Vulnerability Intelligence

Exploited CVEs

1.7K
CISA KEV catalog

Ransomware-linked

338
20% of KEV

Actor-attributed

41
named groups

EPSS-scored

1.7K
861 likely-exploited (≥0.5)

KEV overdue

1.7K
past CISA due date

🔧 Top affected products

Windows
172
Multiple Products
79
Chromium V8
39
Internet Explorer
36
Flash Player
33
Kernel
29
Office
29
Win32k
25
Exchange Server
17
ColdFusion
16
Zimbra Collaboration Suite (ZCS)
15
IOS and IOS XE Software
14
Mobile Devices
13
Acrobat and Reader
13

📅 Exploited CVEs by year

2002
1
2004
2
2005
1
2006
2
2007
3
2008
6
2009
15
2010
23
2011
9
2012
22
2013
38
2014
34
2015
44
2016
59
2017
86
2018
89
2019
118
2020
146
2021
214
2022
131
2023
164
2024
164
2025
184
2026
107

🤖 CWE weakness distribution

CWE-78
93
CWE-20
91
CWE-416
89
CWE-787
84
CWE-119
84
CWE-22
70
CWE-94
62
CWE-502
61
CWE-287
36
CWE-284
33
CWE-843
32
CWE-306
32
CWE-264
31
CWE-79
27

📈 EPSS probability bands

Likely (≥.5)
861
Elevated (.1–.5)
404
Moderate (.01–.1)
353
Low (<.01)
44

🔒 Ransomware-linked share

Other exploited
1.3K
Ransomware-known
338

📈 Exploit-probability coverage

1.7K of 1.7K KEV CVEs carry a FIRST EPSS score (100%). 861 score ≥0.5 (likely exploited within 30 days). Re-run EPSS enrichment to refresh.

☠ Most dangerous exploited CVEs (ransomware · actor · EPSS · recency weighted)

#CVEVendor / ProductDangerEPSSRansomwareActorsAdded
1CVE-2025-0282Ivanti Connect Secure, Policy Secur
110.3
100.0%KNOWNUNC / China-nexus2025-01-08
2CVE-2024-40711Veeam Backup & Replication
107.0
90.4%KNOWNAkira, Fog2024-10-17
3CVE-2024-4577PHP Group PHP
106.8
100.0%KNOWNmultiple2024-06-12
4CVE-2024-3400Palo Alto Networks PAN-OS
105.8
100.0%KNOWNmultiple2024-04-12
5CVE-2024-1709ConnectWise ScreenConnect
105.0
100.0%KNOWNmultiple ransomware2024-02-22
6CVE-2024-21412Microsoft Windows
103.9
95.4%KNOWNWater Hydra2024-02-13
7CVE-2023-46604Apache ActiveMQ
103.1
99.7%KNOWNmultiple2023-11-02
8CVE-2023-4966Citrix NetScaler ADC and NetScaler
102.9
100.0%KNOWNLockBit2023-10-18
9CVE-2023-22515Atlassian Confluence Data Center and S
102.5
99.2%KNOWNnation-state + criminal2023-10-05
10CVE-2024-21762Fortinet FortiOS
101.6
84.3%KNOWNmultiple2024-02-09
11CVE-2023-3519Citrix NetScaler ADC and NetScaler
101.3
99.7%KNOWNmultiple2023-07-19
12CVE-2023-34362Progress MOVEit Transfer
100.6
99.9%KNOWNClop (TA505/FIN11)2023-06-02
13CVE-2021-45046Apache Log4j2
100.0
100.0%KNOWNmultiple2023-05-01
14CVE-2023-27350PaperCut MF/NG
99.9
100.0%KNOWNClop, LockBit2023-04-21
15CVE-2023-0669Fortra GoAnywhere MFT
98.7
100.0%KNOWNClop (TA505)2023-02-10
16CVE-2022-41040Microsoft Exchange Server
96.5
100.0%KNOWNmultiple ransomware2022-09-30
17CVE-2022-41082Microsoft Exchange Server
96.5
100.0%KNOWNmultiple ransomware2022-09-30
18CVE-2022-26134Atlassian Confluence Server/Data Cente
95.0
100.0%KNOWNmultiple2022-06-02
19CVE-2022-1388F5 BIG-IP
95.0
100.0%KNOWNmultiple2022-05-10
20CVE-2020-0796Microsoft SMBv3
95.0
99.8%KNOWNmultiple2022-02-10
21CVE-2021-44228Apache Log4j2
95.0
100.0%KNOWNmultiple (APT + criminal)2021-12-10
22CVE-2017-5638Apache Struts
95.0
100.0%KNOWNmultiple2021-11-03
23CVE-2019-0708Microsoft Remote Desktop Services
95.0
100.0%KNOWNmultiple2021-11-03
24CVE-2017-11882Microsoft Office
95.0
99.9%KNOWNmultiple (commodity + APT)2021-11-03
25CVE-2018-13379Fortinet FortiOS
95.0
100.0%KNOWNmultiple ransomware2021-11-03

🛡 Vulnerability → Malware / Ransomware / Actor

Type a full CVE id (e.g. CVE-2023-34362) for the full dossier — EPSS, KEV due-date, attributed malware/actors, entity graph & OSINT pivots.

40 vulnerabilities (use the ⇩ CSV button to export the filtered view)

CVEVendor / ProductEPSSRansomwareMalware / RansomwareActorsAddedDue date
CVE-2023-46604Apache ActiveMQ99.7%KNOWNHelloKitty, Kinsing (ActiveMQ)multiple2023-11-022023-11-23 ⚠
CVE-2021-45046Apache Log4j2100.0%KNOWNLog4Shell follow-onmultiple2023-05-012023-05-22 ⚠
CVE-2017-12615Apache Tomcat99.6%KNOWNransomware (KEV-flagged)2022-03-252022-04-15 ⚠
CVE-2021-44228Apache Log4j2100.0%KNOWNKhonsari, Conti, TellYouThePass, Mirai (Log4Shell)multiple (APT + criminal)2021-12-102021-12-24 ⚠
CVE-2021-40438Apache Apache100.0%KNOWNransomware (KEV-flagged)2021-12-012021-12-15 ⚠
CVE-2017-5638Apache Struts100.0%KNOWNStruts RCE — cryptominers, webshellsmultiple2021-11-032022-05-03 ⚠
CVE-2021-41773Apache HTTP Server100.0%KNOWNransomware (KEV-flagged)2021-11-032021-11-17 ⚠
CVE-2021-42013Apache HTTP Server100.0%KNOWNransomware (KEV-flagged)2021-11-032021-11-17 ⚠
CVE-2026-34486Apache Tomcat79.9%2026-08-042026-08-07 ⚠
CVE-2026-34197Apache ActiveMQ97.2%2026-04-162026-04-30 ⚠
CVE-2024-38475Apache HTTP Server100.0%2025-05-012025-05-22 ⚠
CVE-2025-24813Apache Tomcat99.9%2025-04-012025-04-22 ⚠
CVE-2024-45195Apache OFBiz100.0%2025-02-042025-02-25 ⚠
CVE-2024-27348Apache HugeGraph-Server99.2%2024-09-182024-10-09 ⚠
CVE-2024-38856Apache OFBiz99.4%2024-08-272024-09-17 ⚠
CVE-2024-32113Apache OFBiz99.4%2024-08-072024-08-28 ⚠
CVE-2020-17519Apache Flink97.9%2024-05-232024-06-13 ⚠
CVE-2023-27524Apache Superset97.4%2024-01-082024-01-29 ⚠
CVE-2023-33246Apache RocketMQ96.6%2023-09-062023-09-27 ⚠
CVE-2016-8735Apache Tomcat90.3%2023-05-122023-06-02 ⚠
CVE-2022-33891Apache Spark93.1%2023-03-072023-03-28 ⚠
CVE-2022-24112Apache APISIX96.0%2022-08-252022-09-15 ⚠
CVE-2022-24706Apache CouchDB92.4%2022-08-252022-09-15 ⚠
CVE-2013-2251Apache Struts100.0%2022-03-252022-04-15 ⚠
CVE-2020-1956Apache Kylin97.3%2022-03-252022-04-15 ⚠
CVE-2017-12617Apache Tomcat100.0%2022-03-252022-04-15 ⚠
CVE-2020-1938Apache Tomcat99.3%2022-03-032022-03-17 ⚠
CVE-2016-3088Apache ActiveMQ98.5%2022-02-102022-08-10 ⚠
CVE-2017-9791Apache Struts 198.8%2022-02-102022-08-10 ⚠
CVE-2006-1547Apache Struts 154.6%2022-01-212022-07-21 ⚠
CVE-2012-0391Apache Struts 275.1%2022-01-212022-07-21 ⚠
CVE-2020-11978Apache Airflow99.2%2022-01-182022-07-18 ⚠
CVE-2020-13927Apache Airflow's Experimental API99.8%2022-01-182022-07-18 ⚠
CVE-2019-0193Apache Solr83.5%2021-12-102022-06-10 ⚠
CVE-2016-4437Apache Shiro93.0%2021-11-032022-05-03 ⚠
CVE-2017-9805Apache Struts99.4%2021-11-032022-05-03 ⚠
CVE-2019-0211Apache HTTP Server65.0%2021-11-032022-05-03 ⚠
CVE-2018-11776Apache Struts100.0%2021-11-032022-05-03 ⚠
CVE-2019-17558Apache Solr98.6%2021-11-032022-05-03 ⚠
CVE-2020-17530Apache Struts95.6%2021-11-032022-05-03 ⚠
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php