| | CVE-2017-6167 | F5 | high | 7.5 | 0.3%
| | In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software vers… | Dec 21, 2017 | May 13, 2026 |
| | CVE-2017-5641 | Apache | critical | 9.8 | 48.5%
| | Previous versions of Apache Flex BlazeDS (4.7.2 and earlier) did not restrict which types were allow… | Dec 28, 2017 | May 13, 2026 |
| | CVE-2017-8046 | VMware | critical | 9.8 | 72.8%
| | Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (Ingall… | Jan 4, 2018 | Jun 26, 2026 |
| | CVE-2017-5753 | VMware | medium | 5.6 | 94.3%
| | Systems with microprocessors utilizing speculative execution and branch prediction may allow unautho… | Jan 4, 2018 | May 28, 2026 |
| | CVE-2017-12626 | Apache | high | 7.5 | 1.3%
| | Apache POI in versions prior to release 3.17 are vulnerable to Denial of Service Attacks: 1) Infinit… | Jan 29, 2018 | May 28, 2026 |
| | CVE-2018-0101 | Cisco | critical | 10.0 | 86.8%
| | A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security A… | Jan 29, 2018 | Aug 11, 2026 |
| | CVE-2018-0138 | Cisco | medium | 5.3 | 1.2%
| | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenti… | Feb 8, 2018 | Aug 11, 2026 |
| | CVE-2018-7272 | ForgeRock | medium | 6.5 | — | | The REST APIs in ForgeRock AM before 5.5.0 include SSOToken IDs as part of the URL, which allows att… | Feb 21, 2018 | Nov 21, 2024 |
| | CVE-2017-12174 | Apache | high | 7.5 | 6.0%
| | It was found that when Artemis and HornetQ before 2.4.0 are configured with UDP discovery and JGroup… | Mar 7, 2018 | Jun 15, 2026 |
| | CVE-2018-0147 | Cisco | critical | 9.8 | 4.0%
| ⚠ KEV | A vulnerability in Java deserialization used by Cisco Secure Access Control System (ACS) prior to re… | Mar 8, 2018 | Jan 14, 2026 |
| | CVE-2018-1000134 | ForgeRock | critical | 9.8 | — | | UnboundID LDAP SDK version from commit 801111d8b5c732266a5dbd4b3bb0b6c7b94d7afb up to commit 8471904… | Mar 16, 2018 | Nov 21, 2024 |
| | CVE-2018-1273 | Apache | critical | 9.8 | 97.0%
| ⚠ KEV | Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions… | Apr 11, 2018 | Aug 26, 2026 |
| | CVE-2018-1274 | VMware | high | 7.5 | 2.0%
| | Spring Data Commons, versions 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain… | Apr 18, 2018 | Jun 26, 2026 |
| | CVE-2018-0227 | Cisco | high | 7.5 | 2.0%
| | A vulnerability in the Secure Sockets Layer (SSL) Virtual Private Network (VPN) Client Certificate A… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0228 | Cisco | high | 8.6 | 3.6%
| | A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0230 | Cisco | high | 8.6 | 1.8%
| | A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (F… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0231 | Cisco | high | 8.6 | 4.6%
| | A vulnerability in the Transport Layer Security (TLS) library of Cisco Adaptive Security Appliance (… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0240 | Cisco | high | 8.6 | 3.9%
| | Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Secu… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0243 | Cisco | medium | 5.8 | 1.2%
| | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenti… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0244 | Cisco | medium | 5.8 | 1.2%
| | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenti… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-0254 | Cisco | medium | 5.3 | 1.2%
| | A vulnerability in the detection engine of Cisco Firepower System Software could allow an unauthenti… | Apr 19, 2018 | Aug 11, 2026 |
| | CVE-2018-8174 | Microsoft | medium | — | 87.6%
| ⚠ KEV | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in … | May 9, 2018 | Aug 13, 2026 |
| | CVE-2018-8120 | Microsoft | medium | — | 73.7%
| ⚠ KEV | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl… | May 9, 2018 | Aug 13, 2026 |
| | CVE-2018-1258 | VMware | high | 8.8 | 2.5%
| | Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contain… | May 11, 2018 | Aug 25, 2026 |
| | CVE-2018-1259 | VMware | high | 7.5 | 5.0%
| | Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with… | May 11, 2018 | Jun 26, 2026 |
| | CVE-2018-0297 | Cisco | medium | 5.8 | 1.2%
| | A vulnerability in the detection engine of Cisco Firepower Threat Defense software could allow an un… | May 17, 2018 | Aug 11, 2026 |
| | CVE-2018-0296 | Cisco | high | 7.5 | 99.9%
| ⚠ KEV | A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow an u… | Jun 7, 2018 | Aug 11, 2026 |
| | CVE-2018-11039 | VMware | medium | 5.9 | 2.7%
| | Spring Framework (versions 5.0.x prior to 5.0.7, versions 4.3.x prior to 4.3.18, and older unsupport… | Jun 25, 2018 | Aug 25, 2026 |
| | CVE-2018-1154 | Tenable | high | 8.8 | 0.7%
| | In SecurityCenter versions prior to 5.7.0, a username enumeration issue could allow an unauthenticat… | Aug 2, 2018 | Aug 17, 2026 |
| | CVE-2018-1155 | Tenable | medium | 5.4 | 0.6%
| | In SecurityCenter versions prior to 5.7.0, a cross-site scripting (XSS) issue could allow an authent… | Aug 2, 2018 | Aug 17, 2026 |
| | CVE-2018-14634 | F5 | high | 7.8 | 25.7%
| ⚠ KEV | An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileg… | Sep 25, 2018 | Jan 27, 2026 |
| | CVE-2018-0453 | Cisco | high | 8.2 | 0.4%
| | A vulnerability in the Sourcefire tunnel control channel protocol in Cisco Firepower System Software… | Oct 5, 2018 | Aug 11, 2026 |
| | CVE-2018-15383 | Cisco | high | 7.5 | 2.5%
| | A vulnerability in the cryptographic hardware accelerator driver of Cisco Adaptive Security Applianc… | Oct 5, 2018 | Aug 11, 2026 |
| | CVE-2018-15390 | Cisco | medium | 6.8 | 1.1%
| | A vulnerability in the FTP inspection engine of Cisco Firepower Threat Defense (FTD) Software could … | Oct 5, 2018 | Aug 11, 2026 |
| | CVE-2018-15398 | Cisco | medium | 4.0 | 1.9%
| | A vulnerability in the per-user-override feature of Cisco Adaptive Security Appliance (ASA) Software… | Oct 5, 2018 | Aug 11, 2026 |
| | CVE-2018-15399 | Cisco | medium | 6.8 | 1.8%
| | A vulnerability in the TCP syslog module of Cisco Adaptive Security Appliance (ASA) Software and Cis… | Oct 5, 2018 | Aug 11, 2026 |
| | CVE-2018-8453 | Microsoft | medium | — | 70.0%
| ⚠ KEV | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properl… | Oct 10, 2018 | Aug 13, 2026 |
| | CVE-2018-15756 | VMware | high | 7.5 | 9.2%
| | Spring Framework, version 5.1, versions 5.0.x prior to 5.0.10, versions 4.3.x prior to 4.3.20, and o… | Oct 18, 2018 | Aug 25, 2026 |
| | CVE-2018-15454 | Cisco | high | 8.6 | 4.4%
| | A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Securit… | Nov 1, 2018 | Aug 11, 2026 |
| | CVE-2018-13374 | Fortinet | medium | 4.3 | 38.1%
| ⚠ KEV | A Improper Access Control in Fortinet FortiOS 6.0.2, 5.6.7 and before, FortiADC 6.1.0, 6.0.0 to 6.0.… | Jan 22, 2019 | Aug 13, 2026 |
| | CVE-2019-1669 | Cisco | high | 8.6 | 1.2%
| | A vulnerability in the data acquisition (DAQ) component of Cisco Firepower Threat Defense (FTD) Soft… | Jan 24, 2019 | Aug 11, 2026 |
| | CVE-2019-7317 | HPE | medium | 5.3 | 0.6%
| | png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_fu… | Feb 4, 2019 | May 28, 2026 |
| | CVE-2019-1691 | Cisco | medium | 5.8 | 2.3%
| | A vulnerability in the detection engine of Cisco Firepower Threat Defense Software could allow an un… | Feb 21, 2019 | Aug 11, 2026 |
| | CVE-2019-0752 | Microsoft | high | 7.5 | 81.6%
| ⚠ KEV | A remote code execution vulnerability exists in the way that the scripting engine handles objects in… | Apr 9, 2019 | Aug 12, 2026 |
| | CVE-2018-15388 | Cisco | high | 8.6 | 2.0%
| | A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and … | May 3, 2019 | Aug 11, 2026 |
| | CVE-2018-15462 | Cisco | high | 8.6 | 2.1%
| | A vulnerability in the TCP ingress handler for the data interfaces that are configured with manageme… | May 3, 2019 | Aug 11, 2026 |
| | CVE-2019-1687 | Cisco | high | 7.5 | 2.9%
| | A vulnerability in the TCP proxy functionality for Cisco Adaptive Security Appliance (ASA) Software … | May 3, 2019 | Aug 11, 2026 |
| | CVE-2019-1693 | Cisco | medium | 6.5 | 2.1%
| | A vulnerability in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco … | May 3, 2019 | Aug 11, 2026 |
| | CVE-2019-1694 | Cisco | high | 8.6 | 2.5%
| | A vulnerability in the TCP processing engine of Cisco Adaptive Security Appliance (ASA) Software and… | May 3, 2019 | Aug 11, 2026 |
| | CVE-2019-1695 | Cisco | medium | 6.5 | 0.7%
| | A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisc… | May 3, 2019 | Aug 11, 2026 |