Known exploited vulnerabilities classified as CWE-347
Entries6
Ransomware-linked1
Vendors6
By vendor
1
1
1
1
1
1
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2026-5430 | WSO2 Multiple Products | 2026-09-24 | 0.5% | Unknown |
| CVE-2026-48558 | SimpleHelp SimpleHelp | 2026-06-29 | 5.7% | Unknown |
| CVE-2025-59718 | Fortinet Multiple Products | 2025-12-16 | 68.2% | Unknown |
| CVE-2020-2021 | Palo Alto Networks PAN-OS | 2022-03-25 | 4.3% | Known |
| CVE-2022-20703 | Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers | 2022-03-03 | 9.2% | Unknown |
| CVE-2020-1464 | Microsoft Windows | 2021-11-03 | 38.9% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
6 KEV entries are classified as CWE-347. CWE definition (MITRE)