Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

1,056 record changes · 21 advisory changes · newest first · grouped by dayCSVJSONRSS

SinceClear the filter
ChangedSourceRows
Counted changes from the last 30 days, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Thu 20 Aug 2026· 3 record changes
2026-08-20CVSS base score changedCVE-2026-54117
whole record
microsoft
stated at publication 8.8, now states 9.8CVSS v3.1 · base scoreHighCriticalDays to revision 37
2026-08-20CVSS base score changedCVE-2026-54118
whole record
microsoft
stated at publication 8.8, now states 9.8CVSS v3.1 · base scoreHighCriticalDays to revision 37
2026-08-20CVSS base score changedCVE-2026-19550
whole record
redhat
stated at publication 4.3, now states 8.2CVSS v3.1 · base scoreMediumHighDays to revision 9
Wed 19 Aug 2026· 22 record changes
2026-08-19Added to CISA KEVCVE-2026-64849
MLflowMLflow
CISA KEV
fix due 2026-09-02Not applicable: Added to CISA KEV has no earlier value
2026-08-19Product addedCVE-2026-16835not named as affected at publication, now names power systems firmwareDays to revision 0
2026-08-19Product addedCVE-2026-17183not named as affected at publication, now names grafana enterpriseDays to revision 0
2026-08-19Product addedCVE-2026-34118TPLinknot named as affected at publication, now names tapo c100 v5Days to revision 139
2026-08-19Product addedCVE-2026-34118TPLinknot named as affected at publication, now names tapo c101 v5Days to revision 139
2026-08-19Product addedCVE-2025-5222not named as affected at publication, now names red hat openshift container platform 4.18Days to revision 449
2026-08-19Product addedCVE-2025-5222not named as affected at publication, now names red hat openshift container platform 4.19Days to revision 449
2026-08-19Product addedCVE-2026-14476not named as affected at publication, now names red hat openshift container platform 4.19Days to revision 43
2026-08-19Product addedCVE-2026-14164not named as affected at publication, now names red hat enterprise linux 10.0 extended update supportDays to revision 51
2026-08-19Product addedCVE-2026-14474not named as affected at publication, now names red hat openshift container platform 4.19Days to revision 43
2026-08-19Product addedCVE-2026-43961redhatnot named as affected at publication, now names vimDays to revision 0
2026-08-19Product addedCVE-2026-59691not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 41
2026-08-19Product addedCVE-2026-59692not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 41
2026-08-19Product addedCVE-2024-3884not named as affected at publication, now names red hat jboss enterprise application platform 7.4.24Days to revision 259
2026-08-19Product addedCVE-2025-12543not named as affected at publication, now names red hat jboss enterprise application platform 7.4.24Days to revision 224
2026-08-19Product addedCVE-2025-9784not named as affected at publication, now names red hat jboss enterprise application platform 7.4.24Days to revision 351
2026-08-19Product addedCVE-2026-0603not named as affected at publication, now names red hat jboss enterprise application platform 7.4.24Days to revision 208
2026-08-19Product addedCVE-2026-42965not named as affected at publication, now names red hat openshift container platform 4.21Days to revision 82
2026-08-19Product addedCVE-2026-42965not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 82
2026-08-19Record state changedCVE-2026-73682
whole record
VulnCheck
stated at publication PUBLISHED, now states REJECTEDDays to revision 5
2026-08-19Record state changedCVE-2026-74511
whole record
Linux
stated at publication PUBLISHED, now states REJECTEDDays to revision 4
2026-08-19Record state changedCVE-2026-64158
whole record
Linux
stated at publication PUBLISHED, now states REJECTEDDays to revision 31
Tue 18 Aug 2026· 50 record changes
2026-08-18Added to CISA KEVCVE-2026-33824
MicrosoftInternet Key Exchange (IKE) Service Extensions
CISA KEV
fix due 2026-08-21Not applicable: Added to CISA KEV has no earlier value
2026-08-18Added to CISA KEVCVE-2026-59310
BroadcomVMware vCenter
CISA KEV
fix due 2026-08-21Not applicable: Added to CISA KEV has no earlier value
2026-08-18Added to CISA KEVCVE-2026-55040
MicrosoftSharePoint
CISA KEV
fix due 2026-08-21Not applicable: Added to CISA KEV has no earlier value
2026-08-18Added to CISA KEVCVE-2026-65400
ApplemacOS
CISA KEV
fix due 2026-08-21Not applicable: Added to CISA KEV has no earlier value
2026-08-18Product addedCVE-2026-14613not named as affected at publication, now names red hat build of keycloak 26.6Days to revision 46
2026-08-18Product addedCVE-2026-17048not named as affected at publication, now names red hat build of keycloak 26.6Days to revision 25
2026-08-18Product addedCVE-2026-43794not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-43795not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64782not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65331not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65337not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65340not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65351not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64715not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64778not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64779not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64780not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64781not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64784not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-64787not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65332not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65333not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65334not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65335not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65336not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65338not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-65341not named as affected at publication, now names safariDays to revision 1
2026-08-18Product addedCVE-2026-75924not named as affected at publication, now names multicluster engine for kubernetesDays to revision 0
2026-08-18Product addedCVE-2026-11770not named as affected at publication, now names red hat directory server 12.4 e4s for rhel 9Days to revision 18
2026-08-18Product addedCVE-2026-11788not named as affected at publication, now names red hat directory server 12.4 e4s for rhel 9Days to revision 70
2026-08-18Product addedCVE-2026-14164not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 49
2026-08-18Product addedCVE-2025-5222not named as affected at publication, now names red hat openshift container platform 4.20Days to revision 448
2026-08-18Product addedCVE-2026-14476not named as affected at publication, now names red hat openshift container platform 4.20Days to revision 42
2026-08-18Product addedCVE-2026-14476not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 42
2026-08-18Product addedCVE-2026-14474not named as affected at publication, now names red hat openshift container platform 4.20Days to revision 42
2026-08-18Product addedCVE-2026-14474not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 42
2026-08-18Product addedCVE-2026-15722not named as affected at publication, now names red hat directory server 12.4 e4s for rhel 9Days to revision 18
2026-08-18Product addedCVE-2026-16313not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 21
2026-08-18Product addedCVE-2026-1933not named as affected at publication, now names red hat openshift container platform 4.20Days to revision 83
2026-08-18Product addedCVE-2026-1933not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 83
2026-08-18Product addedCVE-2026-14474not named as affected at publication, now names red hat openshift container platform 4.21Days to revision 42
2026-08-18Product addedCVE-2026-14476not named as affected at publication, now names red hat openshift container platform 4.21Days to revision 42
2026-08-18Product addedCVE-2026-1933not named as affected at publication, now names red hat openshift container platform 4.21Days to revision 83
2026-08-18Product addedCVE-2026-11770not named as affected at publication, now names red hat directory server 12.2 e4s for rhel 9Days to revision 18
2026-08-18Product addedCVE-2026-11788not named as affected at publication, now names red hat directory server 12.2 e4s for rhel 9Days to revision 70
2026-08-18Product addedCVE-2026-15722not named as affected at publication, now names red hat directory server 12.2 e4s for rhel 9Days to revision 18
2026-08-18CVSS base score changedCVE-2026-73669
whole record
cisa-cg
stated at publication 6.3, now states 7.3CVSS v3.1 · base scoreMediumHighDays to revision 5
2026-08-18Record state changedCVE-2026-73692
whole record
VulnCheck
stated at publication PUBLISHED, now states REJECTEDDays to revision 0
2026-08-18Record state changedCVE-2026-72585
whole record
TuranSec
stated at publication PUBLISHED, now states REJECTEDDays to revision 8
2026-08-18Record state changedCVE-2026-12243
whole record
@huntr_ai
stated at publication PUBLISHED, now states REJECTEDDays to revision 49
Mon 17 Aug 2026· 25 record changes
2026-08-17Added to CISA KEVCVE-2025-62593CISA KEVfix due 2026-08-21 · listed 2026-08-18Not applicable: Added to CISA KEV has no earlier value
2026-08-17Affected range extendedCVE-2026-2332
eclipse foundationeclipse jetty
eclipse
stated at publication 11.0.27, now states 11.0.28Release branch starts at 11.0.0.Days to revision 125
2026-08-17Product addedCVE-2026-39877not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-43738not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-43754not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-43757not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-43802not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-43809not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-64695not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-64723not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-64738not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-64744not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-64762not named as affected at publication, now names ios and ipadosDays to revision 21
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.8 telecommunications update serviceDays to revision 18
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.8 update services for sap solutionsDays to revision 18
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.6 extended update support long-life add-onDays to revision 17
2026-08-17Product addedCVE-2026-11788not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 69
2026-08-17Product addedCVE-2026-15722not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 8.4 extended update support long-life add-onDays to revision 17
2026-08-17Product addedCVE-2026-11788not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 69
2026-08-17Product addedCVE-2026-15722not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 9.6 extended update supportDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 10.0 extended update supportDays to revision 17

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →