Public-source reporting · Cybersecurity

CISA Exploited Vulnerabilities

Vulnerabilities with evidence of exploitation, including affected products and required actions.

1733 records · Collected Oct 4, 2026 · 04:18 UTCOfficial source · JSON
CVE-2018-20250 · CISA Known Exploited Vulnerabilities

WinRAR Absolute Path Traversal Vulnerability

Vendor: RARLAB | Product: WinRAR | WinRAR Absolute Path Traversal vulnerability leads to Remote Code Execution | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-15
CVE-2018-15982 · CISA Known Exploited Vulnerabilities

Adobe Flash Player Use-After-Free Vulnerability

Vendor: Adobe | Product: Flash Player | Adobe Flash Player com.adobe.tvsdk.mediacore.metadata Use After Free Vulnerability | Required action: The impacted product is end-of-life and should be disconnected if still in use. | Federal remediation due: 2022-08-15
CVE-2017-9841 · CISA Known Exploited Vulnerabilities

PHPUnit Command Injection Vulnerability

Vendor: PHPUnit | Product: PHPUnit | PHPUnit allows remote attackers to execute arbitrary PHP code via HTTP POST data beginning with a "
CVE-2014-1761 · CISA Known Exploited Vulnerabilities

Microsoft Word Memory Corruption Vulnerability

Vendor: Microsoft | Product: Word | Microsoft Word contains a memory corruption vulnerability which when exploited could allow for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-15
CVE-2013-3906 · CISA Known Exploited Vulnerabilities

Microsoft Graphics Component Memory Corruption Vulnerability

Vendor: Microsoft | Product: Graphics Component | Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-15
CVE-2022-22620 · CISA Known Exploited Vulnerabilities

Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability

Vendor: Apple | Product: iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing. | Required action: Apply updates per vendor…
Read full source summary
Vendor: Apple | Product: iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit contain a use-after-free vulnerability that leads to code execution when processing maliciously crafted web content. This vulnerability could impact HTML parsers that use WebKit, including but not limited to Apple Safari and non-Apple products which rely on WebKit for HTML processing. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-02-25
CVE-2021-36934 · CISA Known Exploited Vulnerabilities

Microsoft Windows SAM Local Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Windows | If a Volume Shadow Copy (VSS) shadow copy of the system drive is available, users can read the SAM file which would allow any user to escalate privileges to SYSTEM level. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-02-24
CVE-2020-0796 · CISA Known Exploited Vulnerabilities

Microsoft SMBv3 Remote Code Execution Vulnerability

Vendor: Microsoft | Product: SMBv3 | A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the ability to execute code on the target server or client. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-9791 · CISA Known Exploited Vulnerabilities

Apache Struts 1 Improper Input Validation Vulnerability

Vendor: Apache | Product: Struts 1 | The Struts 1 plugin in Apache Struts might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-8464 · CISA Known Exploited Vulnerabilities

Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Windows | Windows Shell in multiple versions of Microsoft Windows allows local users or remote attackers to execute arbitrary code via a crafted .LNK file | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-10271 · CISA Known Exploited Vulnerabilities

Oracle Corporation WebLogic Server Remote Code Execution Vulnerability

Vendor: Oracle | Product: WebLogic Server | Oracle Corporation WebLogic Server contains a vulnerability that allows for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-0263 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Win32k contains a privilege escalation vulnerability due to the Windows kernel-mode driver failing to properly handle objects in memory. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-0262 · CISA Known Exploited Vulnerabilities

Microsoft Office Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Office | A remote code execution vulnerability exists in Microsoft Office. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-0145 · CISA Known Exploited Vulnerabilities

Microsoft SMBv1 Remote Code Execution Vulnerability

Vendor: Microsoft | Product: SMBv1 | The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2017-0144 · CISA Known Exploited Vulnerabilities

Microsoft SMBv1 Remote Code Execution Vulnerability

Vendor: Microsoft | Product: SMBv1 | The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2016-3088 · CISA Known Exploited Vulnerabilities

Apache ActiveMQ Improper Input Validation Vulnerability

Vendor: Apache | Product: ActiveMQ | The Fileserver web application in Apache ActiveMQ allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2015-2051 · CISA Known Exploited Vulnerabilities

D-Link DIR-645 Router Remote Code Execution Vulnerability

Vendor: D-Link | Product: DIR-645 Router | D-Link DIR-645 Wired/Wireless Router allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface. | Required action: The impacted product is end-of-life and should be disconnected if still in use. | Federal remediation due: 2022-08-10
CVE-2015-1635 · CISA Known Exploited Vulnerabilities

Microsoft HTTP.sys Remote Code Execution Vulnerability

Vendor: Microsoft | Product: HTTP.sys | Microsoft HTTP protocol stack (HTTP.sys) contains a vulnerability that allows for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
CVE-2015-1130 · CISA Known Exploited Vulnerabilities

Apple OS X Authentication Bypass Vulnerability

Vendor: Apple | Product: OS X | The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-08-10
Browse saved snapshots

Sources & context

About these feeds

About BioThreat Corporation

BioThreat Corporation threat monitoring workflows bring together reports published by the named source institutions. These are public-source reports; publication dates and source links accompany each record.

01 / SOURCE

Read the source

Open a feed to search titles, summaries, or CVE IDs. Follow a record’s title or the Official source link to read the reporting in its original context.

Browse public feeds
02 / HISTORY

Compare over time

Daily snapshots are collected when a source is visited and successfully refreshed. Archive dates indicate collection dates, and the archive may contain gaps.

Browse saved snapshots
03 / RECORDS

Use the records

JSON links provide machine-readable records with source names, titles, summaries, links, and publication dates. Choose a saved date for the records collected in that snapshot.

Archive sitemap

The BioThreat Corporation Library brings together research, analysis, and reference material across our areas of focus.

Archive index