Exploitation dashboard
Actively exploited vulnerabilities
Every vulnerability here has reliable evidence of exploitation in the wild, based on the CISA Known Exploited Vulnerabilities catalog. If you run an affected product, patch or mitigate it first.
1,734
Known exploited (all time)
39
Added in last 30 days
361
Used by ransomware
6 matching vulnerabilities
| CVE | Vendor / product | Vulnerability | Severity | Added | Ransomware |
|---|---|---|---|---|---|
| CVE-2025-9377 | TP-Link | TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability | Severity: High CVSS 8.6 | Sep 3, 2025 | Not known |
| CVE-2023-50224 | TP-Link | TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability | Severity: Elevated CVSS 6.5 | Sep 3, 2025 | Not known |
| CVE-2020-24363 | TP-Link | TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability | Severity: High CVSS 8.8 | Sep 2, 2025 | Not known |
| CVE-2023-33538 | TP-Link | TP-Link Multiple Routers Command Injection Vulnerability | Severity: High CVSS 8.8 | Jun 16, 2025 | Not known |
| CVE-2023-1389 | TP-Link | TP-Link Archer AX-21 Command Injection Vulnerability | Severity: High CVSS 8.8 | May 1, 2023 | Not known |
| CVE-2015-3035 | TP-Link | TP-Link Multiple Archer Devices Directory Traversal Vulnerability | Severity: High CVSS 7.5 | Mar 25, 2022 | Not known |
Source: CISA Known Exploited Vulnerabilities catalog (US government, public domain), refreshed hourly. CVSS scores from the NIST National Vulnerability Database are added as they are fetched.
