/// CISA KEV · UPDATED DAILY

Actively exploited vulnerabilities

15 new exploited flaws this week

1710in the catalog
45in the last 30 days
360used in ransomware

The CISA KEV catalog lists vulnerabilities that are being exploited in real attacks, not ones that might be. It is the list to start from when deciding what to patch first.

This week

Added earlier

What the KEV catalog is

Data from CISA’s Known Exploited Vulnerabilities catalog, a US Government work in the public domain. The deadlines shown are binding on US federal agencies (BOD 22-01); for everyone else they are a sound priority reference.

CVE database