KEVIntel

Known Exploited Vulnerabilities

Focus on What Matters

There are 304,048 vulnerabilities in the CVE database. Whilst only 0.7% are ever actively exploited.

This list contains the vulnerabilities that are actively exploited by malware and threat actors that you should prioritize first.

0.7% Exploited

This table displays known exploited vulnerabilities (KEVs) that have been cataloged from over 60 public sources, including CISA, and our own private sensors. Each entry links to a CVE identifier, where the CVE details are enriched with EPSS scores, online mentions, scanner inclusion, exploitation, tags, and other metadata. The goal is to be an early warning system, even before being published by CISA. More data and features coming soon!

CVE ID Vendor Source
CVE-2024-0352 n/a The Shadowserver (via CIRCL)
CVE-2022-39952 Fortinet The Shadowserver (via CIRCL)
CVE-2010-0219 Apache Software Foundation The Shadowserver (via CIRCL)
CVE-2023-37679 n/a The Shadowserver (via CIRCL)
CVE-2021-21307 lucee The Shadowserver (via CIRCL)
CVE-2022-29383 n/a The Shadowserver (via CIRCL)
CVE-2021-21978 n/a The Shadowserver (via CIRCL)
CVE-2025-31200 Apple CISA
CVE-2025-31201 Apple CISA
CVE-2025-24054 Microsoft CISA
CVE-2021-20035 SonicWall CISA
CVE-2025-3248 langflow-ai CVE
CVE-2025-3102 brainstormforce TheHackerNews
CVE-2024-58136 yiiframework CVE
CVE-2024-53197 Linux CISA
CVE-2024-53150 Linux CISA
CVE-2025-30406 Gladinet CISA
CVE-2025-29824 Microsoft CISA
CVE-2025-31161 CrushFTP CISA
CVE-2025-22457 Ivanti CISA
CVE-2025-24813 Apache Software Foundation CISA
CVE-2024-20439 Cisco CISA
CVE-2025-30355 element-hq CVE
CVE-2025-2857 Mozilla CVE
CVE-2025-2783 Google CISA
Displaying vulnerabilities 451 - 475 of 2008 in total