Most Exploited Internet-Facing Products

MEIFP

EASM patch prioritization — identifies which vendors & products pose the highest active exploitation risk on your external attack surface. Unlike raw CVE counts, scores weight exploitability factors (KEV, AC, PR, Automatable) across AV:Network · SSVC Exploitation: Active CVEs only. Data: CISA Vulnrichment · Updated twice daily

Vendor score = sum of Active CVE scores  ·  Each CVE: 10 pts base, boosted by:
KEV×2.0AC: Low×1.2PR: None×1.3PR: Low×1.1Auto×1.3

Vendor Risk Ranking

Ranked by cumulative score from Active CVEs in the selected period · AV:Network only · Click vendor name for CVE details

126 vendors
#VendorScore(hover for detail)Active CVEsProducts
1Cisco
801.4
2320
2Microsoft
733.4
2020
3Ivanti
697.7
2011
4Fortinet
634.5
1719
5Palo Alto Networks
406.1
114
6Oracle
350.9
911
7Apache Software Foundation
335.3
916
8SolarWinds
269.4
72
9Apple
243.4
69
10Adobe
236.6
66
11SonicWall
230.2
75
12Citrix
173.7
52
13JetBrains
162.2
41
14Progress Software Corporation
152.9
43
15Atlassian
121.7
32
16checkpoint
121.7
35
17SmarterTools
121.7
31
18Ubiquiti Inc
121.7
320
19N-able
120.4
41
20D-Link
112.3
320
21F5
107.5
31
22CrushFTP
107.1
31
23Kentico
105.1
31
24langflow-ai
103.1
31
25BeyondTrust
101.1
34
26VMware
97.8
39
27Zyxel
93.4
39
28BerriAI
93.4
31
29Gladinet
92.6
33
30Dassault Systèmes
86.6
31
31craftcms
81.1
22
32Arista Networks
81.1
27
33geoserver
81.1
21
34GeoVision
81.1
220
35ServiceNow
81.1
21
36WatchGuard
81.1
21
37SysAid
81.1
21
38Roundcube
67.0
22
39ASUS
67.0
22
40Advantive
67.0
21
41Samsung Electronics
67.0
21
42wftpserver
67.0
21
43Commvault
67.0
22
44ConnectWise
66.6
21
45WordPress
66.6
21
46TrueConf
66.6
21
47Trend Micro, Inc.
64.6
23
48SAP_SE
64.6
23
49FreePBX
64.6
25
50PTZOptics
64.6
22
51LiteSpeed Technologies
62.6
23
52Versa
60.6
22
53Zimbra
57.2
22
54Langflow
40.6
11
55GitLab
40.6
11
56IBM
40.6
16
57Mozilla
40.6
15
58Juniper Networks
40.6
12
59xwiki
40.6
13
60Acronis
40.6
11
61North Grid Corporation
40.6
13
62Splunk
40.6
14
63GNU
40.6
15
64KNX Association
40.6
11
65tj-actions
40.6
12
66projectSend
40.6
11
67Meta
40.6
14
68mlflow
40.6
12
69Unitronics
40.6
11
70Cloud Software Group
40.6
11
71PHP Group
40.6
11
72DrayTek
40.6
13
73Progress Software
40.6
12
74Rejetto
40.6
11
75Jenkins Project
40.6
11
76Fortra
40.6
13
77Veeam
40.6
12
78NAKIVO
40.6
11
79Aviatrix
40.6
11
80Hewlett Packard Enterprise (HPE)
40.6
13
81erlang
40.6
11
82AMI
40.6
11
83ScienceLogic
40.6
11
84TrioFox
40.6
11
85Edimax
40.6
113
86MongoDB Inc.
40.6
11
87Srimax
40.6
11
88reviewdog
40.6
11
89Craft
40.6
11
90Dell
40.6
12
91QUALITIA CO., LTD.
40.6
11
92TeleMessage
40.6
11
93MOTEX Inc.
40.6
11
94Drupal
40.6
14
95PTC
40.6
12
96marimo-team
40.6
11
97WebPros
40.6
13
98Mirasvit
40.6
11
99nrwl
40.6
11
100SimpleHelp
40.6
11
101joomlacontenteditor.net
40.6
11
102joomshaper.net
40.6
11
103icagenda.com
40.6
11
104joomlack.fr
40.6
11
105balbooa.com
40.6
11
106Metabase
40.6
11
107AVB Disc Soft
40.6
11
108wazuh
26.4
17
109FXC Inc.
26.4
12
110gogs
26.4
11
111Facebook
26.4
13
112n8n-io
26.4
11
113Soliton Systems K.K.
26.4
11
114aquasecurity
26.4
13
115team-telnyx
26.4
11
116Google
26.0
18
117livewire
26.0
11
118yiiframework
26.0
11
119FreeType
26.0
11
120Sitecore
26.0
16
121centos-webpanel
26.0
11
122prettier
26.0
11
123TeamT5
24.0
11
124Trimble
24.0
13
125Array Networks
24.0
11
126TP-Link Systems Inc.
24.0
16

Recently Active CVEs

Newest 89 CVEs sorted by SSVC Active timestamp  · NEW = Active from day one  · NONE→ACT / POC→ACT = confirmed upgrade (git diff)

89 entries
StatusCVE IDVendorProductScore
NONE→ACTCVE-2026-21962OracleOracle HTTP Server, Oracle Weblogic Server Proxy Plug-in
40.6
NONE→ACTCVE-2026-73570ZimbraCollaboration
26.0
NONE→ACTCVE-2026-72529TrueConfTrueConf Server
40.6
NONE→ACTCVE-2026-72530TrueConfTrueConf Server
26.0
NONE→ACTCVE-2026-64849mlflowMLflow
40.6
NONE→ACTCVE-2026-65400ApplemacOS
40.6
POC→ACTCVE-2026-55040MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
NONE→ACTCVE-2026-59310VMwareCloud Foundation
40.6
NONE→ACTCVE-2026-33824MicrosoftWindows 10 Version 1607
40.6
NONE→ACTCVE-2026-72898MetabaseMetabase
40.6
NONE→ACTCVE-2026-20349CiscoCisco Secure Firewall Adaptive Security Appliance (ASA) Software
40.6
NONE→ACTCVE-2026-63077JetBrainsTeamCity
40.6
NONE→ACTCVE-2026-9198IBMLangflow OSS
40.6
NONE→ACTCVE-2026-34486Apache Software FoundationApache Tomcat
40.6
NONE→ACTCVE-2026-18556N-ableN-central
33.8
NONE→ACTCVE-2026-18577N-ableN-central
33.8
NONE→ACTCVE-2026-20316CiscoCisco Secure Firewall Management Center (FMC)
40.6
NONE→ACTCVE-2026-16812Arista NetworksVeloCloud Orchestrator On-Prem
40.6
NONE→ACTCVE-2025-68686FortinetFortiOS
26.0
NONE→ACTCVE-2026-50522MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
NONE→ACTCVE-2026-16232checkpointMulti-Domain Security Management
40.6
NONE→ACTCVE-2026-0770LangflowLangflow
40.6
NONE→ACTCVE-2026-63030WordPressWordPress
40.6
NONE→ACTCVE-2026-60137WordPressWordPress
26.0
POC→ACTCVE-2026-39808FortinetFortiSandbox
40.6
NONE→ACTCVE-2026-25089FortinetFortiSandbox
40.6
NONE→ACTCVE-2026-58644MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
NONE→ACTCVE-2023-4346KNX AssociationKNX Protocol Connection Authorization Option 1
40.6
NONE→ACTCVE-2026-46817OracleOracle Payments
40.6
NEWCVE-2026-15410SonicWallSMA1000
24.0
NEWCVE-2026-15409SonicWallSMA1000
40.6
NEWCVE-2026-56164MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
POC→ACTCVE-2026-48939icagenda.comiCagenda extension for Joomla
40.6
NONE→ACTCVE-2026-56291balbooa.combalbooa.com Balbooa Forms extension for Joomla
40.6
NONE→ACTCVE-2026-48282AdobeColdFusion 2023
40.6
NONE→ACTCVE-2026-56290joomlack.frJoomlaCK.fr Page Builder CK extension for Joomla
40.6
POC→ACTCVE-2026-55255langflow-ailangflow
22.0
NONE→ACTCVE-2026-48908joomshaper.netSP Page Builder extension for Joomla
40.6
NONE→ACTCVE-2026-45659MicrosoftMicrosoft SharePoint Enterprise Server 2016
26.4
NONE→ACTCVE-2026-48558SimpleHelpSimpleHelp
40.6
POC→ACTCVE-2026-20230CiscoCisco Unified Communications Manager
31.2
NONE→ACTCVE-2026-12569PTCFlexPLM
40.6
NONE→ACTCVE-2026-34908Ubiquiti IncEFG
40.6
NONE→ACTCVE-2026-34909Ubiquiti IncEFG
40.6
NONE→ACTCVE-2026-34910Ubiquiti IncEFG
40.6
POC→ACTCVE-2026-20253SplunkSplunk Enterprise
40.6
NONE→ACTCVE-2026-48907joomlacontenteditor.netJoomla Content Editor (JCE) extension for Joomla
40.6
NEWCVE-2026-20262CiscoCisco Catalyst SD-WAN Manager
26.4
NONE→ACTCVE-2026-54420LiteSpeed TechnologiescPanel Plugin
22.0
NONE→ACTCVE-2026-35273OraclePeopleSoft Enterprise PeopleTools
40.6
POC→ACTCVE-2026-10520IvantiSentry
40.6
NONE→ACTCVE-2026-7473Arista NetworksEOS
40.6
NONE→ACTCVE-2026-50751checkpointQuantum Security Gateway
40.6
NONE→ACTCVE-2026-42271BerriAIlitellm
26.4
NONE→ACTCVE-2026-28318SolarWindsServ-U
40.6
NONE→ACTCVE-2026-45247MirasvitFull Page Cache Warmer for Magento 2
40.6
NONE→ACTCVE-2024-21182OracleWebLogic Server
40.6
NONE→ACTCVE-2026-0257Palo Alto NetworksCloud NGFW
31.2
NONE→ACTCVE-2026-8398AVB Disc SoftDAEMON Tools Lite
40.6
NEWCVE-2026-48027nrwlnx-console
40.6
NONE→ACTCVE-2026-48172LiteSpeed TechnologiescPanel Plugin
40.6
NONE→ACTCVE-2026-9082DrupalDrupal core
40.6
NEWCVE-2026-20182CiscoCisco Catalyst SD-WAN Controller
40.6
NONE→ACTCVE-2026-42208BerriAIlitellm
40.6
NEWCVE-2026-6973IvantiEndpoint Manager Mobile
24.0
NEWCVE-2026-0300Palo Alto NetworksCloud NGFW
40.6
POC→ACTCVE-2026-41940WebProscPanel
40.6
NONE→ACTCVE-2024-7399Samsung ElectronicsMagicINFO 9 Server
26.4
NONE→ACTCVE-2026-39987marimo-teammarimo
40.6
NONE→ACTCVE-2026-20122CiscoCisco Catalyst SD-WAN Manager
26.4
NONE→ACTCVE-2026-20133CiscoCisco Catalyst SD-WAN Manager
26.4
NONE→ACTCVE-2025-2749KenticoXperience
24.0
POC→ACTCVE-2024-27199JetBrainsTeamCity
40.6
NONE→ACTCVE-2026-34197Apache Software FoundationApache ActiveMQ
26.4
NEWCVE-2026-32201MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
POC→ACTCVE-2026-21643FortinetFortiClientEMS
40.6
NONE→ACTCVE-2026-1340IvantiEndpoint Manager Mobile
40.6
NONE→ACTCVE-2026-35616FortinetFortiClientEMS
40.6
NONE→ACTCVE-2026-3055CitrixNetScaler ADC
40.6
NONE→ACTCVE-2025-53521F5BIG-IP
40.6
POC→ACTCVE-2026-33634BerriAIlitellm
26.4
POC→ACTCVE-2026-33017langflow-ailangflow
40.6
NONE→ACTCVE-2025-54068livewirelivewire
26.0
POC→ACTCVE-2025-32432craftcmscms
40.6
NONE→ACTCVE-2026-20131CiscoCisco Secure Firewall Management Center (FMC)
40.6
NONE→ACTCVE-2026-20963MicrosoftMicrosoft SharePoint Enterprise Server 2016
40.6
NONE→ACTCVE-2025-66376ZimbraCollaboration
31.2
POC→ACTCVE-2025-47813wftpserverWing FTP Server
26.4
NONE→ACTCVE-2025-68613n8n-ion8n
26.4

Monthly Risk Score TrendAug 2023Aug 2026

Rolling 36-month cumulative score — CVEs older than 3 years expire · hover for breakdown

0200401601801Aug '23Nov '23Feb '24May '24Aug '24Nov '24Feb '25May '25Aug '25Nov '25Feb '26May '26Aug '26
Cisco
Microsoft
Ivanti
Fortinet
Palo Alto Networks
Oracle
Apache Software Foundation
SolarWinds
Apple
Adobe
SonicWall
Citrix
JetBrains
Progress Software Corporation
Atlassian