Vendor

Qlik

As of , 3 Qlik vulnerabilities are on CISA's list of exploited vulnerabilities, 3 of them used in ransomware campaigns; 0 were added in 2026. Patch first: CVE-2023-41265.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2023-41265HTTP TunnelingQlik SensePatch this weekRansomware use; EPSS 0.880.88
2CVE-2023-41266Path TraversalQlik SensePatch this weekRansomware use; EPSS 0.850.85
3CVE-2023-48365HTTP TunnelingQlik SensePatch this weekRansomware use0.47

Added each year

0.511.522023: 2220232024: nonenone20242025: 1120252026: nonenone2026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20232
2024none
20251
2026none

Used in ransomware

Changes CISA made to these entries

  1. CVE-2023-48365 Qlik SenseRansomware use: Unknown to Known.

Every change we recorded