Exploited vulnerabilities
CVEs published in the last 120 days, plus everything on CISA’s known-exploited list. Scores, exploit likelihood and exploitation status in one place.
| Score | CVE | Affected | EPSS | Published |
|---|---|---|---|---|
| 10.0 critical | CVE-2026-20079 KEV | Cisco Secure Firewall Management Center (FMC) A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. This vulnerability is due to an improper system process that is created at boot time. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to execute a variety of scripts and commands that allow root access to the device. | 88% | 4 Mar 2026 |
| 7.8 high | CVE-2026-21385 KEV | Qualcomm, Inc. Snapdragon Memory corruption while using alignments for memory allocation. | 1.3% | 2 Mar 2026 |
| 8.1 high | CVE-2026-22719 KEV | VMware Aria Operations VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this issue to execute arbitrary commands which may lead to remote code execution in VMware Aria Operations while support-assisted product migration is in progress. To remediate CVE-2026-22719, apply the patches listed in the 'Fixed Version' column of the ' Response Matrix https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947 ' in VMSA-2026-0001 Workarounds for CVE-2026-22719 are documented in the 'Workarounds' column of the ' Response Matrix https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947 ' in VMSA-2026-0001 | 18% | 25 Feb 2026 |
| 7.5 high | CVE-2026-20133 KEV | Cisco Catalyst SD-WAN Manager A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive information on an affected system. This vulnerability is due to insufficient file system restrictions. An authenticated attacker with netadmin privileges could exploit this vulnerability by accessing the vshell of an affected system. A successful exploit could allow the attacker to read sensitive information on the underlying operating system. | 32% | 25 Feb 2026 |
| 7.5 high | CVE-2026-20128 KEV | Cisco Catalyst SD-WAN Manager A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affected system. This vulnerability is due to the presence of a credential file for the DCA user on an affected system. An attacker could exploit this vulnerability by sending a crafted HTTP request and reading the file that contains the DCA password from that affected system. A successful exploit could allow the attacker to access another affected system and gain DCA user privileges. Note: Cisco Catalyst SD-WAN Manager releases 20.18 and later are not affected by this vulnerability. | 7.1% | 25 Feb 2026 |
| 10.0 critical | CVE-2026-20127 KEV | Cisco Catalyst SD-WAN Manager A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Cisco Catalyst SD-WAN Validator, formerly SD-WAN vBond, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. This vulnerability exists because the peering authentication mechanism in an affected system is not working properly. An attacker could exploit this vulnerability by sending crafted requests to an affected system. A successful exploit could allow the attacker to log in to an affected Cisco Catalyst SD-WAN Controller as an internal, high-privileged, non-root user account. Using this account, the attacker could access NETCONF, which would then allow the attacker to manipulate network configuration for the SD-WAN fabric. | 88% | 25 Feb 2026 |
| 5.4 medium | CVE-2026-20122 KEV | Cisco Catalyst SD-WAN Manager A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local file system. To exploit this vulnerability, the attacker must have valid read-only credentials with API access on the affected system. This vulnerability is due to improper file handling on the API interface of an affected system. An attacker could exploit this vulnerability by uploading a malicious file on the local file system. A successful exploit could allow the attacker to overwrite arbitrary files on the affected system and gain vmanage user privileges. | 25% | 25 Feb 2026 |
| 10.0 critical | CVE-2026-22769 KEV | Dell RecoverPoint for Virtual Machines Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability. This is considered critical as an unauthenticated remote attacker with knowledge of the hardcoded credential could potentially exploit this vulnerability leading to unauthorized access to the underlying operating system and root-level persistence. Dell recommends that customers upgrade or apply one of the remediations as soon as possible. | 13% | 17 Feb 2026 |
| 8.8 high | CVE-2026-2441 KEV | Google Chrome Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | 55% | 13 Feb 2026 |
| 8.7 high | CVE-2026-25108 KEV | Soliton Systems K.K. FileZen FileZen contains an OS command injection vulnerability. When FileZen Antivirus Check Option is enabled, a logged-in user may send a specially crafted HTTP request to execute an arbitrary OS command. | 5.2% | 13 Feb 2026 |
| 7.8 high | CVE-2026-20700 KEV | Apple iOS and iPadOS A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memory write capability may be able to execute arbitrary code. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 26. CVE-2025-14174 and CVE-2025-43529 were also issued in response to this report. | 1.4% | 11 Feb 2026 |
| 7.8 high | CVE-2026-21533 KEV | Microsoft Windows 10 Version 1607 Improper privilege management in Windows Remote Desktop allows an authorized attacker to elevate privileges locally. | 4.1% | 10 Feb 2026 |
| 6.2 medium | CVE-2026-21525 KEV | Microsoft Windows 10 Version 1607 Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally. | 4.8% | 10 Feb 2026 |
| 7.8 high | CVE-2026-21519 KEV | Microsoft Windows 10 Version 1607 Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally. | 2.5% | 10 Feb 2026 |
| 7.8 high | CVE-2026-21514 KEV | Microsoft 365 Apps for Enterprise Reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to bypass a security feature locally. | 1.6% | 10 Feb 2026 |
| 8.8 high | CVE-2026-21513 KEV | Microsoft Windows 10 Version 1607 Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network. | 16% | 10 Feb 2026 |
| 8.8 high | CVE-2026-21510 KEV | Microsoft Windows 10 Version 1607 Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network. | 24% | 10 Feb 2026 |
| 7.5 high | CVE-2026-1603 KEV | Ivanti Endpoint Manager An authentication bypass in Ivanti Endpoint Manager before version 2024 SU5 allows a remote unauthenticated attacker to leak specific stored credential data. | 88% | 10 Feb 2026 |
| 5.9 medium | CVE-2025-68686 KEV | Fortinet FortiOS An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.1, FortiOS 7.4.0 through 7.4.6, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions may allow a remote unauthenticated attacker to bypass the patch developed for the symbolic link persistency mechanism observed in some post-exploit cases, via crafted HTTP requests. An attacker would need first to have compromised the product via another vulnerability, at filesystem level. | 30% | 10 Feb 2026 |
| 9.9 critical | CVE-2026-1731 KEV | BeyondTrust Remote Support(RS) & Privileged Remote Access(PRA) BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted requests, an unauthenticated remote attacker may be able to execute operating system commands in the context of the site user. | 91% | 6 Feb 2026 |