Vulnerabilities added to KEV in July 2024
Added14
Ransomware-linked2
Vendors10
By vendor
3
2
2
1
1
1
1
1
1
1
Nearby months
| CVE | Vendor / product | Added | EPSS | Ransomware |
|---|---|---|---|---|
| CVE-2024-37085 | VMware ESXi | 2024-07-30 | 26.7% | Known |
| CVE-2024-5217 | ServiceNow Utah, Vancouver, and Washington DC Now Platform | 2024-07-29 | 99.6% | Unknown |
| CVE-2024-4879 | ServiceNow Utah, Vancouver, and Washington DC Now Platform | 2024-07-29 | 99.9% | Unknown |
| CVE-2023-45249 | Acronis Cyber Infrastructure (ACI) | 2024-07-29 | 53.2% | Unknown |
| CVE-2024-39891 | Twilio Authy | 2024-07-23 | 1.6% | Unknown |
| CVE-2012-4792 | Microsoft Internet Explorer | 2024-07-23 | 78.8% | Unknown |
| CVE-2024-34102 | Adobe Commerce and Magento Open Source | 2024-07-17 | 99.9% | Unknown |
| CVE-2024-28995 | SolarWinds Serv-U | 2024-07-17 | 99.6% | Unknown |
| CVE-2022-22948 | VMware vCenter Server | 2024-07-17 | 13.2% | Unknown |
| CVE-2024-36401 | OSGeo GeoServer | 2024-07-15 | 99.8% | Unknown |
| CVE-2024-38112 | Microsoft Windows | 2024-07-09 | 84.2% | Unknown |
| CVE-2024-38080 | Microsoft Windows | 2024-07-09 | 7.1% | Unknown |
| CVE-2024-23692 | Rejetto HTTP File Server | 2024-07-09 | 99.4% | Known |
| CVE-2024-20399 | Cisco NX-OS | 2024-07-02 | 4.3% | Unknown |
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.