Patch first, page 6
As of , all 1,734 vulnerabilities on CISA's list of exploited vulnerabilities, in our patch-first order: 101 to patch now.
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 501 | CVE-2017-1000486Primefaces Remote Code Execution | Primetek Primefaces Application | Patch this weekMetasploit module; EPSS 0.94 | 0.94 | ||
| 502 | CVE-2019-1458Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use; Metasploit module; EPSS 0.74 | 0.74 | ||
| 503 | CVE-2019-7609Arbitrary Code Execution | Elastic Kibana | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| 504 | CVE-2021-36260Improper Input Validation | Hikvision Security cameras web server | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 505 | CVE-2017-12149Remote Code Execution | Red Hat JBoss Application Server | Patch this weekRansomware use; Metasploit module; EPSS 0.91 | 0.91 | ||
| 506 | CVE-2020-8816Remote Code Execution | Pi-hole AdminLTE | Patch this weekMetasploit module; EPSS 0.78 | 0.78 | ||
| 507 | CVE-2021-44228Remote Code Execution | Apache Log4j2 | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 508 | CVE-2018-14847Router OS Directory Traversal | MikroTik RouterOS | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| 509 | CVE-2021-44077ManageEngine ServiceDesk Plus Remote Code Execution | Zoho ManageEngine ServiceDesk Plus (SDP) / SupportCenter Plus | Patch this weekMetasploit module; EPSS 0.93 | 0.93 | ||
| 510 | CVE-2021-22204Remote Code Execution | Perl Exiftool | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 511 | CVE-2021-40449Win32k Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.74 | 0.74 | ||
| 512 | CVE-2021-42321Server Remote Code Execution | Microsoft Exchange | Patch this weekRansomware use; Metasploit module; EPSS 0.92 | 0.92 | ||
| 513 | CVE-2014-1812Group Policy Preferences Password Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.65 | 0.65 | ||
| 514 | CVE-2017-9805Deserialization of Untrusted Data | Apache Struts | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 515 | CVE-2017-11882Memory Corruption | Microsoft Office | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 516 | CVE-2018-0296Denial-of-Service | Cisco Adaptive Security Appliance (ASA) | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 517 | CVE-2018-13379SSL VPN Path Traversal | Fortinet FortiOS | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 518 | CVE-2018-15961Unrestricted File Upload | Adobe ColdFusion | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 519 | CVE-2019-8394ServiceDesk Plus (SDP) File Upload | Zoho ManageEngine | Patch this weekMetasploit module; EPSS 0.63 | 0.63 | ||
| 520 | CVE-2019-11510Arbitrary File Read | Ivanti Pulse Connect Secure | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 521 | CVE-2019-11580Remote Code Execution | Atlassian Crowd and Crowd Data Center | Patch this weekRansomware use; Metasploit module; EPSS 0.95 | 0.95 | ||
| 522 | CVE-2019-16759PHP Module Remote Code Execution | vBulletin vBulletin | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 523 | CVE-2019-18935Deserialization of Untrusted Data | Progress Telerik UI for ASP.NET AJAX | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 524 | CVE-2019-19781ADC, Gateway, and SD-WAN WANOP Appliance Code Execution | Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 525 | CVE-2019-20085Directory Traversal | TVT NVMS-1000 | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| 526 | CVE-2020-1147.NET Framework, SharePoint, and Visual Studio Remote Code Execution | Microsoft .NET Framework, SharePoint, Visual Studio | Patch this weekMetasploit module; EPSS 0.94 | 0.94 | ||
| 527 | CVE-2020-1472Privilege Escalation | Microsoft Netlogon | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 528 | CVE-2020-3952Information Disclosure | VMware vCenter Server | Patch this weekMetasploit module; EPSS 0.90 | 0.90 | ||
| 529 | CVE-2020-4427Security Bypass | IBM Data Risk Manager | Patch this weekMetasploit module; EPSS 0.70 | 0.70 | ||
| 530 | CVE-2020-4428Remote Code Execution | IBM Data Risk Manager | Patch this weekMetasploit module; EPSS 0.62 | 0.62 | ||
| 531 | CVE-2020-5902Traffic Management User Interface (TMUI) Remote Code Execution | F5 BIG-IP | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 532 | CVE-2020-6207Missing Authentication for Critical Function | SAP Solution Manager | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| 533 | CVE-2020-6287Missing Authentication for Critical Function | SAP NetWeaver | Patch this weekMetasploit module; EPSS 0.95 | 0.95 | ||
| 534 | CVE-2020-8260Code Execution | Ivanti Pulse Connect Secure | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| 535 | CVE-2020-11651Authentication Bypass | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.97 | 0.97 | ||
| 536 | CVE-2020-11652Path Traversal | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.86 | 0.86 | ||
| 537 | CVE-2020-11738File Download | WordPress Snap Creek Duplicator Plugin | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| 538 | CVE-2020-14750Remote Code Execution | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 539 | CVE-2020-14871Unspecified | Oracle Solaris and Zettabyte File System (ZFS) | Patch this weekMetasploit module; EPSS 0.80 | 0.80 | ||
| 540 | CVE-2020-14882Remote Code Execution | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 541 | CVE-2020-14883Unspecified | Oracle WebLogic Server | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| 542 | CVE-2020-15505Remote Code Execution | Ivanti MobileIron Multiple Products | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 543 | CVE-2020-16846Shell Injection | SaltStack Salt | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 544 | CVE-2020-17496PHP Module Remote Code Execution | vBulletin vBulletin | Patch this weekMetasploit module; EPSS 0.87 | 0.87 | ||
| 545 | CVE-2020-17530Remote Code Execution | Apache Struts | Patch this weekMetasploit module; EPSS 0.96 | 0.96 | ||
| 546 | CVE-2021-1497Installer Virtual Machine Command Injection | Cisco HyperFlex HX | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 547 | CVE-2021-1498Data Platform Command Injection | Cisco HyperFlex HX | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 548 | CVE-2021-1675Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.85 | 0.85 | ||
| 549 | CVE-2021-1732Privilege Escalation | Microsoft Win32k | Patch this weekRansomware use; Metasploit module; EPSS 0.78 | 0.78 | ||
| 550 | CVE-2021-21220Improper Input Validation | Google Chromium V8 | Patch this weekMetasploit module; EPSS 0.70 | 0.70 | ||
| 551 | CVE-2021-21972Remote Code Execution | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 552 | CVE-2021-21985Improper Input Validation | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 553 | CVE-2021-22005File Upload | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 554 | CVE-2021-22205Remote Code Execution | GitLab Community and Enterprise Editions | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 555 | CVE-2021-22502Operation Bridge Report (OBR) Remote Code Execution | Micro Focus Operation Bridge Reporter (OBR) | Patch this weekMetasploit module; EPSS 0.97 | 0.97 | ||
| 556 | CVE-2021-22986iControl REST Remote Code Execution | F5 BIG-IP and BIG-IQ Centralized Management | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 557 | CVE-2021-26084Object-Graph Navigation Language (OGNL) Injection | Atlassian Confluence Server and Data Center | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 558 | CVE-2021-26855Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 559 | CVE-2021-27065Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 560 | CVE-2021-30657Unspecified | Apple macOS | Patch this weekMetasploit module; EPSS 0.69 | 0.69 | ||
| 561 | CVE-2021-31207Security Feature Bypass | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 562 | CVE-2021-34473Remote Code Execution | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 563 | CVE-2021-34523Privilege Escalation | Microsoft Exchange Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 564 | CVE-2021-34527Print Spooler Remote Code Execution | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 565 | CVE-2021-35464Core Server Remote Code Execution | ForgeRock Access Management (AM) | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 566 | CVE-2021-36942Local Security Authority (LSA) Spoofing | Microsoft Windows | Patch this weekRansomware use; Metasploit module; EPSS 0.66 | 0.66 | ||
| 567 | CVE-2021-38647Remote Code Execution | Microsoft Open Management Infrastructure (OMI) | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 568 | CVE-2021-40444Remote Code Execution | Microsoft MSHTML | Patch this weekRansomware use; Metasploit module; EPSS 0.97 | 0.97 | ||
| 569 | CVE-2021-40539ADSelfService Plus Authentication Bypass | Zoho ManageEngine | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 570 | CVE-2021-42258SQL Injection | BQE BillQuick Web Suite | Patch this weekRansomware use; Metasploit module; EPSS 0.74 | 0.74 | ||
| 571 | CVE-2025-14611Hard Coded Cryptographic | Gladinet CentreStack and Triofox | Patch this weekMetasploit module; EPSS 0.53 | 0.53 | ||
| 572 | CVE-2023-45249Insecure Default Password | Acronis Cyber Infrastructure (ACI) | Patch this weekMetasploit module; EPSS 0.53 | 0.53 | ||
| 573 | CVE-2014-100005Cross-Site Request Forgery (CSRF) | D-Link DIR-600 Router | Patch this weekMetasploit module | 0.43 | ||
| 574 | CVE-2023-36874Error Reporting Service Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module | 0.43 | ||
| 575 | CVE-2023-28252Common Log File System (CLFS) Driver Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.49 | ||
| 576 | CVE-2020-3153Mobility Client for Windows Uncontrolled Search Path | Cisco AnyConnect Secure | Patch this weekRansomware use; Metasploit module | 0.28 | ||
| 577 | CVE-2021-3493Privilege Escalation | Linux Kernel | Patch this weekMetasploit module | 0.49 | ||
| 578 | CVE-2013-7331Information Disclosure | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.50 | 0.50 | ||
| 579 | CVE-2014-3153Privilege Escalation | Linux Kernel | Patch this weekMetasploit module | 0.37 | ||
| 580 | CVE-2022-22960Privilege Escalation | VMware Multiple Products | Patch this weekMetasploit module | 0.36 | ||
| 581 | CVE-2022-21999Print Spooler Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.41 | ||
| 582 | CVE-2020-0787Background Intelligent Transfer Service (BITS) Improper Privilege Management | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.43 | ||
| 583 | CVE-2017-16651File Disclosure | Roundcube Roundcube Webmail | Patch this weekMetasploit module | 0.46 | ||
| 584 | CVE-2019-0808Privilege Escalation | Microsoft Win32k | Patch this weekMetasploit module; EPSS 0.53 | 0.53 | ||
| 585 | CVE-2020-1054Privilege Escalation | Microsoft Win32k | Patch this weekMetasploit module; EPSS 0.54 | 0.54 | ||
| 586 | CVE-2026-33017Code Injection | Langflow Langflow | Patch this weekMetasploit module | 0.25 | ||
| 587 | CVE-2024-35250Kernel-Mode Driver Untrusted Pointer Dereference | Microsoft Windows | Patch this weekMetasploit module | 0.25 | ||
| 588 | CVE-2023-7101Remote Code Execution | Spreadsheet::ParseExcel Spreadsheet::ParseExcel | Patch this weekMetasploit module | 0.19 | ||
| 589 | CVE-2021-27878Command Execution | Veritas Backup Exec Agent | Patch this weekRansomware use; Metasploit module | 0.24 | ||
| 590 | CVE-2018-8440Privilege Escalation | Microsoft Windows | Patch this weekRansomware use; Metasploit module | 0.18 | ||
| 591 | CVE-2026-48907Improper Access Control | Widget Factory Joomla Content Editor | Patch this weekMetasploit module | 0.16 | ||
| 592 | CVE-2026-9082SQL Injection | Drupal Core | Patch this weekMetasploit module | 0.16 | ||
| 593 | CVE-2026-34197Improper Input Validation | Apache ActiveMQ | Patch this weekMetasploit module | 0.15 | ||
| 594 | CVE-2022-22948Incorrect Default File Permissions | VMware vCenter Server | Patch this weekMetasploit module | 0.13 | ||
| 595 | CVE-2021-27876File Access | Veritas Backup Exec Agent | Patch this weekRansomware use; Metasploit module | 0.14 | ||
| 596 | CVE-2019-3010Privilege Escalation | Oracle Solaris | Patch this weekMetasploit module | 0.13 | ||
| 597 | CVE-2022-26904User Profile Service Privilege Escalation | Microsoft Windows | Patch this weekMetasploit module | 0.17 | ||
| 598 | CVE-2022-0995Out-of-Bounds Write | Linux Kernel | Patch this weekMetasploit module | 0.09 | ||
| 599 | CVE-2020-3433Mobility Client for Windows DLL Hijacking | Cisco AnyConnect Secure | Patch this weekRansomware use; Metasploit module | 0.10 | ||
| 600 | CVE-2021-38648Privilege Escalation | Microsoft Open Management Infrastructure (OMI) | Patch this weekMetasploit module | 0.11 |