Exploitation dashboard
Actively exploited vulnerabilities
Every vulnerability here has reliable evidence of exploitation in the wild, based on the CISA Known Exploited Vulnerabilities catalog. If you run an affected product, patch or mitigate it first.
1,734
Known exploited (all time)
39
Added in last 30 days
361
Used by ransomware
12 matching vulnerabilities
| CVE | Vendor / product | Vulnerability | Severity | Added | Ransomware |
|---|---|---|---|---|---|
| CVE-2026-34926 | Trend Micro | Trend Micro Apex One (On-Premise) Directory Traversal Vulnerability | Severity: Elevated CVSS 6.7 | May 21, 2026 | Not known |
| CVE-2025-54948 | Trend Micro | Trend Micro Apex One OS Command Injection Vulnerability | Severity: Critical CVSS 9.8 | Aug 18, 2025 | Not known |
| CVE-2023-41179 | Trend Micro | Trend Micro Apex One and Worry-Free Business Security Remote Code Execution Vulnerability | Severity: High CVSS 7.2 | Sep 21, 2023 | Not known |
| CVE-2022-40139 | Trend Micro | Trend Micro Apex One and Apex One as a Service Improper Validation Vulnerability | Severity: High CVSS 7.2 | Sep 15, 2022 | Not known |
| CVE-2022-26871 | Trend Micro | Trend Micro Apex Central Arbitrary File Upload Vulnerability | Severity: Critical CVSS 9.8 | Mar 31, 2022 | Not known |
| CVE-2020-8599 | Trend Micro | Trend Micro Apex One and OfficeScan Authentication Bypass Vulnerability | Severity: Critical CVSS 9.8 | Nov 3, 2021 | Not known |
| CVE-2020-8467 | Trend Micro | Trend Micro Apex One and OfficeScan Remote Code Execution Vulnerability | Severity: High CVSS 8.8 | Nov 3, 2021 | Not known |
| CVE-2020-8468 | Trend Micro | Trend Micro Multiple Products Content Validation Escape Vulnerability | Severity: High CVSS 8.8 | Nov 3, 2021 | Not known |
| CVE-2021-36741 | Trend Micro | Trend Micro Multiple Products Improper Input Validation Vulnerability | Severity: High CVSS 8.8 | Nov 3, 2021 | Not known |
| CVE-2020-24557 | Trend Micro | Trend Micro Multiple Products Improper Access Control Vulnerability | Severity: High CVSS 7.8 | Nov 3, 2021 | Not known |
| CVE-2021-36742 | Trend Micro | Trend Micro Multiple Products Improper Input Validation Vulnerability | Severity: High CVSS 7.8 | Nov 3, 2021 | Not known |
| CVE-2019-18187 | Trend Micro | Trend Micro OfficeScan Directory Traversal Vulnerability | Severity: High CVSS 7.5 | Nov 3, 2021 | Not known |
Source: CISA Known Exploited Vulnerabilities catalog (US government, public domain), refreshed hourly. CVSS scores from the NIST National Vulnerability Database are added as they are fetched.
