{
  "query": {
    "kev": "1",
    "page": "38"
  },
  "count": 20,
  "total": 1734,
  "page": 38,
  "limit": 20,
  "updated": {
    "cves": "2026-10-07T16:47:45.059Z",
    "kev": "2026-10-07T16:46:45.142Z",
    "epss": "2026-10-07T12:59:36.323Z",
    "breaches": "2026-10-07T12:47:35.891Z",
    "posts": "2026-10-07T16:47:45.059Z"
  },
  "links": {
    "web": "https://spydr.io/threats?kev=1&page=38",
    "next": "https://spydr.io/threats.json?kev=1&page=39"
  },
  "warnings": [],
  "results": [
    {
      "id": "CVE-2023-35674",
      "url": "https://spydr.io/cve/CVE-2023-35674",
      "published": "2023-09-11T21:15:42.193Z",
      "modified": "2026-06-17T06:04:59.123Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.02615,
      "epss_percentile": 0.84936,
      "exploited": true,
      "kev": {
        "added": "2023-09-13",
        "due": "2023-10-04",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Android"
      ],
      "cwes": [
        "CWE-269"
      ],
      "description": "In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation."
    },
    {
      "id": "CVE-2023-20269",
      "url": "https://spydr.io/cve/CVE-2023-20269",
      "published": "2023-09-06T18:15:08.303Z",
      "modified": "2026-08-11T19:33:44.513Z",
      "score": 9.1,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
      "score_source": "NVD",
      "epss": 0.25453,
      "epss_percentile": 0.97899,
      "exploited": true,
      "kev": {
        "added": "2023-09-13",
        "due": "2023-10-04",
        "action": "Apply mitigations per vendor instructions for group-lock and vpn-simultaneous-logins or discontinue use of the product for unsupported devices.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Cisco"
      ],
      "products": [
        "Cisco Adaptive Security Appliance (ASA) Software",
        "Cisco Firepower Threat Defense Software"
      ],
      "cwes": [
        "CWE-288",
        "CWE-863"
      ],
      "description": "A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a brute force attack in an attempt to identify valid username and password combinations or an authenticated, remote attacker to establish a clientless SSL VPN session with an unauthorized user. This vulnerability is due to improper separation of authentication, authorization, and accounting (AAA) between the remote access VPN feature and the HTTPS management and site-to-site VPN features. An attacker could exploit this vulnerability by specifying a default connection profile/tunnel group while conducting a brute force attack or while establishing a clientless SSL VPN session using valid credentials. A successful exploit could allow the attacker to achieve one or both of the following: Identify valid credentials that could then be used to establish an unauthorized remote access VPN session. Establish a clientless SSL VPN session (only when running Cisco ASA Software Release 9.16 or earlier). Notes: Establishing a client-based remote access VPN tunnel is not possible as these default connection profiles/tunnel groups do not and cannot have an IP address pool configured. This vulnerability does not allow an attacker to bypass authentication. To successfully establish a remote access VPN session, valid credentials are required, including a valid second factor if multi-factor authentication (MFA) is configured. Cisco will release software updates that address this vulnerability. There are workarounds that address this vulnerability."
    },
    {
      "id": "CVE-2023-36802",
      "url": "https://spydr.io/cve/CVE-2023-36802",
      "published": "2023-09-12T17:15:15.487Z",
      "modified": "2026-06-17T06:07:06.203Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.27909,
      "epss_percentile": 0.98053,
      "exploited": true,
      "kev": {
        "added": "2023-09-12",
        "due": "2023-10-03",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows Server 2022",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows 10 Version 22H2"
      ],
      "cwes": [
        "CWE-416"
      ],
      "description": "Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2023-36761",
      "url": "https://spydr.io/cve/CVE-2023-36761",
      "published": "2023-09-12T17:15:11.987Z",
      "modified": "2026-06-17T06:07:01.637Z",
      "score": 6.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.1957,
      "epss_percentile": 0.97316,
      "exploited": true,
      "kev": {
        "added": "2023-09-12",
        "due": "2023-10-03",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Office 2019",
        "Microsoft 365 Apps for Enterprise",
        "Microsoft Office LTSC 2021",
        "Microsoft Word 2016",
        "Microsoft Word 2013 Service Pack 1"
      ],
      "cwes": [
        "CWE-20"
      ],
      "description": "Microsoft Word Information Disclosure Vulnerability"
    },
    {
      "id": "CVE-2023-41064",
      "url": "https://spydr.io/cve/CVE-2023-41064",
      "published": "2023-09-07T18:15:07.727Z",
      "modified": "2026-06-17T06:20:22.573Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.53403,
      "epss_percentile": 0.98962,
      "exploited": true,
      "kev": {
        "added": "2023-09-11",
        "due": "2023-10-02",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple macOS",
        "Apple iOS and iPadOS"
      ],
      "cwes": [
        "CWE-120"
      ],
      "description": "A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 16.6.1 and iPadOS 16.6.1, macOS Monterey 12.6.9, macOS Ventura 13.5.2, iOS 15.7.9 and iPadOS 15.7.9, macOS Big Sur 11.7.10. Processing a maliciously crafted image may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited."
    },
    {
      "id": "CVE-2023-41061",
      "url": "https://spydr.io/cve/CVE-2023-41061",
      "published": "2023-09-07T18:15:07.617Z",
      "modified": "2026-06-17T06:20:21.780Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.04373,
      "epss_percentile": 0.91003,
      "exploited": true,
      "kev": {
        "added": "2023-09-11",
        "due": "2023-10-02",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple iOS and iPadOS",
        "Apple watchOS",
        "apple ipados",
        "apple iphone_os"
      ],
      "cwes": [
        "CWE-20"
      ],
      "description": "A validation issue was addressed with improved logic. This issue is fixed in watchOS 9.6.2, iOS 16.6.1 and iPadOS 16.6.1. A maliciously crafted attachment may result in arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited."
    },
    {
      "id": "CVE-2023-33246",
      "url": "https://spydr.io/cve/CVE-2023-33246",
      "published": "2023-05-24T15:15:09.553Z",
      "modified": "2026-06-17T06:01:24.160Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.96568,
      "epss_percentile": 0.99882,
      "exploited": true,
      "kev": {
        "added": "2023-09-06",
        "due": "2023-09-27",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apache Software Foundation"
      ],
      "products": [
        "Apache Software Foundation Apache RocketMQ"
      ],
      "cwes": [
        "CWE-94"
      ],
      "description": "For RocketMQ versions 5.1.0 and below, under certain conditions, there is a risk of remote command execution. Several components of RocketMQ, including NameServer, Broker, and Controller, are leaked on the extranet and lack permission verification, an attacker can exploit this vulnerability by using the update configuration function to execute commands as the system users that RocketMQ is running as. Additionally, an attacker can achieve the same effect by forging the RocketMQ protocol content. To prevent these attacks, users are recommended to upgrade to version 5.1.1 or above for using RocketMQ 5.x or 4.9.6 or above for using RocketMQ 4.x ."
    },
    {
      "id": "CVE-2023-38831",
      "url": "https://spydr.io/cve/CVE-2023-38831",
      "published": "2023-08-23T17:15:43.863Z",
      "modified": "2026-08-05T05:16:38.580Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99815,
      "epss_percentile": 0.99959,
      "exploited": true,
      "kev": {
        "added": "2023-08-24",
        "due": "2023-09-14",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "rarlab"
      ],
      "products": [
        "rarlab winrar"
      ],
      "cwes": [
        "CWE-345",
        "CWE-351"
      ],
      "description": "RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a ZIP archive. The issue occurs because a ZIP archive may include a benign file (such as an ordinary .JPG file) and also a folder that has the same name as the benign file, and the contents of the folder (which may include executable content) are processed during an attempt to access only the benign file. This was exploited in the wild in April through October 2023."
    },
    {
      "id": "CVE-2023-32315",
      "url": "https://spydr.io/cve/CVE-2023-32315",
      "published": "2023-05-26T23:15:16.643Z",
      "modified": "2026-06-17T05:58:33.247Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.99999,
      "epss_percentile": 0.99993,
      "exploited": true,
      "kev": {
        "added": "2023-08-24",
        "due": "2023-09-14",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "igniterealtime"
      ],
      "products": [
        "igniterealtime Openfire"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "Openfire is an XMPP server licensed under the Open Source Apache License. Openfire's administrative console, a web-based application, was found to be vulnerable to a path traversal attack via the setup environment. This permitted an unauthenticated user to use the unauthenticated Openfire Setup Environment in an already configured Openfire environment to access restricted pages in the Openfire Admin Console reserved for administrative users. This vulnerability affects all versions of Openfire that have been released since April 2015, starting with version 3.10.0. The problem has been patched in Openfire release 4.7.5 and 4.6.8, and further improvements will be included in the yet-to-be released first version on the 4.8 branch (which is expected to be version 4.8.0). Users are advised to upgrade. If an Openfire upgrade isn’t available for a specific release, or isn’t quickly actionable, users may see the linked github advisory (GHSA-gw42-f939-fhvm) for mitigation advice."
    },
    {
      "id": "CVE-2023-38035",
      "url": "https://spydr.io/cve/CVE-2023-38035",
      "published": "2023-08-21T17:15:47.457Z",
      "modified": "2026-06-17T06:09:16.930Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.9995,
      "epss_percentile": 0.99974,
      "exploited": true,
      "kev": {
        "added": "2023-08-22",
        "due": "2023-09-12",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Ivanti"
      ],
      "products": [
        "Ivanti MobileIron Sentry"
      ],
      "cwes": [
        "CWE-863"
      ],
      "description": "A security vulnerability in MICS Admin Portal in Ivanti MobileIron Sentry versions 9.18.0 and below, which may allow an attacker to bypass authentication controls on the administrative interface due to an insufficiently restrictive Apache HTTPD configuration."
    },
    {
      "id": "CVE-2023-27532",
      "url": "https://spydr.io/cve/CVE-2023-27532",
      "published": "2023-03-10T22:15:10.557Z",
      "modified": "2026-06-17T05:45:24.980Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.81326,
      "epss_percentile": 0.9963,
      "exploited": true,
      "kev": {
        "added": "2023-08-22",
        "due": "2023-09-12",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "veeam"
      ],
      "products": [
        "Veeam Backup & Replication"
      ],
      "cwes": [
        "CWE-306"
      ],
      "description": "Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database to be obtained. This may lead to gaining access to the backup infrastructure hosts."
    },
    {
      "id": "CVE-2023-26359",
      "url": "https://spydr.io/cve/CVE-2023-26359",
      "published": "2023-03-23T20:15:15.167Z",
      "modified": "2026-06-17T05:43:10.197Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "adobe.com",
      "epss": 0.16988,
      "epss_percentile": 0.96993,
      "exploited": true,
      "kev": {
        "added": "2023-08-21",
        "due": "2023-09-11",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Adobe"
      ],
      "products": [
        "Adobe ColdFusion"
      ],
      "cwes": [
        "CWE-502"
      ],
      "description": "Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction."
    },
    {
      "id": "CVE-2023-24489",
      "url": "https://spydr.io/cve/CVE-2023-24489",
      "published": "2023-07-10T22:15:09.197Z",
      "modified": "2026-06-17T05:39:22.423Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.97343,
      "epss_percentile": 0.99898,
      "exploited": true,
      "kev": {
        "added": "2023-08-16",
        "due": "2023-09-06",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Citrix"
      ],
      "products": [
        "Citrix ShareFile Storage Zones Controller"
      ],
      "cwes": [
        "CWE-284"
      ],
      "description": "A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, could allow an unauthenticated attacker to remotely compromise the customer-managed ShareFile storage zones controller."
    },
    {
      "id": "CVE-2023-38180",
      "url": "https://spydr.io/cve/CVE-2023-38180",
      "published": "2023-08-08T19:15:10.367Z",
      "modified": "2026-08-10T16:18:37.320Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
      "score_source": "microsoft.com",
      "epss": 0.14016,
      "epss_percentile": 0.96463,
      "exploited": true,
      "kev": {
        "added": "2023-08-09",
        "due": "2023-08-30",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft .NET 6.0",
        "Microsoft .NET 7.0",
        "Microsoft ASP.NET Core 2.1",
        "Microsoft Visual Studio 2022 version 17.2",
        "Microsoft Visual Studio 2022 version 17.4",
        "Microsoft Visual Studio 2022 version 17.6"
      ],
      "cwes": [
        "CWE-400"
      ],
      "description": ".NET and Visual Studio Denial of Service Vulnerability"
    },
    {
      "id": "CVE-2017-18368",
      "url": "https://spydr.io/cve/CVE-2017-18368",
      "published": "2019-05-02T17:29:00.287Z",
      "modified": "2026-06-17T01:12:42.023Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.94425,
      "epss_percentile": 0.99851,
      "exploited": true,
      "kev": {
        "added": "2023-08-07",
        "due": "2023-08-28",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "billion",
        "zyxel"
      ],
      "products": [
        "billion 5200w-t firmware",
        "zyxel p660hn-t1a v2 firmware",
        "zyxel p660hn-t1a v1 firmware"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is accessible by an unauthenticated user. The vulnerability is in the ViewLog.asp page and can be exploited through the remote_host parameter."
    },
    {
      "id": "CVE-2023-35081",
      "url": "https://spydr.io/cve/CVE-2023-35081",
      "published": "2023-08-03T18:15:11.303Z",
      "modified": "2026-06-17T06:04:23.637Z",
      "score": 7.2,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.63577,
      "epss_percentile": 0.99195,
      "exploited": true,
      "kev": {
        "added": "2023-07-31",
        "due": "2023-08-21",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Ivanti"
      ],
      "products": [
        "Ivanti EPMM"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "A path traversal vulnerability in Ivanti EPMM versions (11.10.x < 11.10.0.3, 11.9.x < 11.9.1.2 and 11.8.x < 11.8.1.2) allows an authenticated administrator to write arbitrary files onto the appliance."
    },
    {
      "id": "CVE-2023-37580",
      "url": "https://spydr.io/cve/CVE-2023-37580",
      "published": "2023-07-31T16:15:10.327Z",
      "modified": "2026-06-17T06:08:30.210Z",
      "score": 6.1,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",
      "score_source": "NVD",
      "epss": 0.49083,
      "epss_percentile": 0.98855,
      "exploited": true,
      "kev": {
        "added": "2023-07-27",
        "due": "2023-08-17",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "synacor"
      ],
      "products": [
        "synacor zimbra collaboration suite"
      ],
      "cwes": [
        "CWE-79"
      ],
      "description": "Zimbra Collaboration (ZCS) 8 before 8.8.15 Patch 41 allows XSS in the Zimbra Classic Web Client."
    },
    {
      "id": "CVE-2023-38606",
      "url": "https://spydr.io/cve/CVE-2023-38606",
      "published": "2023-07-27T00:15:16.173Z",
      "modified": "2026-06-17T06:10:49.160Z",
      "score": 5.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N",
      "score_source": "NVD",
      "epss": 0.02899,
      "epss_percentile": 0.86503,
      "exploited": true,
      "kev": {
        "added": "2023-07-26",
        "due": "2023-08-16",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple tvOS",
        "Apple iOS and iPadOS",
        "Apple macOS",
        "Apple watchOS"
      ],
      "cwes": [],
      "description": "This issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS 16.6 and iPadOS 16.6, tvOS 16.6, macOS Big Sur 11.7.9, macOS Ventura 13.5, watchOS 9.6. An app may be able to modify sensitive kernel state. Apple is aware of a report that this issue may have been actively exploited against versions of iOS released before iOS 15.7.1."
    },
    {
      "id": "CVE-2023-35078",
      "url": "https://spydr.io/cve/CVE-2023-35078",
      "published": "2023-07-25T07:15:10.897Z",
      "modified": "2026-08-05T05:16:38.037Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99999,
      "epss_percentile": 0.99998,
      "exploited": true,
      "kev": {
        "added": "2023-07-25",
        "due": "2023-08-15",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Ivanti"
      ],
      "products": [
        "Ivanti Endpoint Manager Mobile"
      ],
      "cwes": [
        "CWE-287"
      ],
      "description": "An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication."
    },
    {
      "id": "CVE-2023-38205",
      "url": "https://spydr.io/cve/CVE-2023-38205",
      "published": "2023-09-14T08:15:07.767Z",
      "modified": "2026-06-17T06:09:39.633Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "adobe.com",
      "epss": 0.99764,
      "epss_percentile": 0.99954,
      "exploited": true,
      "kev": {
        "added": "2023-07-20",
        "due": "2023-08-10",
        "action": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Adobe"
      ],
      "products": [
        "Adobe ColdFusion"
      ],
      "cwes": [
        "CWE-284"
      ],
      "description": "Adobe ColdFusion versions 2018u18 (and earlier), 2021u8 (and earlier) and 2023u2 (and earlier) are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access the administration CFM and CFC endpoints. Exploitation of this issue does not require user interaction."
    }
  ],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
