Vulnerabilities added to KEV in April 2024
Added10
Ransomware-linked1
Vendors6
By vendor
2
2
2
2
1
1
Nearby months
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2024-29988 | Microsoft SmartScreen Prompt | 2024-04-30 | 44.8% | Unknown |
| CVE-2024-4040 | CrushFTP CrushFTP | 2024-04-24 | 99.5% | Unknown |
| CVE-2024-20359 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-04-24 | 19.4% | Unknown |
| CVE-2024-20353 | Cisco Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-04-24 | 70.6% | Unknown |
| CVE-2022-38028 | Microsoft Windows | 2024-04-23 | 14.9% | Unknown |
| CVE-2024-3400 | Palo Alto Networks PAN-OS | 2024-04-12 | 99.9% | Known |
| CVE-2024-3273 | D-Link Multiple NAS Devices | 2024-04-11 | 99.9% | Unknown |
| CVE-2024-3272 | D-Link Multiple NAS Devices | 2024-04-11 | 98.0% | Unknown |
| CVE-2024-29748 | Android Pixel | 2024-04-04 | 0.6% | Unknown |
| CVE-2024-29745 | Android Pixel | 2024-04-04 | 0.4% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.