CISAKevBot
For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild: the Known Exploited Vulnerability (KEV) catalog. CISA strongly recommends all organizations review and monitor the KEV catalog and prioritize remediation of the listed vulnerabilities to reduce the likelihood of compromise by known threat actors.
Fediverse name: Text copied!
Fediverse URL: Text copied!
Feed URL: https://rud.is/cisa-kev.rssWebsite: https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Refreshed at: 6/26/2026, 12:28:12 PM
Entries
- 2021-12-01: [CVE-2021-37415] Zoho ManageEngine ServiceDesk Authentication Bypass Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-12-01: [CVE-2021-40438] Apache HTTP Server-Side Request Forgery (SSRF)
Posted at: 12/24/2024, 8:21:06 PM - 2021-12-01: [CVE-2021-44077] Zoho ManageEngine ServiceDesk Plus Remote Code Execution Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-17: [CVE-2021-22204] ExifTool Remote Code Execution Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-17: [CVE-2021-40449] Microsoft Windows Win32k Privilege Escalation Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-17: [CVE-2021-42321] Microsoft Exchange Server Remote Code Execution Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-17: [CVE-2021-42292] Microsoft Excel Security Feature Bypass
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-03: [CVE-2021-27104] Accellion FTA OS Command Injection Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-03: [CVE-2021-27102] Accellion FTA OS Command Injection Vulnerability
Posted at: 12/24/2024, 8:21:06 PM - 2021-11-03: [CVE-2021-27101] Accellion FTA SQL Injection Vulnerability
Posted at: 12/24/2024, 8:21:06 PM