Vulnerability Intelligence

Exploited CVEs

1.7K
CISA KEV catalog

Ransomware-linked

338
20% of KEV

Actor-attributed

41
named groups

EPSS-scored

1.7K
861 likely-exploited (≥0.5)

KEV overdue

1.7K
past CISA due date

🔧 Top affected products

Windows
172
Multiple Products
79
Chromium V8
39
Internet Explorer
36
Flash Player
33
Office
29
Kernel
29
Win32k
25
Exchange Server
17
ColdFusion
16
Zimbra Collaboration Suite (ZCS)
15
IOS and IOS XE Software
14
Acrobat and Reader
13
Mobile Devices
13

📅 Exploited CVEs by year

2002
1
2004
2
2005
1
2006
2
2007
3
2008
6
2009
15
2010
23
2011
9
2012
22
2013
38
2014
34
2015
44
2016
59
2017
86
2018
89
2019
118
2020
146
2021
214
2022
131
2023
164
2024
164
2025
184
2026
107

🤖 CWE weakness distribution

CWE-78
93
CWE-20
91
CWE-416
89
CWE-119
84
CWE-787
84
CWE-22
70
CWE-94
62
CWE-502
61
CWE-287
36
CWE-284
33
CWE-843
32
CWE-306
32
CWE-264
31
CWE-79
27

📈 EPSS probability bands

Likely (≥.5)
861
Elevated (.1–.5)
404
Moderate (.01–.1)
353
Low (<.01)
44

🔒 Ransomware-linked share

Other exploited
1.3K
Ransomware-known
338

📈 Exploit-probability coverage

1.7K of 1.7K KEV CVEs carry a FIRST EPSS score (100%). 861 score ≥0.5 (likely exploited within 30 days). Re-run EPSS enrichment to refresh.

☠ Most dangerous exploited CVEs (ransomware · actor · EPSS · recency weighted)

#CVEVendor / ProductDangerEPSSRansomwareActorsAdded
1CVE-2025-0282Ivanti Connect Secure, Policy Secur
110.3
100.0%KNOWNUNC / China-nexus2025-01-08
2CVE-2024-40711Veeam Backup & Replication
107.0
90.4%KNOWNAkira, Fog2024-10-17
3CVE-2024-4577PHP Group PHP
106.8
100.0%KNOWNmultiple2024-06-12
4CVE-2024-3400Palo Alto Networks PAN-OS
105.8
100.0%KNOWNmultiple2024-04-12
5CVE-2024-1709ConnectWise ScreenConnect
105.0
100.0%KNOWNmultiple ransomware2024-02-22
6CVE-2024-21412Microsoft Windows
103.9
95.4%KNOWNWater Hydra2024-02-13
7CVE-2023-46604Apache ActiveMQ
103.0
99.7%KNOWNmultiple2023-11-02
8CVE-2023-4966Citrix NetScaler ADC and NetScaler
102.9
100.0%KNOWNLockBit2023-10-18
9CVE-2023-22515Atlassian Confluence Data Center and S
102.5
99.2%KNOWNnation-state + criminal2023-10-05
10CVE-2024-21762Fortinet FortiOS
101.6
84.3%KNOWNmultiple2024-02-09
11CVE-2023-3519Citrix NetScaler ADC and NetScaler
101.3
99.7%KNOWNmultiple2023-07-19
12CVE-2023-34362Progress MOVEit Transfer
100.6
99.9%KNOWNClop (TA505/FIN11)2023-06-02
13CVE-2021-45046Apache Log4j2
100.0
100.0%KNOWNmultiple2023-05-01
14CVE-2023-27350PaperCut MF/NG
99.9
100.0%KNOWNClop, LockBit2023-04-21
15CVE-2023-0669Fortra GoAnywhere MFT
98.7
100.0%KNOWNClop (TA505)2023-02-10
16CVE-2022-41040Microsoft Exchange Server
96.5
100.0%KNOWNmultiple ransomware2022-09-30
17CVE-2022-41082Microsoft Exchange Server
96.5
100.0%KNOWNmultiple ransomware2022-09-30
18CVE-2022-26134Atlassian Confluence Server/Data Cente
95.0
100.0%KNOWNmultiple2022-06-02
19CVE-2022-1388F5 BIG-IP
95.0
100.0%KNOWNmultiple2022-05-10
20CVE-2020-0796Microsoft SMBv3
95.0
99.8%KNOWNmultiple2022-02-10
21CVE-2021-44228Apache Log4j2
95.0
100.0%KNOWNmultiple (APT + criminal)2021-12-10
22CVE-2017-5638Apache Struts
95.0
100.0%KNOWNmultiple2021-11-03
23CVE-2019-0708Microsoft Remote Desktop Services
95.0
100.0%KNOWNmultiple2021-11-03
24CVE-2017-11882Microsoft Office
95.0
99.9%KNOWNmultiple (commodity + APT)2021-11-03
25CVE-2018-13379Fortinet FortiOS
95.0
100.0%KNOWNmultiple ransomware2021-11-03

🛡 Vulnerability → Malware / Ransomware / Actor

Type a full CVE id (e.g. CVE-2023-34362) for the full dossier — EPSS, KEV due-date, attributed malware/actors, entity graph & OSINT pivots.

26 vulnerabilities (use the ⇩ CSV button to export the filtered view)

CVEVendor / ProductEPSSRansomwareMalware / RansomwareActorsAddedDue date
CVE-2018-6530D-Link Multiple Routers96.7%KNOWNransomware (KEV-flagged)2022-09-082022-09-29 ⚠
CVE-2019-16057D-Link DNS-320 Storage Device87.2%KNOWNransomware (KEV-flagged)2022-04-152022-05-06 ⚠
CVE-2025-29635D-Link DIR-823X89.6%2026-04-242026-05-08 ⚠
CVE-2022-37055D-Link Routers57.0%2025-12-082025-12-29 ⚠
CVE-2020-25078D-Link DCS-2530L and DCS-2670L Device97.7%2025-08-052025-08-26 ⚠
CVE-2020-25079D-Link DCS-2530L and DCS-2670L Device52.7%2025-08-052025-08-26 ⚠
CVE-2022-40799D-Link DNR-322L31.7%2025-08-052025-08-26 ⚠
CVE-2024-0769D-Link DIR-859 Router82.7%2025-06-252025-07-16 ⚠
CVE-2023-25280D-Link DIR-820 Router97.9%2024-09-302024-10-21 ⚠
CVE-2021-40655D-Link DIR-605 Router86.7%2024-05-162024-06-06 ⚠
CVE-2014-100005D-Link DIR-600 Router42.4%2024-05-162024-06-06 ⚠
CVE-2024-3272D-Link Multiple NAS Devices98.0%2024-04-112024-05-02 ⚠
CVE-2024-3273D-Link Multiple NAS Devices100.0%2024-04-112024-05-02 ⚠
CVE-2016-20017D-Link DSL-2750B Devices65.4%2024-01-082024-01-29 ⚠
CVE-2019-17621D-Link DIR-859 Router89.6%2023-06-292023-07-20 ⚠
CVE-2019-20500D-Link DWL-2600AP Access Point97.1%2023-06-292023-07-20 ⚠
CVE-2011-4723D-Link DIR-300 Router3.0%2022-09-082022-09-29 ⚠
CVE-2022-26258D-Link DIR-820L79.8%2022-09-082022-09-29 ⚠
CVE-2021-45382D-Link Multiple Routers97.6%2022-04-042022-04-25 ⚠
CVE-2013-5223D-Link DSL-2760U33.6%2022-03-252022-04-15 ⚠
CVE-2020-9377D-Link DIR-610 Devices21.3%2022-03-252022-04-15 ⚠
CVE-2016-11021D-Link DCS-930L Devices68.9%2022-03-252022-04-15 ⚠
CVE-2019-16920D-Link Multiple Routers100.0%2022-03-252022-04-15 ⚠
CVE-2015-2051D-Link DIR-645 Router96.9%2022-02-102022-08-10 ⚠
CVE-2020-25506D-Link DNS-320 Device100.0%2021-11-032022-05-03 ⚠
CVE-2020-29557D-Link DIR-825 R1 Devices54.3%2021-11-032022-05-03 ⚠
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php