Exploitation dashboard
Actively exploited vulnerabilities
Every vulnerability here has reliable evidence of exploitation in the wild, based on the CISA Known Exploited Vulnerabilities catalog. If you run an affected product, patch or mitigate it first.
1,734
Known exploited (all time)
39
Added in last 30 days
361
Used by ransomware
5 matching vulnerabilities
| CVE | Vendor / product | Vulnerability | Severity | Added | Ransomware |
|---|---|---|---|---|---|
| CVE-2024-12987 | DrayTek | DrayTek Vigor Routers OS Command Injection Vulnerability | Severity: Elevated CVSS 6.9 | May 15, 2025 | Not known |
| CVE-2020-15415 | DrayTek | DrayTek Multiple Vigor Routers OS Command Injection Vulnerability | Severity: Critical CVSS 9.8 | Sep 30, 2024 | Not known |
| CVE-2021-20123 | DrayTek | Draytek VigorConnect Path Traversal Vulnerability | Severity: High CVSS 7.5 | Sep 3, 2024 | Not known |
| CVE-2021-20124 | DrayTek | Draytek VigorConnect Path Traversal Vulnerability | Severity: High CVSS 7.5 | Sep 3, 2024 | Not known |
| CVE-2020-8515 | DrayTek | Multiple DrayTek Vigor Routers Web Management Page Vulnerability | Severity: Critical CVSS 9.8 | Nov 3, 2021 | Not known |
Source: CISA Known Exploited Vulnerabilities catalog (US government, public domain), refreshed hourly. CVSS scores from the NIST National Vulnerability Database are added as they are fetched.
