Every change, newest first
| Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin. | Kind | Record, Which record was edited, by its CVE id, or how many records one collapsed line stands on. | Vendor · product, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry. | What changed | Days to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong. |
|---|---|---|---|---|---|
| Mon 31 Mar 2025· 4 changes | |||||
| 2025-03-31 | Added to CISA KEV | CVE-2024-20439 | CiscoSmart Licensing Utility CISA KEV | fix due 2025-04-21 | Duration unknown |
| 2025-03-31 | Ransomware use confirmed | CVE-2025-26633 | MicrosoftWindows CISA KEV | stated at publication Unknown, now states Known | Time to revision 20 days |
| 2025-03-31 | KEV required action changed | CVE-2025-30154 | reviewdogaction-setup GitHub Action CISA KEV | stated at publication Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable., now states Apply mitigations as set forth in the CISA instructions linked below. Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Time to revision 7 days |
| 2025-03-31 | KEV required action changed | CVE-2025-30066 | tj-actionschanged-files GitHub Action CISA KEV | stated at publication Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable., now states Apply mitigations as set forth in the CISA instructions linked below. Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. | Time to revision 13 days |
| Thu 27 Mar 2025· 3 changes | |||||
| 2025-03-27 | Added to CISA KEV | CVE-2025-2783 | GoogleChromium Mojo CISA KEV | fix due 2025-04-17 | Duration unknown |
| 2025-03-27 | Added to CISA KEV | CVE-2019-9875 | SitecoreCMS and Experience Platform (XP) CISA KEV | fix due 2025-04-16 · listed 2025-03-26 | Duration unknown |
| 2025-03-27 | Added to CISA KEV | CVE-2019-9874 | SitecoreCMS and Experience Platform (XP) CISA KEV | fix due 2025-04-16 · listed 2025-03-26 | Duration unknown |
| Mon 24 Mar 2025· 1 change | |||||
| 2025-03-24 | Added to CISA KEV | CVE-2025-30154 | reviewdogaction-setup GitHub Action CISA KEV | fix due 2025-04-14 | Duration unknown |
| Wed 19 Mar 2025· 3 changes | |||||
| 2025-03-19 | Added to CISA KEV | CVE-2017-12637 | SAPNetWeaver CISA KEV | fix due 2025-04-09 | Duration unknown |
| 2025-03-19 | Added to CISA KEV | CVE-2024-48248 | NAKIVOBackup and Replication CISA KEV | fix due 2025-04-09 | Duration unknown |
| 2025-03-19 | Added to CISA KEV | CVE-2025-1316 | EdimaxIC-7100 IP Camera CISA KEV | fix due 2025-04-09 | Duration unknown |
| Tue 18 Mar 2025· 5 changes | |||||
| 2025-03-18 | Added to CISA KEV | CVE-2025-30066 | tj-actionschanged-files GitHub Action CISA KEV | fix due 2025-04-08 | Duration unknown |
| 2025-03-18 | Added to CISA KEV | CVE-2025-24472 | FortinetFortiOS and FortiProxy CISA KEV | fix due 2025-04-08 | Duration unknown |
| 2025-03-18 | Ransomware use confirmed | CVE-2024-55591 | FortinetFortiOS and FortiProxy CISA KEV | stated at publication Unknown, now states Known | Duration unknown |
| 2025-03-18 | Ransomware use confirmed | CVE-2023-48365 | QlikSense CISA KEV | stated at publication Unknown, now states Known | Duration unknown |
| 2025-03-18 | Ransomware use confirmed | CVE-2023-23376 | MicrosoftWindows CISA KEV | stated at publication Unknown, now states Known | Duration unknown |
| Thu 13 Mar 2025· 2 changes | |||||
| 2025-03-13 | Added to CISA KEV | CVE-2025-21590 | JuniperJunos OS CISA KEV | fix due 2025-04-03 | Duration unknown |
| 2025-03-13 | Added to CISA KEV | CVE-2025-24201 | AppleMultiple Products CISA KEV | fix due 2025-04-03 | Duration unknown |
| Tue 11 Mar 2025· 6 changes | |||||
| 2025-03-11 | Added to CISA KEV | CVE-2025-24993 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| 2025-03-11 | Added to CISA KEV | CVE-2025-24991 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| 2025-03-11 | Added to CISA KEV | CVE-2025-24985 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| 2025-03-11 | Added to CISA KEV | CVE-2025-24984 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| 2025-03-11 | Added to CISA KEV | CVE-2025-24983 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| 2025-03-11 | Added to CISA KEV | CVE-2025-26633 | MicrosoftWindows CISA KEV | fix due 2025-04-01 | Duration unknown |
| Mon 10 Mar 2025· 5 changes | |||||
| 2025-03-10 | Added to CISA KEV | CVE-2024-13161 | IvantiEndpoint Manager (EPM) CISA KEV | fix due 2025-03-31 | Duration unknown |
| 2025-03-10 | Added to CISA KEV | CVE-2024-13160 | IvantiEndpoint Manager (EPM) CISA KEV | fix due 2025-03-31 | Duration unknown |
| 2025-03-10 | Added to CISA KEV | CVE-2024-13159 | IvantiEndpoint Manager (EPM) CISA KEV | fix due 2025-03-31 | Duration unknown |
| 2025-03-10 | Added to CISA KEV | CVE-2024-57968 | AdvantiveVeraCore CISA KEV | fix due 2025-03-31 | Duration unknown |
| 2025-03-10 | Added to CISA KEV | CVE-2025-25181 | AdvantiveVeraCore CISA KEV | fix due 2025-03-31 | Duration unknown |
| Tue 4 Mar 2025· 4 changes | |||||
| 2025-03-04 | Added to CISA KEV | CVE-2025-22226 | VMwareESXi, Workstation, and Fusion CISA KEV | fix due 2025-03-25 | Duration unknown |
| 2025-03-04 | Added to CISA KEV | CVE-2025-22225 | VMwareESXi CISA KEV | fix due 2025-03-25 | Duration unknown |
| 2025-03-04 | Added to CISA KEV | CVE-2025-22224 | VMwareESXi and Workstation CISA KEV | fix due 2025-03-25 | Duration unknown |
| 2025-03-04 | Added to CISA KEV | CVE-2024-50302 | LinuxKernel CISA KEV | fix due 2025-03-25 | Duration unknown |
| Mon 3 Mar 2025· 5 changes | |||||
| 2025-03-03 | Added to CISA KEV | CVE-2024-4885 | ProgressWhatsUp Gold CISA KEV | fix due 2025-03-24 | Duration unknown |
| 2025-03-03 | Added to CISA KEV | CVE-2018-8639 | MicrosoftWindows CISA KEV | fix due 2025-03-24 | Duration unknown |
| 2025-03-03 | Added to CISA KEV | CVE-2022-43769 | Hitachi VantaraPentaho Business Analytics (BA) Server CISA KEV | fix due 2025-03-24 | Duration unknown |
| 2025-03-03 | Added to CISA KEV | CVE-2022-43939 | Hitachi VantaraPentaho Business Analytics (BA) Server CISA KEV | fix due 2025-03-24 | Duration unknown |
| 2025-03-03 | Added to CISA KEV | CVE-2023-20118 | CiscoSmall Business RV Series Routers CISA KEV | fix due 2025-03-24 | Duration unknown |
| Tue 25 Feb 2025· 3 changes | |||||
| 2025-02-25 | Added to CISA KEV | CVE-2023-34192 | SynacorZimbra Collaboration Suite (ZCS) CISA KEV | fix due 2025-03-18 | Duration unknown |
| 2025-02-25 | Added to CISA KEV | CVE-2024-49035 | MicrosoftPartner Center CISA KEV | fix due 2025-03-18 | Duration unknown |
| 2025-02-25 | Ransomware use confirmed | CVE-2024-24919 | Check PointQuantum Security Gateways CISA KEV | stated at publication Unknown, now states Known | Duration unknown |
| Mon 24 Feb 2025· 2 changes | |||||
| 2025-02-24 | Added to CISA KEV | CVE-2024-20953 | OracleAgile Product Lifecycle Management (PLM) CISA KEV | fix due 2025-03-17 | Duration unknown |
| 2025-02-24 | Added to CISA KEV | CVE-2017-3066 | AdobeColdFusion CISA KEV | fix due 2025-03-17 | Duration unknown |
| Fri 21 Feb 2025· 1 change | |||||
| 2025-02-21 | Added to CISA KEV | CVE-2025-24989 | MicrosoftPower Pages CISA KEV | fix due 2025-03-14 | Duration unknown |
| Thu 20 Feb 2025· 2 changes | |||||
| 2025-02-20 | Added to CISA KEV | CVE-2025-0111 | Palo Alto NetworksPAN-OS CISA KEV | fix due 2025-03-13 | Duration unknown |
| 2025-02-20 | Added to CISA KEV | CVE-2025-23209 | Craft CMSCraft CMS CISA KEV | fix due 2025-03-13 | Duration unknown |
| Tue 18 Feb 2025· 3 changes | |||||
| 2025-02-18 | Added to CISA KEV | CVE-2025-0108 | Palo AltoPAN-OS CISA KEV | fix due 2025-04-08 | Duration unknown |
| 2025-02-18 | Added to CISA KEV | CVE-2024-53704 | SonicWallSonicOS CISA KEV | fix due 2025-03-11 | Duration unknown |
| 2025-02-18 | KEV due date moved | CVE-2025-0108 | Palo AltoPAN-OS CISA KEV | stated at publication 2025-04-08, now states 2025-03-11 | Time to revision 0 days |
| Thu 13 Feb 2025· 1 change | |||||
| 2025-02-13 | Added to CISA KEV | CVE-2024-57727 | SimpleHelp SimpleHelp CISA KEV | fix due 2025-03-06 | Duration unknown |
| Wed 12 Feb 2025· 2 changes | |||||
| 2025-02-12 | Added to CISA KEV | CVE-2025-24200 | AppleiOS and iPadOS CISA KEV | fix due 2025-03-05 | Duration unknown |
| 2025-02-12 | Added to CISA KEV | CVE-2024-41710 | MitelSIP Phones CISA KEV | fix due 2025-03-05 | Duration unknown |
| Tue 11 Feb 2025· 4 changes | |||||
| 2025-02-11 | Added to CISA KEV | CVE-2024-40891 | ZyxelDSL CPE Devices CISA KEV | fix due 2025-03-04 | Duration unknown |
| 2025-02-11 | Added to CISA KEV | CVE-2024-40890 | ZyxelDSL CPE Devices CISA KEV | fix due 2025-03-04 | Duration unknown |
| 2025-02-11 | Added to CISA KEV | CVE-2025-21418 | MicrosoftWindows CISA KEV | fix due 2025-03-04 | Duration unknown |
| 2025-02-11 | Added to CISA KEV | CVE-2025-21391 | MicrosoftWindows CISA KEV | fix due 2025-03-04 | Duration unknown |
| Fri 7 Feb 2025· 6 changes | |||||
| 2025-02-07 | Added to CISA KEV | CVE-2025-0994 | TrimbleCityworks CISA KEV | fix due 2025-02-28 | Duration unknown |
| 2025-02-07 | Added to CISA KEV | CVE-2020-15069 | SophosXG Firewall CISA KEV | fix due 2025-02-27 · listed 2025-02-06 | Duration unknown |
| 2025-02-07 | Added to CISA KEV | CVE-2020-29574 | SophosCyberoamOS CISA KEV | fix due 2025-02-27 · listed 2025-02-06 | Duration unknown |
| 2025-02-07 | Added to CISA KEV | CVE-2024-21413 | MicrosoftOffice Outlook CISA KEV | fix due 2025-02-27 · listed 2025-02-06 | Duration unknown |
| 2025-02-07 | Added to CISA KEV | CVE-2022-23748 | AudinateDante Discovery CISA KEV | fix due 2025-02-27 · listed 2025-02-06 | Duration unknown |
| 2025-02-07 | Added to CISA KEV | CVE-2025-0411 | 7-Zip7-Zip CISA KEV | fix due 2025-02-27 · listed 2025-02-06 | Duration unknown |
| Wed 5 Feb 2025· 1 change | |||||
| 2025-02-05 | Added to CISA KEV | CVE-2024-53104 | LinuxKernel CISA KEV | fix due 2025-02-26 | Duration unknown |
| Tue 4 Feb 2025· 4 changes | |||||
| 2025-02-04 | Added to CISA KEV | CVE-2018-19410 | PaesslerPTRG Network Monitor CISA KEV | fix due 2025-02-25 | Duration unknown |
| 2025-02-04 | Added to CISA KEV | CVE-2018-9276 | PaesslerPRTG Network Monitor CISA KEV | fix due 2025-02-25 | Duration unknown |
| 2025-02-04 | Added to CISA KEV | CVE-2024-29059 | Microsoft.NET Framework CISA KEV | fix due 2025-02-25 | Duration unknown |
| 2025-02-04 | Added to CISA KEV | CVE-2024-45195 | ApacheOFBiz CISA KEV | fix due 2025-02-25 | Duration unknown |
| Wed 29 Jan 2025· 1 change | |||||
| 2025-01-29 | Added to CISA KEV | CVE-2025-24085 | AppleMultiple Products CISA KEV | fix due 2025-02-19 | Duration unknown |
Rows, not records: a moved fix version and an added product count once per product, every other kind once per record or advisory.
What this page cannot see
Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.
A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.
The units, the refusals, the cut-offs and every source, in full →
Paste your closed CVE tickets and see which of these changes hit them →