Live mirror of the federal catalog of vulnerabilities actively exploited in the wild. When a federal RFP names tech with an open KEV entry, the procurement is implicitly urgent — agencies are racing against active exploitation.
20% of total
across 664 products
| CVE | Vendor / Product | Vulnerability | Added | RW |
|---|---|---|---|---|
| CVE-2026-58644 | Microsoft SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2026-07-16 | — |
| CVE-2026-39808 | Fortinet FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | — |
| CVE-2026-25089 | Fortinet FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | — |
| CVE-2026-46817 | Oracle E-Business Suite | Oracle E-Business Suite Improper Privilege Management Vulnerability | 2026-07-15 | — |
| CVE-2023-4346 | KNX Association KNX Protocol Connection Authorization Option 1 | KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability | 2026-07-15 | — |
| CVE-2026-56164 | Microsoft SharePoint Server | Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability | 2026-07-14 | — |
| CVE-2026-56155 | Microsoft Active Directory Federation Services | Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability | 2026-07-14 | — |
| CVE-2026-15410 | SonicWall SMA1000 Appliances | SonicWall SMA1000 Appliances Code Injection Vulnerability | 2026-07-14 | — |
| CVE-2026-15409 | SonicWall SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability | 2026-07-14 | — |
| CVE-2008-4128 | Cisco IOS | Cisco IOS Cross-Site Request Forgery Vulnerability | 2026-07-13 | — |
| CVE-2026-56291 | Balbooa Forms | Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | — |
| CVE-2026-48939 | iCagenda iCagenda | iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | — |
| CVE-2026-56290 | Joomlack Page Builder | Joomlack Page Builder Improper Access Control Vulnerability | 2026-07-07 | — |
| CVE-2026-55255 | Langflow Langflow | Langflow Authorization Bypass Through User-Controlled Key Vulnerability | 2026-07-07 | — |
| CVE-2026-48908 | JoomShaper SP Page Builder | JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-07 | — |
| CVE-2026-48282 | Adobe ColdFusion | Adobe ColdFusion Path Traversal Vulnerability | 2026-07-07 | — |
| CVE-2026-45659 | Microsoft SharePoint Server | Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability | 2026-07-01 | — |
| CVE-2026-48558 | SimpleHelp SimpleHelp | SimpleHelp Authentication Bypass Vulnerability | 2026-06-29 | — |
| CVE-2026-20230 | Cisco Unified Communications Manager | Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability | 2026-06-25 | — |
| CVE-2026-12569 | PTC Windchill and FlexPLM | PTC Windchill and FlexPLM Improper Input Validation Vulnerability | 2026-06-25 | — |
| CVE-2026-34910 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Improper Input Validation Vulnerability | 2026-06-23 | — |
| CVE-2026-34909 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Path Traversal Vulnerability | 2026-06-23 | — |
| CVE-2026-34908 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Improper Access Control Vulnerability | 2026-06-23 | — |
| CVE-2025-67038 | Lantronix EDS5000 | Lantronix EDS5000 Code Injection Vulnerability | 2026-06-23 | — |
| CVE-2026-20253 | Splunk Enterprise | Splunk Enterprise Missing Authentication for Critical Function Vulnerability | 2026-06-18 | — |
| CVE-2026-48907 | Widget Factory Joomla Content Editor | Widget Factory Joomla Content Editor Improper Access Control Vulnerability | 2026-06-16 | — |
| CVE-2026-54420 | LiteSpeed cPanel Plugin | LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability | 2026-06-15 | — |
| CVE-2026-20262 | Cisco Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability | 2026-06-15 | — |
| CVE-2026-35273 | Oracle PeopleSoft Enterprise PeopleTools | Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability | 2026-06-12 | YES |
| CVE-2026-10520 | Ivanti Sentry | Ivanti Sentry OS Command Injection Vulnerability | 2026-06-11 | — |
| CVE-2026-7473 | Arista Extensible Operating System | Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability | 2026-06-09 | — |
| CVE-2026-20245 | Cisco Catalyst SD-WAN Manager | Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability | 2026-06-09 | — |
| CVE-2026-11645 | Google Chromium V8 | Google Chromium V8 Out-of-Bounds Read and Write Vulnerability | 2026-06-09 | — |
| CVE-2026-50751 | Check Point Security Gateway | Check Point Security Gateway Improper Authentication Vulnerability | 2026-06-08 | YES |
| CVE-2026-42271 | BerriAI LiteLLM | BerriAI LiteLLM Command Injection Vulnerability | 2026-06-08 | — |
| CVE-2026-28318 | SolarWinds Serv-U | SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability | 2026-06-05 | — |
| CVE-2026-45247 | Mirasvit Mirasvit Full Page Cache Warmer | Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability | 2026-06-03 | — |
| CVE-2025-48595 | Android Framework | Android Framework Integer Overflow Vulnerability | 2026-06-02 | — |
| CVE-2022-0492 | Linux Kernel | Linux Kernel Improper Authentication Vulnerability | 2026-06-02 | — |
| CVE-2024-21182 | Oracle WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2026-06-01 | — |
| CVE-2026-0257 | Palo Alto Networks PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2026-05-29 | — |
| CVE-2026-8398 | Daemon Daemon Tools Lite | Daemon Tools Lite Embedded Malicious Code Vulnerability | 2026-05-27 | — |
| CVE-2026-48027 | Nx Nx Console | Nx Console Embedded Malicious Code Vulnerability | 2026-05-27 | YES |
| CVE-2026-45321 | TanStack TanStack | TanStack Unspecified Vulnerability | 2026-05-27 | YES |
| CVE-2026-48172 | LiteSpeed cPanel Plugin | LiteSpeed cPanel Plugin Privilege Escalation Vulnerability | 2026-05-26 | — |
| CVE-2026-9082 | Drupal Core | Drupal Core SQL Injection Vulnerability | 2026-05-22 | — |
| CVE-2026-34926 | Trend Micro Apex One | Trend Micro Apex One (On-Premise) Directory Traversal Vulnerability | 2026-05-21 | — |
| CVE-2025-34291 | Langflow Langflow | Langflow Origin Validation Error Vulnerability | 2026-05-21 | — |
| CVE-2026-45498 | Microsoft Defender | Microsoft Defender Denial of Service Vulnerability | 2026-05-20 | — |
| CVE-2026-41091 | Microsoft Defender | Microsoft Defender Link Following Vulnerability | 2026-05-20 | — |
Source: CISA Known Exploited Vulnerabilities Catalog via cisagov/kev-data. Refreshed daily. Catalog version as of 2026-07-16.