Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

11,999 record changes · 5,026 advisory changes · newest first · grouped by dayCSVJSONRSS

Since
ChangedSourceRows
Counted changes, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Fri 28 Aug 2026· 2 advisory changes
2026-08-28published 2026-06-12Advisory severity changedGHSA-9r4w-jg96-92mvCVE-2026-12681whole advisoryhighstated at publication MODERATE, now states HIGHA CVSS version was added; the existing vectors stayed the same.Days to revision 77
2026-08-28published 2026-07-02Advisory severity changedGHSA-77pv-3w4q-vrj5CVE-2026-53834whole advisoryhighstated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately.Days to revision 57
Thu 27 Aug 2026· 98 record changes
2026-08-27Affected range extendedCVE-2026-17613
penpotpenpot
certcc
stated at publication 2.17.0, now states 2.17.1Release branch starts at 0.Original value first replaced 2026-08-13; this value first seen 2026-08-27.Days to revision 8
2026-08-27Product addedCVE-2026-15315TPLinknot named as affected at publication, now names tapo c120 v1Days to revision 9
2026-08-27Product addedCVE-2026-81525not named as affected at publication, now names php extensionDays to revision 0
2026-08-27Product addedCVE-2026-81525not named as affected at publication, now names php libraryDays to revision 0
2026-08-27Product addedCVE-2026-21282not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21282not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21284not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21284not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21285not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21285not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21286not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21286not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21289not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21289not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21290not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21290not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21291not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21291not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21292not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21292not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21293not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21293not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21294not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21294not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21295not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21295not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21296not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21296not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21297not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21297not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21309not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21309not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21310not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21310not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21311not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21311not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21331not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-21352not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 198
2026-08-27Product addedCVE-2026-21353not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 198
2026-08-27Product addedCVE-2026-21354not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 198
2026-08-27Product addedCVE-2026-21355not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 198
2026-08-27Product addedCVE-2026-21359not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21359not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21360not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21360not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-21361not named as affected at publication, now names adobe commerce b2bDays to revision 170
2026-08-27Product addedCVE-2026-21361not named as affected at publication, now names magento open sourceDays to revision 170
2026-08-27Product addedCVE-2026-27220not named as affected at publication, now names acrobat 2024Days to revision 170
2026-08-27Product addedCVE-2026-27220not named as affected at publication, now names acrobat dcDays to revision 170
2026-08-27Product addedCVE-2026-27221not named as affected at publication, now names acrobat 2024Days to revision 170
2026-08-27Product addedCVE-2026-27221not named as affected at publication, now names acrobat dcDays to revision 170
2026-08-27Product addedCVE-2026-27243not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-27245not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-27246not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-27258not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 135
2026-08-27Product addedCVE-2026-27278not named as affected at publication, now names acrobat 2024Days to revision 170
2026-08-27Product addedCVE-2026-27278not named as affected at publication, now names acrobat dcDays to revision 170
2026-08-27Product addedCVE-2026-27280not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 170
2026-08-27Product addedCVE-2026-27281not named as affected at publication, now names adobe dng software development kit (sdk)Days to revision 170
2026-08-27Product addedCVE-2026-27303not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-34614not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-34615not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-34617not named as affected at publication, now names adobe connect desktop applicationDays to revision 135
2026-08-27Product addedCVE-2026-34621not named as affected at publication, now names acrobat 2024Days to revision 139
2026-08-27Product addedCVE-2026-34621not named as affected at publication, now names acrobat dcDays to revision 139
2026-08-27Product addedCVE-2026-34622not named as affected at publication, now names acrobat 2024Days to revision 135
2026-08-27Product addedCVE-2026-34622not named as affected at publication, now names acrobat dcDays to revision 135
2026-08-27Product addedCVE-2026-34626not named as affected at publication, now names acrobat 2024Days to revision 135
2026-08-27Product addedCVE-2026-34626not named as affected at publication, now names acrobat dcDays to revision 135
2026-08-27Product addedCVE-2026-47984not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47988not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47992not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47994not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47995not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47996not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47997not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47998not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-47999not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-48000not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-48001not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-48356not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-48358not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-48371not named as affected at publication, now names adobe commerce eventsDays to revision 44
2026-08-27Product addedCVE-2026-59323vmwarenot named as affected at publication, now names micrometer tracingDays to revision 6
2026-08-27Product addedCVE-2026-15218not named as affected at publication, now names red hat openshift ai 3.4Days to revision 10
2026-08-27Product addedCVE-2026-15378not named as affected at publication, now names red hat openshift ai 3.4Days to revision 48
2026-08-27Product addedCVE-2026-34645not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34645not named as affected at publication, now names magento open sourceDays to revision 107
2026-08-27Product addedCVE-2026-34646not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34646not named as affected at publication, now names magento open sourceDays to revision 107
2026-08-27Product addedCVE-2026-34647not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34647not named as affected at publication, now names magento open sourceDays to revision 107
2026-08-27Product addedCVE-2026-34648not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34648not named as affected at publication, now names magento open sourceDays to revision 107
2026-08-27Product addedCVE-2026-34649not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34649not named as affected at publication, now names magento open sourceDays to revision 107
2026-08-27Product addedCVE-2026-34650not named as affected at publication, now names adobe commerce b2bDays to revision 107
2026-08-27Product addedCVE-2026-34650not named as affected at publication, now names magento open sourceDays to revision 107

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →