{
  "query": {
    "kev": "1",
    "page": "41"
  },
  "count": 20,
  "total": 1734,
  "page": 41,
  "limit": 20,
  "updated": {
    "cves": "2026-10-07T18:47:59.881Z",
    "kev": "2026-10-07T19:49:28.334Z",
    "epss": "2026-10-07T18:59:57.359Z",
    "breaches": "2026-10-07T18:47:59.596Z",
    "posts": "2026-10-07T19:48:28.464Z"
  },
  "links": {
    "web": "https://spydr.io/threats?kev=1&page=41",
    "next": "https://spydr.io/threats.json?kev=1&page=42"
  },
  "coverage": {
    "cves_published_since": "2026-06-09",
    "days": 120,
    "also": "every CVE in CISA KEV"
  },
  "unscored_hidden": 0,
  "warnings": [],
  "results": [
    {
      "id": "CVE-2023-21492",
      "url": "https://spydr.io/cve/CVE-2023-21492",
      "published": "2023-05-04T21:15:10.070Z",
      "modified": "2026-06-17T05:32:48.390Z",
      "score": 4.4,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.02554,
      "epss_percentile": 0.84578,
      "exploited": true,
      "kev": {
        "added": "2023-05-19",
        "due": "2023-06-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Samsung Mobile"
      ],
      "products": [
        "Samsung Mobile Devices"
      ],
      "cwes": [
        "CWE-532"
      ],
      "description": "Kernel pointers are printed in the log file prior to SMR May-2023 Release 1 allows a privileged local attacker to bypass ASLR."
    },
    {
      "id": "CVE-2016-6415",
      "url": "https://spydr.io/cve/CVE-2016-6415",
      "published": "2016-09-19T01:59:06.167Z",
      "modified": "2026-06-17T00:50:59.430Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.87687,
      "epss_percentile": 0.99758,
      "exploited": true,
      "kev": {
        "added": "2023-05-19",
        "due": "2023-06-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "cisco"
      ],
      "products": [
        "cisco ios",
        "cisco ios xe",
        "cisco ios xr"
      ],
      "cwes": [
        "CWE-200"
      ],
      "description": "The server IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.6, IOS XE through 3.18S, IOS XR 4.3.x and 5.0.x through 5.2.x, and PIX before 7.0 allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request, aka Bug IDs CSCvb29204 and CSCvb36055 or BENIGNCERTAIN."
    },
    {
      "id": "CVE-2004-1464",
      "url": "https://spydr.io/cve/CVE-2004-1464",
      "published": "2004-12-31T05:00:00.000Z",
      "modified": "2026-06-16T22:07:45.380Z",
      "score": 5.9,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
      "score_source": "NVD",
      "epss": 0.0484,
      "epss_percentile": 0.91772,
      "exploited": true,
      "kev": {
        "added": "2023-05-19",
        "due": "2023-06-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "cisco"
      ],
      "products": [
        "cisco ios"
      ],
      "cwes": [
        "CWE-400"
      ],
      "description": "Cisco IOS 12.2(15) and earlier allows remote attackers to cause a denial of service (refused VTY (virtual terminal) connections), via a crafted TCP connection to the Telnet or reverse Telnet port."
    },
    {
      "id": "CVE-2023-25717",
      "url": "https://spydr.io/cve/CVE-2023-25717",
      "published": "2023-02-13T20:15:10.973Z",
      "modified": "2026-06-17T05:41:48.213Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.98069,
      "epss_percentile": 0.99911,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "Apply updates per vendor instructions or disconnect product if it is end-of-life.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "ruckuswireless",
        "commscope"
      ],
      "products": [
        "ruckuswireless ruckus wireless admin",
        "ruckuswireless smartzone ap",
        "commscope ruckus smartzone firmware"
      ],
      "cwes": [
        "CWE-94"
      ],
      "description": "Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring."
    },
    {
      "id": "CVE-2021-3560",
      "url": "https://spydr.io/cve/CVE-2021-3560",
      "published": "2022-02-16T19:15:08.450Z",
      "modified": "2026-06-17T04:05:20.767Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.23708,
      "epss_percentile": 0.97767,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "polkit project",
        "debian",
        "canonical",
        "redhat"
      ],
      "products": [
        "polkit"
      ],
      "cwes": [
        "CWE-863",
        "CWE-754"
      ],
      "description": "It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability."
    },
    {
      "id": "CVE-2016-8735",
      "url": "https://spydr.io/cve/CVE-2016-8735",
      "published": "2017-04-06T21:59:00.243Z",
      "modified": "2026-08-25T16:28:27.310Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.90338,
      "epss_percentile": 0.99798,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apache Software Foundation"
      ],
      "products": [
        "Apache Software Foundation Apache Tomcat"
      ],
      "cwes": [],
      "description": "Remote code execution is possible with Apache Tomcat before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 if JmxRemoteLifecycleListener is used and an attacker can reach JMX ports. The issue exists because this listener wasn't updated for consistency with the CVE-2016-3427 Oracle patch that affected credential types."
    },
    {
      "id": "CVE-2016-3427",
      "url": "https://spydr.io/cve/CVE-2016-3427",
      "published": "2016-04-21T11:00:21.667Z",
      "modified": "2026-06-17T00:45:40.273Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.92334,
      "epss_percentile": 0.99822,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "oracle",
        "canonical",
        "debian",
        "netapp",
        "apache",
        "redhat",
        "suse",
        "opensuse"
      ],
      "products": [
        "oracle jdk",
        "oracle jre",
        "oracle jrockit",
        "oracle linux",
        "canonical ubuntu linux",
        "debian linux",
        "netapp e-series santricity management plug-ins",
        "netapp e-series santricity storage manager",
        "netapp e-series santricity web services",
        "netapp oncommand balance",
        "netapp oncommand cloud manager",
        "netapp oncommand insight",
        "netapp oncommand performance manager",
        "netapp oncommand report",
        "netapp oncommand shift",
        "netapp oncommand unified manager",
        "netapp oncommand workflow automation",
        "netapp storagegrid",
        "netapp vasa provider for clustered data ontap",
        "netapp virtual storage console"
      ],
      "cwes": [
        "CWE-284"
      ],
      "description": "Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX."
    },
    {
      "id": "CVE-2015-5317",
      "url": "https://spydr.io/cve/CVE-2015-5317",
      "published": "2015-11-25T20:59:07.680Z",
      "modified": "2026-06-17T00:28:55.150Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "CISA ADP",
      "epss": 0.23003,
      "epss_percentile": 0.97702,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "jenkins",
        "redhat"
      ],
      "products": [
        "jenkins",
        "redhat openshift"
      ],
      "cwes": [
        "CWE-200"
      ],
      "description": "The Fingerprints pages in Jenkins before 1.638 and LTS before 1.625.2 might allow remote attackers to obtain sensitive job and build name information via a direct request."
    },
    {
      "id": "CVE-2014-0196",
      "url": "https://spydr.io/cve/CVE-2014-0196",
      "published": "2014-05-07T10:55:04.337Z",
      "modified": "2026-06-17T00:02:29.250Z",
      "score": 5.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
      "score_source": "CISA ADP",
      "epss": 0.22475,
      "epss_percentile": 0.97653,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "linux",
        "debian",
        "redhat",
        "suse",
        "oracle",
        "canonical",
        "f5"
      ],
      "products": [
        "linux kernel",
        "debian linux",
        "redhat enterprise linux",
        "redhat enterprise linux eus",
        "redhat enterprise linux server eus",
        "suse linux enterprise desktop",
        "suse linux enterprise high availability extension",
        "suse linux enterprise server",
        "oracle linux",
        "canonical ubuntu linux",
        "f5 big-ip access policy manager",
        "f5 big-ip advanced firewall manager",
        "f5 big-ip analytics",
        "f5 big-ip application acceleration manager",
        "f5 big-ip application security manager",
        "f5 big-ip edge gateway",
        "f5 big-ip global traffic manager",
        "f5 big-ip link controller",
        "f5 big-ip local traffic manager",
        "f5 big-ip policy enforcement manager"
      ],
      "cwes": [
        "CWE-362"
      ],
      "description": "The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the \"LECHO & !OPOST\" case, which allows local users to cause a denial of service (memory corruption and system crash) or gain privileges by triggering a race condition involving read and write operations with long strings."
    },
    {
      "id": "CVE-2010-3904",
      "url": "https://spydr.io/cve/CVE-2010-3904",
      "published": "2010-12-06T20:13:00.513Z",
      "modified": "2026-06-16T23:23:47.610Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.15737,
      "epss_percentile": 0.96782,
      "exploited": true,
      "kev": {
        "added": "2023-05-12",
        "due": "2023-06-02",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "linux",
        "opensuse",
        "suse",
        "canonical",
        "redhat",
        "vmware"
      ],
      "products": [
        "linux kernel",
        "opensuse",
        "suse linux enterprise desktop",
        "suse linux enterprise real time extension",
        "suse linux enterprise server",
        "canonical ubuntu linux",
        "redhat enterprise linux",
        "vmware esxi"
      ],
      "cwes": [
        "CWE-1284"
      ],
      "description": "The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privileges via crafted use of the sendmsg and recvmsg system calls."
    },
    {
      "id": "CVE-2023-29336",
      "url": "https://spydr.io/cve/CVE-2023-29336",
      "published": "2023-05-09T18:15:13.840Z",
      "modified": "2026-06-17T05:49:49.897Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.41185,
      "epss_percentile": 0.98634,
      "exploited": true,
      "kev": {
        "added": "2023-05-09",
        "due": "2023-05-30",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2016 (Server Core installation)",
        "Microsoft Windows Server 2008 Service Pack 2",
        "Microsoft Windows Server 2008 Service Pack 2 (Server Core installation)",
        "Microsoft Windows Server 2008 R2 Service Pack 1",
        "Microsoft Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
        "Microsoft Windows Server 2012",
        "Microsoft Windows Server 2012 (Server Core installation)",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows Server 2012 R2 (Server Core installation)"
      ],
      "cwes": [
        "CWE-416"
      ],
      "description": "Win32k Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2023-1389",
      "url": "https://spydr.io/cve/CVE-2023-1389",
      "published": "2023-03-15T23:15:09.403Z",
      "modified": "2026-06-17T05:27:50.687Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99999,
      "epss_percentile": 0.99992,
      "exploited": true,
      "kev": {
        "added": "2023-05-01",
        "due": "2023-05-22",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "tp-link"
      ],
      "products": [
        "TP-Link Archer AX21 (AX1800)"
      ],
      "cwes": [
        "CWE-77"
      ],
      "description": "TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command injection vulnerability in the country form of the /cgi-bin/luci;stok=/locale endpoint on the web management interface. Specifically, the country parameter of the write operation was not sanitized before being used in a call to popen(), allowing an unauthenticated attacker to inject commands, which would be run as root, with a simple POST request."
    },
    {
      "id": "CVE-2023-21839",
      "url": "https://spydr.io/cve/CVE-2023-21839",
      "published": "2023-01-18T00:15:13.450Z",
      "modified": "2026-06-17T05:34:09.560Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "oracle.com",
      "epss": 0.999,
      "epss_percentile": 0.99965,
      "exploited": true,
      "kev": {
        "added": "2023-05-01",
        "due": "2023-05-22",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Oracle Corporation"
      ],
      "products": [
        "Oracle Corporation WebLogic Server"
      ],
      "cwes": [
        "CWE-502",
        "CWE-306"
      ],
      "description": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)."
    },
    {
      "id": "CVE-2021-45046",
      "url": "https://spydr.io/cve/CVE-2021-45046",
      "published": "2021-12-14T19:15:07.733Z",
      "modified": "2026-06-17T04:13:05.570Z",
      "score": 9,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99977,
      "epss_percentile": 0.9998,
      "exploited": true,
      "kev": {
        "added": "2023-05-01",
        "due": "2023-05-22",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apache Software Foundation"
      ],
      "products": [
        "Apache Software Foundation Apache Log4j"
      ],
      "cwes": [
        "CWE-917"
      ],
      "description": "It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout with either a Context Lookup (for example, $${ctx:loginId}) or a Thread Context Map pattern (%X, %mdc, or %MDC) to craft malicious input data using a JNDI Lookup pattern resulting in an information leak and remote code execution in some environments and local code execution in all environments. Log4j 2.16.0 (Java 8) and 2.12.2 (Java 7) fix this issue by removing support for message lookup patterns and disabling JNDI functionality by default."
    },
    {
      "id": "CVE-2023-27350",
      "url": "https://spydr.io/cve/CVE-2023-27350",
      "published": "2023-04-20T16:15:07.653Z",
      "modified": "2026-06-17T05:44:50.950Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99999,
      "epss_percentile": 0.99995,
      "exploited": true,
      "kev": {
        "added": "2023-04-21",
        "due": "2023-05-12",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "PaperCut"
      ],
      "products": [
        "PaperCut NG"
      ],
      "cwes": [
        "CWE-284"
      ],
      "description": "This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914). Authentication is not required to exploit this vulnerability. The specific flaw exists within the SetupCompleted class. The issue results from improper access control. An attacker can leverage this vulnerability to bypass authentication and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-18987."
    },
    {
      "id": "CVE-2023-2136",
      "url": "https://spydr.io/cve/CVE-2023-2136",
      "published": "2023-04-19T04:15:31.607Z",
      "modified": "2026-06-17T05:51:32.013Z",
      "score": 9.6,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.05739,
      "epss_percentile": 0.92857,
      "exploited": true,
      "kev": {
        "added": "2023-04-21",
        "due": "2023-05-12",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-190"
      ],
      "description": "Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)"
    },
    {
      "id": "CVE-2023-28432",
      "url": "https://spydr.io/cve/CVE-2023-28432",
      "published": "2023-03-22T21:15:18.257Z",
      "modified": "2026-06-17T05:47:42.203Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.83957,
      "epss_percentile": 0.99689,
      "exploited": true,
      "kev": {
        "added": "2023-04-21",
        "due": "2023-05-12",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "minio"
      ],
      "products": [
        "minio"
      ],
      "cwes": [
        "CWE-200"
      ],
      "description": "Minio is a Multi-Cloud Object Storage framework. In a cluster deployment starting with RELEASE.2019-12-17T23-16-33Z and prior to RELEASE.2023-03-20T20-16-18Z, MinIO returns all environment variables, including `MINIO_SECRET_KEY` and `MINIO_ROOT_PASSWORD`, resulting in information disclosure. All users of distributed deployment are impacted. All users are advised to upgrade to RELEASE.2023-03-20T20-16-18Z."
    },
    {
      "id": "CVE-2017-6742",
      "url": "https://spydr.io/cve/CVE-2017-6742",
      "published": "2017-07-17T21:29:00.447Z",
      "modified": "2026-06-17T01:22:56.160Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.21424,
      "epss_percentile": 0.97556,
      "exploited": true,
      "kev": {
        "added": "2023-04-19",
        "due": "2023-05-10",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Cisco",
        "IntelliShield"
      ],
      "products": [
        "Cisco IOS XE Software",
        "IntelliShield Universal Product"
      ],
      "cwes": [
        "CWE-119"
      ],
      "description": "A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the affected system or to remotely execute code. An attacker could exploit this vulnerability by sending a crafted SNMP packet to the affected device.&nbsp; The vulnerability is due to a buffer overflow in the affected code area. The vulnerability affects all versions of SNMP (versions 1, 2c, and 3). The attacker must know the SNMP read only community string (SNMP version 2c or earlier) or the user credentials (SNMPv3). An exploit could allow the attacker to execute arbitrary code and obtain full control of the system or to cause a reload of the affected system. Only traffic directed to the affected system can be used to exploit this vulnerability."
    },
    {
      "id": "CVE-2023-2033",
      "url": "https://spydr.io/cve/CVE-2023-2033",
      "published": "2023-04-14T19:15:09.453Z",
      "modified": "2026-06-17T05:51:14.400Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.40798,
      "epss_percentile": 0.98621,
      "exploited": true,
      "kev": {
        "added": "2023-04-17",
        "due": "2023-05-08",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-843"
      ],
      "description": "Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)"
    },
    {
      "id": "CVE-2019-8526",
      "url": "https://spydr.io/cve/CVE-2019-8526",
      "published": "2019-12-18T18:15:24.223Z",
      "modified": "2026-06-17T02:42:06.077Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.00701,
      "epss_percentile": 0.51736,
      "exploited": true,
      "kev": {
        "added": "2023-04-17",
        "due": "2023-05-08",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple macOS"
      ],
      "cwes": [
        "CWE-416"
      ],
      "description": "A use after free issue was addressed with improved memory management. This issue is fixed in macOS Mojave 10.14.4. An application may be able to gain elevated privileges."
    }
  ],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
