Critical Threat Feed
Showing vulnerabilities with a CRITICAL rating or those confirmed to be actively exploited by CISA.
CVE-2026-45721
Target: Algernon - Web Server
CVE-2026-42901
Target: Microsoft Entra ID
CVE-2026-41104
Target: Microsoft Planetary Computer Pro - Deserialization Component
CVE-2026-41090
Target: Microsoft Copilot
CVE-2026-33843
Target: Microsoft Azure Active Directory B2C
CVE-2026-23652
Target: Microsoft Power Pages
CVE-2026-8670
Target: Avantra - Session Management
CVE-2026-8398
Actively ExploitedTarget: DAEMON Tools Lite - DTHelper.exe, DiscSoftBusServiceLite.exe, DTShellHlp.exe
CVE-2026-44277
Target: FortiAuthenticator - Authentication Service
CVE-2026-31217
Target: Optimate - Neural Magic Training
CVE-2010-0806
Actively ExploitedTarget: Microsoft Internet Explorer - Peer Objects component (iepeers.dll)
CVE-2009-3555
Target: TLS/SSL Protocol - Various Implementations
CVE-2009-1537
Actively ExploitedTarget: Microsoft DirectX - QuickTime Movie Parser Filter
CVE-2008-4250
Actively ExploitedTarget: Windows - Server Service
CVE-2026-7343
Target: Google Chrome - Views
CVE-2026-35431
Target: Microsoft Entra ID - Entitlement Management
CVE-2026-33819
Target: Microsoft Bing - Deserialization Component
CVE-2026-32210
Target: Microsoft Dynamics 365 - Online Service
CVE-2026-24303
Target: Microsoft Partner Center - Access Control Service
CVE-2026-33519
Target: Esri Portal for ArcGIS - Authorization Service
CVE-2026-33518
Target: Esri Portal for ArcGIS - Developer Credentials
CVE-2017-15944
Actively ExploitedTarget: PAN-OS - Management Interface
CVE-2017-11882
Actively ExploitedTarget: Microsoft Office - Microsoft Office Memory Corruption Vulnerability
CVE-2017-11826
Actively ExploitedTarget: Microsoft Office - Word
CVE-2017-11774
Actively ExploitedTarget: Microsoft Office - Outlook
CVE-2017-8759
Actively ExploitedTarget: Microsoft .NET Framework - .NET Framework Runtime
CVE-2017-6627
Actively ExploitedTarget: Cisco IOS - UDP Processing Code
CVE-2015-2291
Actively ExploitedTarget: Intel Ethernet diagnostics driver - IQVW32.sys/IQVW64.sys
CVE-2017-6738
Actively ExploitedTarget: Cisco IOS and IOS XE Software - SNMP Subsystem
CVE-2017-6736
Actively ExploitedTarget: Cisco IOS and IOS XE Software - SNMP Subsystem
CVE-2017-8570
Actively ExploitedTarget: Microsoft Office - Microsoft Office Core
CVE-2017-8543
Actively ExploitedTarget: Windows - Windows Search
CVE-2017-8464
Actively ExploitedTarget: Windows - Windows Shell
CVE-2017-8540
Actively ExploitedTarget: Microsoft Malware Protection Engine
CVE-2017-0263
Actively ExploitedTarget: Windows - Win32k Kernel-Mode Driver
CVE-2017-0262
Actively ExploitedTarget: Microsoft Office - Office Application
CVE-2017-0261
Actively ExploitedTarget: Microsoft Office - Office Application
CVE-2017-0213
Actively ExploitedTarget: Windows - COM Aggregate Marshaler
CVE-2017-0199
Actively ExploitedTarget: Microsoft Office - WordPad
CVE-2017-3881
Actively ExploitedTarget: Cisco IOS and Cisco IOS XE Software - Cluster Management Protocol (CMP)
CVE-2017-0149
Actively ExploitedTarget: Microsoft Internet Explorer - Browser Engine
CVE-2017-0148
Actively ExploitedTarget: Windows - SMBv1 Server
CVE-2017-0147
Actively ExploitedTarget: Windows - SMBv1 Server
CVE-2017-0146
Actively ExploitedTarget: Microsoft Windows - SMBv1 Server
CVE-2017-0145
Actively ExploitedTarget: Windows - SMBv1 Server
CVE-2017-0144
Actively ExploitedTarget: Microsoft Windows - SMBv1 Server
CVE-2017-0143
Actively ExploitedTarget: Microsoft Windows - SMBv1 Server
CVE-2017-0101
Actively ExploitedTarget: Windows - Transaction Manager
CVE-2017-0005
Actively ExploitedTarget: Windows - Graphics Device Interface (GDI)
CVE-2017-0001
Actively ExploitedTarget: Windows - Graphics Device Interface (GDI)
CVE-2017-0037
Actively ExploitedTarget: Microsoft Internet Explorer - mshtml.dll
CVE-2016-7262
Actively ExploitedTarget: Microsoft Office - Excel
CVE-2016-7256
Actively ExploitedTarget: Windows - Font Library (atmfd.dll)
CVE-2016-7255
Actively ExploitedTarget: Windows - Win32k Kernel Driver
CVE-2016-7201
Actively ExploitedTarget: Microsoft Edge - Chakra JavaScript Engine
CVE-2016-7200
Actively ExploitedTarget: Microsoft Edge - Chakra JavaScript Engine
CVE-2016-7193
Actively ExploitedTarget: Microsoft Office - Word
CVE-2016-3393
Actively ExploitedTarget: Windows - Graphics Device Interface (GDI)
CVE-2016-6415
Actively ExploitedTarget: Cisco IOS - IKEv1 Server Implementation
CVE-2016-6367
Actively ExploitedTarget: Cisco Adaptive Security Appliance (ASA) Software - CLI
CVE-2016-6366
Actively ExploitedTarget: Cisco Adaptive Security Appliance (ASA) Software - SNMP Service
CVE-2016-3309
Actively ExploitedTarget: Windows - Win32k Kernel-Mode Driver
CVE-2016-3235
Actively ExploitedTarget: Microsoft Visio - Visio Application
CVE-2016-0189
Actively ExploitedTarget: Internet Explorer - JScript and VBScript Engines
CVE-2016-0185
Actively ExploitedTarget: Windows - Media Center
CVE-2016-0167
Actively ExploitedTarget: Windows - Win32k Kernel-Mode Driver
CVE-2016-1010
Actively ExploitedTarget: Adobe Flash Player - Flash Player Component
CVE-2016-0099
Actively ExploitedTarget: Windows - Secondary Logon Service
CVE-2016-0984
Actively ExploitedTarget: Adobe Flash Player - Flash Player Plugin
CVE-2016-0040
Actively ExploitedTarget: Windows - Kernel
CVE-2016-0034
Actively ExploitedTarget: Microsoft Silverlight - Runtime
CVE-2015-8651
Actively ExploitedTarget: Adobe Flash Player - Core
CVE-2015-6175
Actively ExploitedTarget: Windows 10 - Kernel
CVE-2015-7645
Actively ExploitedTarget: Adobe Flash Player - Flash Player Plugin
CVE-2015-2546
Actively ExploitedTarget: Windows - Win32k Kernel-Mode Driver
CVE-2015-2545
Actively ExploitedTarget: Microsoft Office - Graphics Rendering Engine
CVE-2015-2502
Actively ExploitedTarget: Microsoft Internet Explorer
CVE-2015-1642
Actively ExploitedTarget: Microsoft Office - Document Parsing Component
CVE-2015-2426
Actively ExploitedTarget: Windows - Adobe Type Manager Library
CVE-2015-2387
Actively ExploitedTarget: Windows - Adobe Type Manager Font Driver
CVE-2015-2425
Actively ExploitedTarget: Microsoft Internet Explorer 11
CVE-2015-2424
Actively ExploitedTarget: Microsoft Office - PowerPoint/Word
CVE-2015-2419
Actively ExploitedTarget: Internet Explorer - JScript 9
CVE-2015-2360
Actively ExploitedTarget: Windows - win32k.sys
CVE-2015-1770
Actively ExploitedTarget: Microsoft Office - Office Core
CVE-2015-1671
Actively ExploitedTarget: Microsoft .NET Framework - Windows DirectWrite library
CVE-2015-1701
Actively ExploitedTarget: Windows - Win32k.sys
CVE-2015-1641
Actively ExploitedTarget: Microsoft Office - Word
CVE-2015-1635
Actively ExploitedTarget: Windows - HTTP.sys
CVE-2015-0666
Actively ExploitedTarget: Cisco Prime Data Center Network Manager (DCNM) - fmserver servlet
CVE-2015-0016
Actively ExploitedTarget: Windows - TS WebProxy
CVE-2014-6324
Actively ExploitedTarget: Windows - Kerberos Key Distribution Center (KDC)
CVE-2014-6332
Actively ExploitedTarget: Windows - OLE Automation
CVE-2014-4077
Actively ExploitedTarget: Microsoft Windows - IME for Japanese (IMJPDCT.EXE)
CVE-2014-6352
Actively ExploitedTarget: Microsoft Windows - OLE
CVE-2014-4148
Actively ExploitedTarget: Windows - win32k.sys
CVE-2014-4114
Actively ExploitedTarget: Microsoft Windows - OLE
CVE-2014-4113
Actively ExploitedTarget: Windows - win32k.sys Kernel Mode Driver
CVE-2014-2817
Actively ExploitedTarget: Microsoft Internet Explorer
CVE-2014-1812
Actively ExploitedTarget: Windows - Group Policy