KEVIntel

Known Exploited Vulnerabilities

Focus on What Matters

There are 297,495 vulnerabilities in the CVE database. Whilst only 0.6% are ever actively exploited.

This list contains the vulnerabilities that are actively exploited by malware and threat actors that you should prioritize first.

0.6% Exploited

This table displays known exploited vulnerabilities (KEVs) that have been cataloged from over 60 public sources, including CISA, and our own private sensors. Each entry links to a CVE identifier, where the CVE details are enriched with EPSS scores, online mentions, scanner inclusion, exploitation, tags, and other metadata. The goal is to be an early warning system, even before being published by CISA. More data and features coming soon!

CVE ID Vendor Source
CVE-2024-28255 open-metadata The Shadowserver (via CIRCL)
CVE-2025-4632 Samsung Electronics TheHackerNews
CVE-2014-3206 Seagate The Shadowserver (via CIRCL)
CVE-2022-0781 Nirweb support The Shadowserver (via CIRCL)
CVE-2022-0784 kbowson The Shadowserver (via CIRCL)
CVE-2019-12987 Citrix The Shadowserver (via CIRCL)
CVE-2019-12986 Citrix The Shadowserver (via CIRCL)
CVE-2025-42999 SAP_SE TheHackerNews
CVE-2019-12985 Citrix The Shadowserver (via CIRCL)
CVE-2025-4428 Ivanti Tenable Blog
CVE-2025-4427 Ivanti Tenable Blog
CVE-2025-32756 Fortinet Arctic Wolf
CVE-2025-30385 Microsoft Tenable Blog
CVE-2024-48766 NetAlertX CVE
CVE-2024-46506 NetAlertX CVE
CVE-2019-12990 Citrix The Shadowserver (via CIRCL)
CVE-2018-10942 PrestaShop The Shadowserver (via CIRCL)
CVE-2018-3810 Oturia The Shadowserver (via CIRCL)
CVE-2018-16763 FUEL CMS The Shadowserver (via CIRCL)
CVE-2016-10108 Western Digital The Shadowserver (via CIRCL)
CVE-2021-34993 Commvault The Shadowserver (via CIRCL)
CVE-2025-32709 Microsoft CISA
CVE-2025-30397 Microsoft CISA
CVE-2025-30400 Microsoft CISA
CVE-2025-32706 Microsoft CISA
Displaying vulnerabilities 126 - 150 of 1850 in total