Vulnerabilities CISA has confirmed as actively exploited. Prioritize these for remediation.
Vulnerabilities newly added to CISA KEV in the last 7 days.
| CVE ID | Title | Severity | Added |
|---|---|---|---|
| Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network. | CRITICAL | 2026. 07. 16. | |
| A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4 through 5.0.5, FortiSandbox PaaS 5.0.4 through 5.0.5 may allow an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests | CRITICAL |
| CVE ID | Title | Severity | References | Ransom | |||||
|---|---|---|---|---|---|---|---|---|---|
| Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND. | HIGH | 8.4v3.1 | 100 |
| 2026. 07. 16. |
| CVE-2026-39808 | A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here> | CRITICAL | 2026. 07. 16. |
| CVE-2026-46817 | Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this vulnerability can result in takeover of Oracle Payments. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C | CRITICAL | 2026. 07. 15. |
| CVE-2023-4346 | KNX devices that use KNX Connection Authorization and support Option 1 are, depending on the implementation, vulnerable to being locked and users being unable to reset them to gain access to the device. The BCU key feature on the devices can be used to create a password for the device, but this password can often not be reset without entering the current password. If the device is configured to interface with a network, an attacker with access to that network could interface with the KNX instal | HIGH | 2026. 07. 15. |
KEV |
| 2023. 12. 05. |
| 2023. 12. 05. |
| — |
| CVE-2023-33063 | Memory corruption in DSP Services during a remote call from HLOS to DSP. | HIGH | 7.8v3.1 | 100 | 0.7% | KEV | 2023. 12. 05. | 2023. 12. 05. | — |
| CVE-2022-22071 | — | — | — | 82.50 | 0.4% | KEV | — | 2023. 12. 05. | — |
| CVE-2023-42917 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1. | HIGH | 8.8v3.1 | 100 | 9.4% | KEV KISA | 2023. 11. 30. | 2023. 12. 04. | — |
| CVE-2023-42916 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1. | MEDIUM | 6.5v3.1 | 97.50 | 17.8% | KEV KISA | 2023. 11. 30. | 2023. 12. 04. | — |
| CVE-2023-6345 | Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High) | CRITICAL | 9.6v3.1 | 100 | 19.6% | KEV KISA | 2023. 11. 29. | 2023. 11. 30. | — |
| CVE-2023-49103 | An issue was discovered in ownCloud owncloud/graphapi 0.2.x before 0.2.1 and 0.3.x before 0.3.1. The graphapi app relies on a third-party GetPhpInfo.php library that provides a URL. When this URL is accessed, it reveals the configuration details of the PHP environment (phpinfo). This information includes all the environment variables of the webserver. In containerized deployments, these environment variables may include sensitive data such as the ownCloud admin password, mail server credentials, | CRITICAL | 10.0v3.1 | 100 | 78.4% | KEV | 2023. 11. 21. | 2023. 11. 30. | — |
| CVE-2023-4911 | A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launching binaries with SUID permission to execute code with elevated privileges. | HIGH | 7.8v3.1 | 100 | 81.4% | KEV | 2023. 10. 03. | 2023. 11. 21. | — |
| CVE-2023-36584 | Windows Mark of the Web Security Feature Bypass Vulnerability | MEDIUM | 5.4v3.1 | 81 | 3.1% | KEV KISA | 2023. 10. 10. | 2023. 11. 16. | — |
| CVE-2023-1671 | A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows execution of arbitrary code. | CRITICAL | 9.8v3.1 | 100 | 100.0% | KEV | 2023. 04. 04. | 2023. 11. 16. | — |
| CVE-2020-2551 | — | — | — | 82.50 | 93.2% | KEV | — | 2023. 11. 16. | — |
| CVE-2023-36036 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | HIGH | 7.8v3.1 | 100 | 16.7% | KEV KISA | 2023. 11. 14. | 2023. 11. 14. | — |
| CVE-2023-36033 | Windows DWM Core Library Elevation of Privilege Vulnerability | HIGH | 7.8v3.1 | 100 | 12.0% | KEV KISA | 2023. 11. 14. | 2023. 11. 14. | — |
| CVE-2023-36025 | Windows SmartScreen Security Feature Bypass Vulnerability | HIGH | 8.8v3.1 | 100 | 88.2% | KEV KISA | 2023. 11. 14. | 2023. 11. 14. | — |
| CVE-2023-47246 | In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023. | CRITICAL | 9.8v3.1 | 100 | 98.9% | KEV | 2023. 11. 10. | 2023. 11. 13. | ⚠️ |
| CVE-2023-36851 | A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to webauth_operation.php that doesn't require authentication, an attacker is able to upload and download arbitrary files via J-Web, leading to a loss of integrity or confidentiality, which may allow chaining to other vulnerabilities. This issue affects Junip | MEDIUM | 5.3v3.1 | 79.50 | 1.1% | KEV | 2023. 09. 27. | 2023. 11. 13. | — |
| CVE-2023-36847 | A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to installAppPackage.php that doesn't require authentication an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain part of the file system, which may allow chaining to other vulnerabilities. This issue affects | MEDIUM | 5.3v3.1 | 79.50 | 84.7% | KEV | 2023. 08. 17. | 2023. 11. 13. | — |
| CVE-2023-36846 | A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to user.php that doesn't require authentication an attacker is able to upload arbitrary files via J-Web, leading to a loss of integrity for a certain part of the file system, which may allow chaining to other vulnerabilities. This issue affects Juniper Netwo | MEDIUM | 5.3v3.1 | 79.50 | 94.2% | KEV | 2023. 08. 17. | 2023. 11. 13. | — |
| CVE-2023-36845 | A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series and SRX Series allows an unauthenticated, network-based attacker to remotely execute code. Using a crafted request which sets the variable PHPRC an attacker is able to modify the PHP execution environment allowing the injection und execution of code. This issue affects Juniper Networks Junos OS on EX Series and SRX Series: * All versions prior to 20.4R3-S9; * 21.1 versions | CRITICAL | 9.8v3.1 | 100 | 93.5% | KEV | 2023. 08. 17. | 2023. 11. 13. | — |
| CVE-2023-36844 | A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to control certain, important environment variables. Using a crafted request an attacker is able to modify certain PHP environment variables leading to partial loss of integrity, which may allow chaining to other vulnerabilities. This issue affects Juniper Networks Junos OS on EX Series: * All versions prior to 20.4R3-S9; * 21.1 versi | MEDIUM | 5.3v3.1 | 79.50 | 91.4% | KEV | 2023. 08. 17. | 2023. 11. 13. | — |