Exploitation dashboard
Actively exploited vulnerabilities
Every vulnerability here has reliable evidence of exploitation in the wild, based on the CISA Known Exploited Vulnerabilities catalog. If you run an affected product, patch or mitigate it first.
1,733
Known exploited (all time)
39
Added in last 30 days
361
Used by ransomware
5 matching vulnerabilities
| CVE | Vendor / product | Vulnerability | Severity | Added | Ransomware |
|---|---|---|---|---|---|
| CVE-2026-85706 | GitLab | GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability | Severity: Critical CVSS 10.0 | Sep 11, 2026 | Not known |
| CVE-2021-22175 | GitLab | GitLab Server-Side Request Forgery (SSRF) Vulnerability | Severity: Critical CVSS 9.8 | Feb 18, 2026 | Not known |
| CVE-2021-39935 | GitLab | GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability | Severity: High CVSS 7.5 | Feb 3, 2026 | Not known |
| CVE-2023-7028 | GitLab | GitLab Community and Enterprise Editions Improper Access Control Vulnerability | Severity: Critical CVSS 9.8 | May 1, 2024 | Not known |
| CVE-2021-22205 | GitLab | GitLab Community and Enterprise Editions Remote Code Execution Vulnerability | Severity: Critical CVSS 10.0 | Nov 3, 2021 | Known |
Source: CISA Known Exploited Vulnerabilities catalog (US government, public domain), refreshed hourly. CVSS scores from the NIST National Vulnerability Database are added as they are fetched.
