Research · Sector

Exploited Vulnerabilities in Technology

49 confirmed exploited · 8 ransomware-linked · as of 2026-08-31

49 vulnerabilities we’ve flagged as relevant to Technology are confirmed exploited in the wild (CISA KEV), and 8 (16%) are tied to ransomware.

Ransomware in Technology, exploitation trends, and the full list — below.

Exploited Technology-relevant vulnerabilities

CVEProductKEV added
CVE-2026-53362Linux Kernel2026-08-27
CVE-2026-66384JFrog Artifactory2026-08-27
CVE-2021-23758Ajaxpro.2 Project Ajaxpro.2 (also: Michaelschwarz)2026-08-26
CVE-2026-21962Oracle HTTP Server And Oracle Weblogic Server Proxy Plug-In2026-08-24
CVE-2026-73570Synacor Zimbra Collaboration Suite (ZCS)2026-08-21
CVE-2026-72530TrueConf Server2026-08-20
CVE-2025-62593Ray-Project Ray2026-08-17
CVE-2026-20349Cisco Secure Firewall Adaptive Security Appliance (ASA) And Secure Firewall Threat Defense (FTD)2026-08-11
CVE-2026-68820Microsoft Windows Ancillary Function Driver For WinSock2026-08-11
CVE-2026-8037Progress LoadMaster2026-08-07
CVE-2026-34486Apache Tomcat2026-08-04
CVE-2026-18556N-Able N-Central2026-08-04
CVE-2026-18577N-Able N-Central2026-08-03
CVE-2026-20316Cisco Secure Firewall Management Center (FMC)2026-07-29
CVE-2026-16812Arista VeloCloud Orchestrator2026-07-27
CVE-2025-68686Fortinet FortiOS2026-07-27
CVE-2026-50522Microsoft SharePoint2026-07-22
CVE-2026-16232Check Point SmartConsole2026-07-22
CVE-2026-0770Langflow2026-07-21
CVE-2026-63030WordPress Core2026-07-21
CVE-2026-60137WordPress Core2026-07-21
CVE-2026-39808Fortinet FortiSandbox2026-07-16
CVE-2026-15409SonicWall SMA1000 Appliances2026-07-14ransomware
CVE-2026-15410SonicWall SMA1000 Appliances2026-07-14ransomware
CVE-2026-48558Simple-Help Simplehelp2026-06-29
CVE-2026-20230Cisco Unified Communications Manager2026-06-25
CVE-2026-20262Cisco Catalyst SD-WAN Manager2026-06-15
CVE-2026-20245Cisco Catalyst SD-WAN Manager2026-06-09
CVE-2026-50751Check Point Security Gateway2026-06-08ransomware
CVE-2025-48595Android Framework2026-06-02
CVE-2022-0492Linux Kernel2026-06-02
CVE-2024-21182Oracle WebLogic Server2026-06-01
CVE-2026-42897Microsoft Exchange Server2026-05-15
CVE-2026-42208BerriAI LiteLLM2026-05-08
CVE-2026-6973Ivanti Endpoint Manager Mobile (EPMM)2026-05-07
CVE-2026-0300Palo Alto Networks PAN-OS2026-05-06
CVE-2026-31431Linux Kernel2026-05-01
CVE-2026-41940WebPros CPanel & WHM And WP2 (WordPress Squared)2026-04-30ransomware
CVE-2024-7399Samsung MagicINFO 9 Server2026-04-24
CVE-2026-39987Coreweave Marimo2026-04-23
CVE-2026-33825Microsoft Defender2026-04-22ransomware
CVE-2026-34621Adobe Acrobat And Reader2026-04-13
CVE-2026-35616Fortinet FortiClient EMS2026-04-06
CVE-2026-3055Citrix NetScaler2026-03-30
CVE-2025-53521F5 BIG-IP2026-03-27
CVE-2026-33017Langflow2026-03-25
CVE-2025-55182Meta React Server Components2025-12-05ransomware
CVE-2025-8088RARLAB WinRAR2025-08-12ransomware
CVE-2025-5777Citrix NetScaler ADC And Gateway2025-07-10ransomware

How we count

This counts vulnerabilities that (a) defend.network has editorially tagged as relevant to the Technology sector in our vulnerability reports, and (b) CISA has confirmed exploited in the wild (in the KEV catalog). The sector tag reflects our editorial judgment about relevance, not a claim of exclusive impact — most vulnerabilities affect multiple sectors. Product names come from NVD/CISA (authoritative). Rows our reconciliation gate flags as mis-attributed are excluded. “Ransomware” uses CISA’s knownRansomwareUse flag. As of 2026-08-31.

Other sectors: Finance · Government · Healthcare  ·  State of Exploited Vulnerabilities

🤖 Generated deterministically from our editorial sector tags reconciled against the CISA KEV catalog. Free to cite with attribution to defend.network.

Track newly exploited vulnerabilities

Free daily briefing on CVEs added to CISA KEV and exploited in the wild.