Exploited Vulnerabilities Daily
🌐 English

Home › KEV statistics

Known exploited vulnerabilities classified as CWE-23

Entries9
Ransomware-linked4
Vendors7

By vendor

CVEVendor / productAddedEPSSRansomware
CVE-2026-34926Trend Micro Apex One2026-05-210.5%Unknown
CVE-2024-27199JetBrains TeamCity2026-04-2099.9%Known
CVE-2025-64446Fortinet FortiWeb2025-11-1491.8%Unknown
CVE-2022-37042Synacor Zimbra Collaboration Suite (ZCS)2022-08-1191.8%Known
CVE-2021-38163SAP NetWeaver2022-06-0936.8%Unknown
CVE-2020-5410VMware Tanzu Spring Cloud Configuration (Config) Server2022-03-2595.5%Unknown
CVE-2021-22017VMware vCenter Server2022-01-1049.1%Unknown
CVE-2021-22005VMware vCenter Server2021-11-0399.9%Known
CVE-2021-21972VMware vCenter Server2021-11-0399.8%Known
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page

9 KEV entries are classified as CWE-23. CWE definition (MITRE)