Full CISA KEV catalog
Every CVE the U.S. cybersecurity agency has flagged as actively exploited. Search by vendor or product. Filter by category, time window, or ransomware association. Paginated 50 per page.
| CVE | Vendor / product | Vulnerability | Categories | Added to KEV |
|---|---|---|---|---|
| CVE-2025-68686 |
Fortinet
FortiOS
|
Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Fortinet FortiOS contains an exposure of sensitive information to an unauthorized actor vulnerability. This may allow a remote unauthenticated attacker to bypass the patch developed for the symbolic link persistency mechanism observed in some post-exploit cases, via crafted HTTP requests. An attacker would need first to have compromised the product via anot…
|
Network gear Yacht-focused | Jul 27, 2026 |
| CVE-2026-25089 |
Fortinet
FortiSandbox
|
Fortinet FortiSandbox OS Command Injection Vulnerability
Fortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.
|
Network gear Yacht-focused | Jul 16, 2026 |
| CVE-2026-39808 |
Fortinet
FortiSandbox
|
Fortinet FortiSandbox OS Command Injection Vulnerability
Fortinet FortiSandbox contains an OS command injection vulnerability that could allow an unauthenticated attacker to execute unauthorized code or commands via crafted HTTP requests.
|
Network gear Yacht-focused | Jul 16, 2026 |
| CVE-2026-15409 |
SonicWall
SMA1000 Appliances
|
SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability
SonicWall SMA1000 Appliances contain a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to potentially cause the appliance to make requests to unintended location.
|
Network gear Yacht-focused | Jul 14, 2026 |
| CVE-2026-15410 |
SonicWall
SMA1000 Appliances
|
SonicWall SMA1000 Appliances Code Injection Vulnerability
SonicWall SMA1000 Appliances contain a code injection vulnerability which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.
|
Network gear Yacht-focused | Jul 14, 2026 |
| CVE-2008-4128 |
Cisco
IOS
|
Cisco IOS Cross-Site Request Forgery Vulnerability
Cisco IOS 12.4 contains multiple cross-site forgery vulnerabilities that allows remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /level/15/exec/- URI, and (2) a certain "alias exec" command to the /level/15/exec/-/configure/http URI.
|
Network gear Yacht-focused | Jul 13, 2026 |
| CVE-2026-20230 |
Cisco
Unified Communications Manager
|
Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability
Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) contain a server-side request forgery (SSRF) Vulnerability that could allow an unauthenticated, remote attacker to write files to the underlying operating system that could be used later to elevate to root.
|
Network gear Yacht-focused | Jun 25, 2026 |
| CVE-2026-34910 |
Ubiquiti
UniFi OS
|
Ubiquiti UniFi OS Improper Input Validation Vulnerability
Ubiquiti UniFi OS contains an improper input validation vulnerability which could allow a malicious actor with access to the network to conduct command injection.
|
Network gear Yacht-focused | Jun 23, 2026 |
| CVE-2026-34909 |
Ubiquiti
UniFi OS
|
Ubiquiti UniFi OS Path Traversal Vulnerability
Ubiquiti UniFi OS contains a path traversal vulnerability which could allow a malicious actor with access to the network to access files on the underlying system that could be manipulated to access an underlying account.
|
Network gear Yacht-focused | Jun 23, 2026 |
| CVE-2026-34908 |
Ubiquiti
UniFi OS
|
Ubiquiti UniFi OS Improper Access Control Vulnerability
Ubiquiti UniFi OS contains an improper access control vulnerability which could allow a malicious actor with access to the network to make unauthorized changes to the system.
|
Network gear Yacht-focused | Jun 23, 2026 |
| CVE-2026-20262 |
Cisco
Catalyst SD-WAN Manager
|
Cisco Catalyst SD-WAN Manager Directory or Path Traversal Vulnerability
Cisco Catalyst SD-WAN Manager contains a directory or path traversal vulnerability that could allow an authenticated, remote attacker to create a file or overwrite any file on the filesystem of an affected system.
|
Network gear Yacht-focused | Jun 15, 2026 |
| CVE-2026-20245 |
Cisco
Catalyst SD-WAN Manager
|
Cisco Catalyst SD-WAN Manager Improper Encoding or Escaping of Output Vulnerability
Cisco Catalyst SD-WAN Manager formerly SD-WAN vManage contains an improper encoding or escaping of output vulnerability. This vulnerability could allow an authenticated, local attacker to execute arbitrary commands as root by supplying a crafted file to the affected system.
|
Network gear Yacht-focused | Jun 9, 2026 |
| CVE-2026-0257 |
Palo Alto Networks
PAN-OS
|
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability
Palo Alto Networks PAN-OS contains an authentication bypass vulnerability that allows attackers to bypass security restrictions and establish an unauthorized VPN connection.
|
Ransomware Network gear Yacht-focused | May 29, 2026 |
| CVE-2026-20182 |
Cisco
Catalyst SD-WAN
|
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
Cisco Catalyst SD-WAN Controller & Manager contain an authentication bypass vulnerability that allows an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system.
|
Network gear Yacht-focused | May 14, 2026 |
| CVE-2026-0300 |
Palo Alto Networks
PAN-OS
|
Palo Alto Networks PAN-OS Out-of-bounds Write Vulnerability
Palo Alto Networks PAN-OS contains an out-of-bounds write vulnerability in the User-ID Authentication Portal (aka Captive Portal) service that can allow an unauthenticated attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series firewalls by sending specially crafted packets.
|
Network gear Yacht-focused | May 6, 2026 |
| CVE-2025-29635 |
D-Link
DIR-823X
|
D-Link DIR-823X Command Injection Vulnerability
D-Link DIR-823X contains a command injection vulnerability that allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Apr 24, 2026 |
| CVE-2026-20122 |
Cisco
Catalyst SD-WAN Manger
|
Cisco Catalyst SD-WAN Manager Incorrect Use of Privileged APIs Vulnerability
Cisco Catalyst SD-WAN Manager contains an incorrect use of privileged APIs vulnerability due to improper file handling on the API interface of an affected system. An attacker could exploit this vulnerability by uploading a malicious file on the local file system. A successful exploit could allow the attacker to overwrite arbitrary files on the affected syst…
|
Network gear Yacht-focused | Apr 20, 2026 |
| CVE-2026-20133 |
Cisco
Catalyst SD-WAN Manager
|
Cisco Catalyst SD-WAN Manager Exposure of Sensitive Information to an Unauthorized Actor Vulnerability
Cisco Catalyst SD-WAN Manager contains an exposure of sensitive information to an unauthorized actor vulnerability that could allow remote attackers to view sensitive information on affected systems.
|
Network gear Yacht-focused | Apr 20, 2026 |
| CVE-2026-20128 |
Cisco
Catalyst SD-WAN Manager
|
Cisco Catalyst SD-WAN Manager Storing Passwords in a Recoverable Format Vulnerability
Cisco Catalyst SD-WAN Manager contains a storing passwords in a recoverable format vulnerability that allows an authenticated, local attacker to gain DCA user privileges by accessing a credential file for the DCA user on the filesystem as a low-privileged user.
|
Network gear Yacht-focused | Apr 20, 2026 |
| CVE-2026-21643 |
Fortinet
FortiClient EMS
|
Fortinet FortiClient EMS SQL Injection Vulnerability
Fortinet FortiClient EMS contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.
|
Network gear VPN / Remote access Yacht-focused | Apr 13, 2026 |
| CVE-2026-35616 |
Fortinet
FortiClient EMS
|
Fortinet FortiClient EMS Improper Access Control Vulnerability
Fortinet FortiClient EMS contains an improper access control vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests.
|
Network gear VPN / Remote access Yacht-focused | Apr 6, 2026 |
| CVE-2025-53521 |
F5
BIG-IP
|
F5 BIG-IP Stack-Based Buffer Overflow Vulnerability
F5 BIG-IP APM contains a stack-based buffer overflow vulnerability that could allow a threat actor to achieve remote code execution.
|
Network gear Yacht-focused | Mar 27, 2026 |
| CVE-2026-20131 |
Cisco
Secure Firewall Management Center (FMC)
|
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management Deserialization of Untrusted Data Vulnerabili…
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management contain a deserialization of untrusted data vulnerability in the web-based management interface that could allow an unauthenticated, remote attacker to execute arbitrary Java code as root on an affected device.
|
Ransomware Network gear Yacht-focused | Mar 19, 2026 |
| CVE-2022-20775 |
Cisco
SD-WAN
|
Cisco SD-WAN Path Traversal Vulnerability
Cisco SD-WAN CLI contains a path traversal vulnerability that could allow an authenticated local attacker to gain elevated privileges via improper access controls on commands within the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user.
|
Network gear Yacht-focused | Feb 25, 2026 |
| CVE-2026-20127 |
Cisco
Catalyst SD-WAN Controller and Manager
|
Cisco Catalyst SD-WAN Controller and Manager Authentication Bypass Vulnerability
Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, contain an authentication bypass vulnerability could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system. This vulnerability exists because the peering authentication…
|
Network gear Yacht-focused | Feb 25, 2026 |
| CVE-2026-24858 |
Fortinet
Multiple Products
|
Fortinet Multiple Products Authentication Bypass Using an Alternate Path or Channel Vulnerability
Fortinet FortiAnalyzer, FortiManager, FortiOS, and FortiProxy contain an authentication bypass using an alternate path or channel that could allow an attacker with a FortiCloud account and a registered device to log into other devices registered to other accounts, if FortiCloud SSO authentication is enabled on those devices.
|
Network gear Yacht-focused | Jan 27, 2026 |
| CVE-2026-20045 |
Cisco
Unified Communications Manager
|
Cisco Unified Communications Products Code Injection Vulnerability
Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), Cisco Unity Connection, and Cisco Webex Calling Dedicated Instance contain a code injection vulnerability that could allow the attacker to obtain us…
|
Network gear Yacht-focused | Jan 21, 2026 |
| CVE-2025-40602 |
SonicWall
SMA1000 appliance
|
SonicWall SMA1000 Missing Authorization Vulnerability
SonicWall SMA1000 contains a missing authorization vulnerability that could allow for privilege escalation appliance management console (AMC) of affected devices.
|
Network gear Yacht-focused | Dec 17, 2025 |
| CVE-2025-20393 |
Cisco
Multiple Products
|
Cisco Multiple Products Improper Input Validation Vulnerability
Cisco Secure Email Gateway, Secure Email, AsyncOS Software, and Web Manager appliances contains an improper input validation vulnerability that allows threat actors to execute arbitrary commands with root privileges on the underlying operating system of an affected appliance.
|
Network gear M365 / Email Yacht-focused | Dec 17, 2025 |
| CVE-2025-59718 |
Fortinet
Multiple Products
|
Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability
Fortinet FortiOS, FortiSwitchMaster, FortiProxy, and FortiWeb contain an improper verification of cryptographic signature vulnerability that may allow an unauthenticated attacker to bypass the FortiCloud SSO login authentication via a crafted SAML message. Please be aware that CVE-2025-59719 pertains to the same problem and is mentioned in the same vendor a…
|
Network gear Yacht-focused | Dec 16, 2025 |
| CVE-2022-37055 |
D-Link
Routers
|
D-Link Routers Buffer Overflow Vulnerability
D-Link Routers contains a buffer overflow vulnerability that has a high impact on confidentiality, integrity, and availability. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Dec 8, 2025 |
| CVE-2025-58034 |
Fortinet
FortiWeb
|
Fortinet FortiWeb OS Command Injection Vulnerability
Fortinet FortiWeb contains an OS command Injection vulnerability that may allow an authenticated attacker to execute unauthorized code on the underlying system via crafted HTTP requests or CLI commands.
|
Network gear Yacht-focused | Nov 18, 2025 |
| CVE-2025-64446 |
Fortinet
FortiWeb
|
Fortinet FortiWeb Path Traversal Vulnerability
Fortinet FortiWeb contains a relative path traversal vulnerability that may allow an unauthenticated attacker to execute administrative commands on the system via crafted HTTP or HTTPS requests.
|
Network gear Yacht-focused | Nov 14, 2025 |
| CVE-2015-7755 |
Juniper
ScreenOS
|
Juniper ScreenOS Improper Authentication Vulnerability
Juniper ScreenOS contains an improper authentication vulnerability that could allow unauthorized remote administrative access to the device.
|
Network gear Yacht-focused | Oct 2, 2025 |
| CVE-2025-20352 |
Cisco
IOS and IOS XE
|
Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution Vulnerability
Cisco IOS and IOS XE contains a stack-based buffer overflow vulnerability in the Simple Network Management Protocol (SNMP) subsystem that could allow for denial of service or remote code execution. A successful exploit could allow a low-privileged attacker to cause the affected system to reload, resulting in a DoS condition, or allow a high-privileged attac…
|
Network gear Yacht-focused | Sep 29, 2025 |
| CVE-2025-20362 |
Cisco
Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense
|
Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing Authorization Vulnerability
Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a missing authorization vulnerability. This vulnerability could be chained with CVE-2025-20333.
|
Network gear Yacht-focused | Sep 25, 2025 |
| CVE-2025-20333 |
Cisco
Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense
|
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer Overflow Vulnerability
Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Software VPN Web Server contain a buffer overflow vulnerability that allows for remote code execution. This vulnerability could be chained with CVE-2025-20362.
|
Network gear Yacht-focused | Sep 25, 2025 |
| CVE-2023-50224 |
TP-Link
TL-WR841N
|
TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability
TP-Link TL-WR841N contains an authentication bypass by spoofing vulnerability within the httpd service, which listens on TCP port 80 by default, leading to the disclose of stored credentials. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Server OS / DB / Web Yacht-focused | Sep 3, 2025 |
| CVE-2025-9377 |
TP-Link
Multiple Routers
|
TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability
TP-Link Archer C7(EU) and TL-WR841N/ND(MS) contain an OS command injection vulnerability that exists in the Parental Control page. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Sep 3, 2025 |
| CVE-2020-24363 |
TP-Link
TL-WA855RE
|
TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability
TP-link TL-WA855RE contains a missing authentication for critical function vulnerability. This vulnerability could allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password. The impacted products co…
|
Network gear Yacht-focused | Sep 2, 2025 |
| CVE-2020-25078 |
D-Link
DCS-2530L and DCS-2670L Devices
|
D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability
D-Link DCS-2530L and DCS-2670L devices contains an unspecified vulnerability that could allow for remote administrator password disclosure. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Aug 5, 2025 |
| CVE-2020-25079 |
D-Link
DCS-2530L and DCS-2670L Devices
|
D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability
D-Link DCS-2530L and DCS-2670L devices contains a command injection vulnerability in the cgi-bin/ddns_enc.cgi. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Aug 5, 2025 |
| CVE-2022-40799 |
D-Link
DNR-322L
|
D-Link DNR-322L Download of Code Without Integrity Check Vulnerability
D-Link DNR-322L contains a download of code without integrity check vulnerability that could allow an authenticated attacker to execute OS level commands on the device. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Aug 5, 2025 |
| CVE-2025-20337 |
Cisco
Identity Services Engine
|
Cisco Identity Services Engine Injection Vulnerability
Cisco Identity Services Engine contains an injection vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC due to insufficient validation of user-supplied input allowing an attacker to exploit this vulnerability by submitting a crafted API request. Successful exploitation could allow an attacker to perform remote code execution and obtaining root p…
|
Network gear Yacht-focused | Jul 28, 2025 |
| CVE-2025-20281 |
Cisco
Identity Services Engine
|
Cisco Identity Services Engine Injection Vulnerability
Cisco Identity Services Engine contains an injection vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC due to insufficient validation of user-supplied input allowing an attacker to exploit this vulnerability by submitting a crafted API request. Successful exploitation could allow an attacker to perform remote code execution and obtaining root p…
|
Network gear Yacht-focused | Jul 28, 2025 |
| CVE-2025-25257 |
Fortinet
FortiWeb
|
Fortinet FortiWeb SQL Injection Vulnerability
Fortinet FortiWeb contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized SQL code or commands via crafted HTTP or HTTPs requests.
|
Network gear Yacht-focused | Jul 18, 2025 |
| CVE-2019-6693 |
Fortinet
FortiOS
|
Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability
Fortinet FortiOS contains a use of hard-coded credentials vulnerability that could allow an attacker to cipher sensitive data in FortiOS configuration backup file via knowledge of the hard-coded key.
|
Ransomware Network gear Yacht-focused | Jun 25, 2025 |
| CVE-2024-0769 |
D-Link
DIR-859 Router
|
D-Link DIR-859 Router Path Traversal Vulnerability
D-Link DIR-859 routers contain a path traversal vulnerability in the file /hedwig.cgi of the component HTTP POST Request Handler. Manipulation of the argument service with the input ../../../../htdocs/webinc/getcfg/DHCPS6.BRIDGE-1.xml allows for the leakage of session data potentially enabling privilege escalation and unauthorized control of the device. Thi…
|
Network gear Yacht-focused | Jun 25, 2025 |
| CVE-2023-33538 |
TP-Link
Multiple Routers
|
TP-Link Multiple Routers Command Injection Vulnerability
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 contain a command injection vulnerability via the component /userRpm/WlanNetworkRpm. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
|
Network gear Yacht-focused | Jun 16, 2025 |
| CVE-2025-32756 |
Fortinet
Multiple Products
|
Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability
Fortinet FortiFone, FortiVoice, FortiNDR and FortiMail contain a stack-based overflow vulnerability that may allow a remote unauthenticated attacker to execute arbitrary code or commands via crafted HTTP requests.
|
Network gear Yacht-focused | May 14, 2025 |
Source: CISA Known Exploited Vulnerabilities catalog. Updated hourly. Want crew who know what to do when one of these lands aboard? Start the free crew course →