{
  "query": {
    "kev": "1",
    "page": "45"
  },
  "count": 20,
  "total": 1734,
  "page": 45,
  "limit": 20,
  "updated": {
    "cves": "2026-10-07T22:48:36.014Z",
    "kev": "2026-10-07T23:49:38.149Z",
    "epss": "2026-10-07T18:59:57.359Z",
    "breaches": "2026-10-07T18:47:59.596Z",
    "posts": "2026-10-07T23:48:38.351Z"
  },
  "links": {
    "web": "https://spydr.io/threats?kev=1&page=45",
    "next": "https://spydr.io/threats.json?kev=1&page=46"
  },
  "coverage": {
    "cves_published_since": "2026-06-09",
    "days": 120,
    "also": "every CVE in CISA KEV"
  },
  "unscored_hidden": 0,
  "warnings": [],
  "results": [
    {
      "id": "CVE-2022-41128",
      "url": "https://spydr.io/cve/CVE-2022-41128",
      "published": "2022-11-09T22:15:25.453Z",
      "modified": "2026-08-10T16:18:24.890Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.24623,
      "epss_percentile": 0.97835,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-12-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 10 Version 22H2",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows 7",
        "Microsoft Windows 7 Service Pack 1",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2008 R2 Service Pack 1",
        "Microsoft Windows Server 2012",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2022"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "Windows Scripting Languages Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2022-41125",
      "url": "https://spydr.io/cve/CVE-2022-41125",
      "published": "2022-11-09T22:15:25.307Z",
      "modified": "2026-08-10T16:18:24.687Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.03046,
      "epss_percentile": 0.87139,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-12-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 10 Version 22H2",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2012",
        "Microsoft Windows Server 2012 (Server Core installation)",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows Server 2012 R2 (Server Core installation)",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2016 (Server Core installation)",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows Server 2022"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "Windows CNG Key Isolation Service Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2022-41091",
      "url": "https://spydr.io/cve/CVE-2022-41091",
      "published": "2022-11-09T22:15:22.093Z",
      "modified": "2026-08-10T16:18:20.797Z",
      "score": 5.4,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L",
      "score_source": "microsoft.com",
      "epss": 0.01806,
      "epss_percentile": 0.77902,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-12-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 10 Version 22H2",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2016 (Server Core installation)",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows Server 2022"
      ],
      "cwes": [
        "CWE-863"
      ],
      "description": "Windows Mark of the Web Security Feature Bypass Vulnerability"
    },
    {
      "id": "CVE-2022-41073",
      "url": "https://spydr.io/cve/CVE-2022-41073",
      "published": "2022-11-09T22:15:21.207Z",
      "modified": "2026-08-10T16:18:19.340Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.02278,
      "epss_percentile": 0.82597,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-12-09",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 10 Version 22H2",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows 7",
        "Microsoft Windows 7 Service Pack 1",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2008 Service Pack 2",
        "Microsoft Windows Server 2008 R2 Service Pack 1",
        "Microsoft Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
        "Microsoft Windows Server 2008 Service Pack 2 (Server Core installation)",
        "Microsoft Windows Server 2012",
        "Microsoft Windows Server 2012 (Server Core installation)",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows Server 2012 R2 (Server Core installation)"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "Windows Print Spooler Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2021-25370",
      "url": "https://spydr.io/cve/CVE-2021-25370",
      "published": "2021-03-26T19:15:12.147Z",
      "modified": "2026-06-17T03:41:57.440Z",
      "score": 4.4,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
      "score_source": "NVD",
      "epss": 0.0089,
      "epss_percentile": 0.58104,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-11-29",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Samsung Mobile"
      ],
      "products": [
        "Samsung Mobile Devices"
      ],
      "cwes": [
        "CWE-416",
        "CWE-703"
      ],
      "description": "An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic."
    },
    {
      "id": "CVE-2021-25369",
      "url": "https://spydr.io/cve/CVE-2021-25369",
      "published": "2021-03-26T19:15:12.040Z",
      "modified": "2026-06-17T03:41:57.293Z",
      "score": 5.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.01079,
      "epss_percentile": 0.6401,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-11-29",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Samsung Mobile"
      ],
      "products": [
        "Samsung Mobile Devices"
      ],
      "cwes": [
        "CWE-200"
      ],
      "description": "An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace."
    },
    {
      "id": "CVE-2021-25337",
      "url": "https://spydr.io/cve/CVE-2021-25337",
      "published": "2021-03-04T21:15:13.667Z",
      "modified": "2026-06-17T03:41:53.733Z",
      "score": 7.1,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
      "score_source": "NVD",
      "epss": 0.02807,
      "epss_percentile": 0.86077,
      "exploited": true,
      "kev": {
        "added": "2022-11-08",
        "due": "2022-11-29",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Samsung Mobile"
      ],
      "products": [
        "Samsung Mobile Devices"
      ],
      "cwes": [
        "CWE-269"
      ],
      "description": "Improper access control in clipboard service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows untrusted applications to read or write certain local files."
    },
    {
      "id": "CVE-2022-3723",
      "url": "https://spydr.io/cve/CVE-2022-3723",
      "published": "2022-11-01T23:15:19.710Z",
      "modified": "2026-06-17T05:00:10.620Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.07921,
      "epss_percentile": 0.94584,
      "exploited": true,
      "kev": {
        "added": "2022-10-28",
        "due": "2022-11-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-843"
      ],
      "description": "Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)"
    },
    {
      "id": "CVE-2022-42827",
      "url": "https://spydr.io/cve/CVE-2022-42827",
      "published": "2022-11-01T20:15:24.333Z",
      "modified": "2026-06-17T05:05:25.003Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.01057,
      "epss_percentile": 0.63388,
      "exploited": true,
      "kev": {
        "added": "2022-10-25",
        "due": "2022-11-15",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple iOS and iPadOS"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 16.1 and iPadOS 16. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.."
    },
    {
      "id": "CVE-2020-3433",
      "url": "https://spydr.io/cve/CVE-2020-3433",
      "published": "2020-08-17T18:15:12.947Z",
      "modified": "2026-08-12T05:17:30.810Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.10049,
      "epss_percentile": 0.95512,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Cisco"
      ],
      "products": [
        "Cisco AnyConnect Secure Mobility Client"
      ],
      "cwes": [
        "CWE-427"
      ],
      "description": "A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. The vulnerability is due to insufficient validation of resources that are loaded by the application at run time. An attacker could exploit this vulnerability by sending a crafted IPC message to the AnyConnect process. A successful exploit could allow the attacker to execute arbitrary code on the affected machine with SYSTEM privileges. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system."
    },
    {
      "id": "CVE-2020-3153",
      "url": "https://spydr.io/cve/CVE-2020-3153",
      "published": "2020-02-19T20:15:15.113Z",
      "modified": "2026-08-12T05:17:29.713Z",
      "score": 6.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N",
      "score_source": "NVD",
      "epss": 0.28307,
      "epss_percentile": 0.98077,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Cisco"
      ],
      "products": [
        "Cisco AnyConnect Secure Mobility Client"
      ],
      "cwes": [
        "CWE-427"
      ],
      "description": "A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy user-supplied files to system level directories with system level privileges. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit this vulnerability by creating a malicious file and copying the file to a system directory. An exploit could allow the attacker to copy malicious files to arbitrary locations with system level privileges. This could include DLL pre-loading, DLL hijacking, and other related attacks. To exploit this vulnerability, the attacker needs valid credentials on the Windows system."
    },
    {
      "id": "CVE-2018-19323",
      "url": "https://spydr.io/cve/CVE-2018-19323",
      "published": "2018-12-21T23:29:00.730Z",
      "modified": "2026-10-01T21:17:13.657Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.08364,
      "epss_percentile": 0.94831,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "gigabyte"
      ],
      "products": [
        "gigabyte aorus graphics engine",
        "gigabyte app center",
        "gigabyte oc guru ii",
        "gigabyte xtreme gaming engine"
      ],
      "cwes": [],
      "description": "The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and write Machine Specific Registers (MSRs)."
    },
    {
      "id": "CVE-2018-19322",
      "url": "https://spydr.io/cve/CVE-2018-19322",
      "published": "2018-12-21T23:29:00.650Z",
      "modified": "2026-08-13T05:17:16.757Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.01816,
      "epss_percentile": 0.78026,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "gigabyte"
      ],
      "products": [
        "gigabyte aorus graphics engine",
        "gigabyte app center",
        "gigabyte oc guru ii",
        "gigabyte xtreme gaming engine"
      ],
      "cwes": [
        "CWE-749"
      ],
      "description": "The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to read/write data from/to IO ports. This could be leveraged in a number of ways to ultimately run code with elevated privileges."
    },
    {
      "id": "CVE-2018-19321",
      "url": "https://spydr.io/cve/CVE-2018-19321",
      "published": "2018-12-21T23:29:00.573Z",
      "modified": "2026-08-13T05:17:16.560Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.03701,
      "epss_percentile": 0.89436,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "gigabyte"
      ],
      "products": [
        "gigabyte aorus graphics engine",
        "gigabyte app center",
        "gigabyte oc guru ii",
        "gigabyte xtreme gaming engine"
      ],
      "cwes": [],
      "description": "The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to read and write arbitrary physical memory. This could be leveraged by a local attacker to elevate privileges."
    },
    {
      "id": "CVE-2018-19320",
      "url": "https://spydr.io/cve/CVE-2018-19320",
      "published": "2018-12-21T23:29:00.493Z",
      "modified": "2026-08-13T05:17:16.323Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.03597,
      "epss_percentile": 0.89135,
      "exploited": true,
      "kev": {
        "added": "2022-10-24",
        "due": "2022-11-14",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "gigabyte"
      ],
      "products": [
        "gigabyte aorus graphics engine",
        "gigabyte app center",
        "gigabyte oc guru ii",
        "gigabyte xtreme gaming engine"
      ],
      "cwes": [],
      "description": "The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes ring0 memcpy-like functionality that could allow a local attacker to take complete control of the affected system."
    },
    {
      "id": "CVE-2022-41352",
      "url": "https://spydr.io/cve/CVE-2022-41352",
      "published": "2022-09-26T02:15:10.733Z",
      "modified": "2026-09-10T04:17:37.410Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.95478,
      "epss_percentile": 0.9987,
      "exploited": true,
      "kev": {
        "added": "2022-10-20",
        "due": "2022-11-10",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "synacor"
      ],
      "products": [
        "synacor zimbra collaboration suite"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to /opt/zimbra/jetty/webapps/zimbra/public) that can lead to incorrect access to any other user accounts. Zimbra recommends pax over cpio. Also, pax is in the prerequisites of Zimbra on Ubuntu; however, pax is no longer part of a default Red Hat installation after RHEL 6 (or CentOS 6). Once pax is installed, amavis automatically prefers it over cpio."
    },
    {
      "id": "CVE-2021-3493",
      "url": "https://spydr.io/cve/CVE-2021-3493",
      "published": "2021-04-17T05:15:14.630Z",
      "modified": "2026-06-17T04:05:12.177Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.49166,
      "epss_percentile": 0.98858,
      "exploited": true,
      "kev": {
        "added": "2022-10-20",
        "due": "2022-11-10",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Ubuntu"
      ],
      "products": [
        "Ubuntu linux kernel"
      ],
      "cwes": [
        "CWE-270",
        "CWE-863"
      ],
      "description": "The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting of file capabilities on files in an underlying file system. Due to the combination of unprivileged user namespaces along with a patch carried in the Ubuntu kernel to allow unprivileged overlay mounts, an attacker could use this to gain elevated privileges."
    },
    {
      "id": "CVE-2022-40684",
      "url": "https://spydr.io/cve/CVE-2022-40684",
      "published": "2022-10-18T14:15:09.747Z",
      "modified": "2026-08-06T05:16:37.827Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99984,
      "epss_percentile": 0.99983,
      "exploited": true,
      "kev": {
        "added": "2022-10-11",
        "due": "2022-11-01",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Fortinet"
      ],
      "products": [
        "Fortinet FortiOS, FortiProxy, FortiSwitchManager"
      ],
      "cwes": [
        "CWE-287"
      ],
      "description": "An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 and 7.0.0 allows an unauthenticated atttacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests."
    },
    {
      "id": "CVE-2022-41033",
      "url": "https://spydr.io/cve/CVE-2022-41033",
      "published": "2022-10-11T19:15:20.567Z",
      "modified": "2026-06-17T05:02:27.533Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.01696,
      "epss_percentile": 0.76433,
      "exploited": true,
      "kev": {
        "added": "2022-10-11",
        "due": "2022-11-01",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows Server 2022",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 11 version 21H2",
        "Microsoft Windows 10 Version 21H2",
        "Microsoft Windows 11 version 22H2",
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2016 (Server Core installation)",
        "Microsoft Windows 7",
        "Microsoft Windows 7 Service Pack 1",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2008 Service Pack 2",
        "Microsoft Windows Server 2008 Service Pack 2 (Server Core installation)",
        "Microsoft Windows Server 2008 R2 Service Pack 1",
        "Microsoft Windows Server 2008 R2 Service Pack 1 (Server Core installation)"
      ],
      "cwes": [
        "CWE-843"
      ],
      "description": "Windows COM+ Event System Service Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2022-41082",
      "url": "https://spydr.io/cve/CVE-2022-41082",
      "published": "2022-10-03T01:15:08.843Z",
      "modified": "2026-06-17T05:02:33.460Z",
      "score": 8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.9997,
      "epss_percentile": 0.99978,
      "exploited": true,
      "kev": {
        "added": "2022-09-30",
        "due": "2022-10-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Exchange Server 2013 Cumulative Update 23",
        "Microsoft Exchange Server 2016 Cumulative Update 22",
        "Microsoft Exchange Server 2019 Cumulative Update 11",
        "Microsoft Exchange Server 2019 Cumulative Update 12",
        "Microsoft Exchange Server 2016 Cumulative Update 23"
      ],
      "cwes": [
        "CWE-502"
      ],
      "description": "Microsoft Exchange Server Remote Code Execution Vulnerability"
    }
  ],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
