Due Aug 25, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-8570

    Alert Date: Feb 25, 2022 | 1648 days ago

    6.1

    MEDIUM
    CVE-2022-24682 - Synacor Zimbra Collaborate Suite (ZCS) Cross-Site Scripting Vulnerability -

    Action Due Mar 11, 2022 Target Vendor : Synacor

    Description :Synacor Zimbra Collaboration Suite (ZCS) contains a cross-site scripting (XSS) vulnerability in the Calendar feature that allows an attacker to execute arbitrary code.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Feb 25, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-24682

    Alert Date: Feb 25, 2022 | 1648 days ago

    8.8

    HIGH
    CVE-2017-0222 - Microsoft Internet Explorer Remote Code Execution Vulnerability -

    Action Due Aug 25, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-0222

    Alert Date: Feb 25, 2022 | 1648 days ago

    9.3

    HIGH
    CVE-2014-6352 - Microsoft Windows Code Injection Vulnerability -

    Action Due Aug 25, 2022 Target Vendor : Microsoft

    Description :Microsoft Windows allow remote attackers to execute arbitrary code via a crafted OLE object.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2014-6352

    Alert Date: Feb 25, 2022 | 1648 days ago

    9.8

    CRITICAL
    CVE-2022-23131 - Zabbix Frontend Authentication Bypass Vulnerability -

    Action Due Mar 08, 2022 Target Vendor : Zabbix

    Description :Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-23131

    Alert Date: Feb 22, 2022 | 1651 days ago

    5.3

    MEDIUM
    CVE-2022-23134 - Zabbix Frontend Improper Access Control Vulnerability -

    Action Due Mar 08, 2022 Target Vendor : Zabbix

    Description :Malicious actors can pass step checks and potentially change the configuration of Zabbix Frontend.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-23134

    Alert Date: Feb 22, 2022 | 1651 days ago

    8.8

    HIGH
    CVE-2022-0609 - Google Chromium Animation Use-After-Free Vulnerability -

    Action Due Mar 01, 2022 Target Vendor : Google

    Description :Google Chromium Animation contains a use-after-free vulnerability that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-0609

    Alert Date: Feb 15, 2022 | 1658 days ago

    10.0

    HIGH
    CVE-2022-24086 - Adobe Commerce and Magento Open Source Improper Input Validation Vulnerability -

    Action Due Mar 01, 2022 Target Vendor : Adobe

    Description :Adobe Commerce and Magento Open Source contain an improper input validation vulnerability which can allow for arbitrary code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2022-24086

    Alert Date: Feb 15, 2022 | 1658 days ago

    9.8

    CRITICAL
    CVE-2017-9841 - PHPUnit Command Injection Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : PHPUnit

    Description :PHPUnit allows remote attackers to execute arbitrary PHP code via HTTP POST data beginning with a "<?php " substring, as demonstrated by an attack on a site with an exposed /vendor folder, i.e., external access to the /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php URI.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-9841

    Alert Date: Feb 15, 2022 | 1658 days ago

    9.3

    HIGH
    CVE-2013-3906 - Microsoft Graphics Component Memory Corruption Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : Microsoft

    Description :Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2013-3906

    Alert Date: Feb 15, 2022 | 1658 days ago

    10.0

    HIGH
    CVE-2018-15982 - Adobe Flash Player Use-After-Free Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : Adobe

    Description :Adobe Flash Player com.adobe.tvsdk.mediacore.metadata Use After Free Vulnerability

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Known Detected Feb 15, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-15982

    Alert Date: Feb 15, 2022 | 1658 days ago

    7.6

    HIGH
    CVE-2019-0752 - Microsoft Internet Explorer Type Confusion Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Feb 15, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2019-0752

    Alert Date: Feb 15, 2022 | 1658 days ago

    7.6

    HIGH
    CVE-2018-8174 - Microsoft Windows VBScript Engine Out-of-Bounds Write Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : Microsoft

    Description :A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Remote Code Execution"

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Feb 15, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-8174

    Alert Date: Feb 15, 2022 | 1658 days ago

    7.8

    HIGH
    CVE-2018-20250 - WinRAR Absolute Path Traversal Vulnerability -

    Action Due Aug 15, 2022 Target Vendor : RARLAB

    Description :WinRAR Absolute Path Traversal vulnerability leads to Remote Code Execution

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Feb 15, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-20250

    Alert Date: Feb 15, 2022 | 1658 days ago
Showing 20 of 1689 Results

Filters