Product of Microsoft

Silverlight

As of , 3 Microsoft Silverlight vulnerabilities are on CISA's list of exploited vulnerabilities, 2 of them used in ransomware campaigns; 0 were added in 2026. Patch first: CVE-2013-0074.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2013-0074Double DereferenceMicrosoft SilverlightPatch this weekRansomware use; Metasploit module; EPSS 0.79; verified Exploit-DB entry0.79
2CVE-2013-3896Information DisclosureMicrosoft SilverlightPatch this weekMetasploit module; EPSS 0.68; verified Exploit-DB entry0.68
3CVE-2016-0034Runtime Remote Code ExecutionMicrosoft SilverlightPatch this weekRansomware use; EPSS 0.690.69

Added each year

1232022: 3320222023: nonenone20232024: nonenone20242025: nonenone20252026: nonenone2026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20223
2023none
2024none
2025none
2026none

Used in ransomware