Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

1,056 record changes · 21 advisory changes · newest first · grouped by dayCSVJSONRSS

SinceClear the filter
ChangedSourceRows
Counted changes from the last 30 days, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Mon 17 Aug 2026· 9 record changes
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 9.2 update services for sap solutionsDays to revision 17
2026-08-17Product addedCVE-2026-11770not named as affected at publication, now names red hat enterprise linux 9.4 update services for sap solutionsDays to revision 17
2026-08-17Record state changedCVE-2026-73327
whole record
VulnCheck
stated at publication PUBLISHED, now states REJECTEDDays to revision 5
2026-08-17Record state changedCVE-2026-72540
whole record
TuranSec
stated at publication PUBLISHED, now states REJECTEDDays to revision 6
2026-08-17Record state changedCVE-2026-71245
whole record
TuranSec
stated at publication PUBLISHED, now states REJECTEDDays to revision 12
2026-08-17Record state changedCVE-2026-72568
whole record
TuranSec
stated at publication PUBLISHED, now states REJECTEDDays to revision 7
2026-08-17Record state changedCVE-2026-68101
whole record
Linux
stated at publication PUBLISHED, now states REJECTEDDays to revision 7
2026-08-17Record state changedCVE-2026-72044
whole record
Linux
stated at publication PUBLISHED, now states REJECTEDDays to revision 2
2026-08-17Record state changedCVE-2026-72246
whole record
Linux
stated at publication PUBLISHED, now states REJECTEDDays to revision 2
Sun 16 Aug 2026· 1 record change
2026-08-16Product addedCVE-2026-59124not named as affected at publication, now names microsoft hpc pack 2019Days to revision 5
Fri 14 Aug 2026· 49 record changes · 3 advisory changes
2026-08-14Ransomware use confirmedCVE-2025-60710
MicrosoftWindows
CISA KEV
stated at publication Unknown, now states KnownDays to revision 123
2026-08-14Ransomware use confirmedCVE-2020-29574
SophosCyberoamOS
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2020-0618
MicrosoftSQL Server
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2021-4034
Red HatPolkit
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2016-0189
MicrosoftInternet Explorer
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2022-21882
MicrosoftWin32k
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2019-5591
FortinetFortiOS
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2019-0803
MicrosoftWin32k
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2018-0802
MicrosoftOffice
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Ransomware use confirmedCVE-2020-0968
MicrosoftInternet Explorer
CISA KEV
stated at publication Unknown, now states KnownDays to revision at least 534
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 10 version 1607
stated at publication 10.0.14393.9060, now states 10.0.14393.9339Release branch starts at 10.0.14393.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 10 version 1809
stated at publication 10.0.17763.8644, now states 10.0.17763.9020Release branch starts at 10.0.17763.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 10 version 21h2
stated at publication 10.0.19044.7184, now states 10.0.19044.7548Release branch starts at 10.0.19044.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 10 version 22h2
stated at publication 10.0.19045.7184, now states 10.0.19045.7548Release branch starts at 10.0.19045.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 11 version 23h2
stated at publication 10.0.22631.6936, now states 10.0.22631.7376Release branch starts at 10.0.22631.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 11 version 25h2
stated at publication 10.0.26200.8246, now states 10.0.26200.8875Release branch starts at 10.0.26200.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows 11 version 26h1
stated at publication 10.0.28000.1836, now states 10.0.28000.2525Release branch starts at 10.0.28000.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2012
stated at publication 6.2.9200.26026, now states 6.2.9200.26226Release branch starts at 6.2.9200.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2012 (server core installation)
stated at publication 6.2.9200.26026, now states 6.2.9200.26226Release branch starts at 6.2.9200.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2012 r2
stated at publication 6.3.9600.23132, now states 6.3.9600.23291Release branch starts at 6.3.9600.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2012 r2 (server core installation)
stated at publication 6.3.9600.23132, now states 6.3.9600.23291Release branch starts at 6.3.9600.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2016
stated at publication 10.0.14393.9060, now states 10.0.14393.9339Release branch starts at 10.0.14393.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2016 (server core installation)
stated at publication 10.0.14393.9060, now states 10.0.14393.9339Release branch starts at 10.0.14393.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2019
stated at publication 10.0.17763.8644, now states 10.0.17763.9020Release branch starts at 10.0.17763.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2019 (server core installation)
stated at publication 10.0.17763.8644, now states 10.0.17763.9020Release branch starts at 10.0.17763.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2022
stated at publication 10.0.20348.5020, now states 10.0.20348.5386Release branch starts at 10.0.20348.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2025
stated at publication 10.0.26100.32690, now states 10.0.26100.33158Release branch starts at 10.0.26100.0.Days to revision 122
2026-08-14Fix version movedCVE-2026-32202
microsoftwindows server 2025 (server core installation)
stated at publication 10.0.26100.32690, now states 10.0.26100.33158Release branch starts at 10.0.26100.0.Days to revision 122
2026-08-14Affected range extendedCVE-2026-65480
codexthemesthegem
Patchstack
stated at publication 5.11.1, now states 5.12.1.1Release branch starts at 0.Days to revision 22
2026-08-14Affected range extendedCVE-2026-57804
codexthemesthegem theme elements (for elementor)
Patchstack
stated at publication 5.11.1, now states 5.12.1.1Release branch starts at 0.Days to revision 32
2026-08-14Product addedCVE-2025-14300TPLinknot named as affected at publication, now names tapo c425 v1.2Days to revision 238
2026-08-14Product addedCVE-2026-73039VulnChecknot named as affected at publication, now names streamaDays to revision 1
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.12Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.15Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.16Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.19Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.21Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.13Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.14Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.17Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.18Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.20Days to revision 2
2026-08-14Product addedCVE-2026-13622not named as affected at publication, now names red hat container native virtualization 4.22Days to revision 2
2026-08-14Product addedCVE-2026-59692not named as affected at publication, now names red hat enterprise linux 7 extended lifecycle supportDays to revision 36
2026-08-14CVSS base score changedCVE-2026-65796
whole record
microsoft
stated at publication 5.9, now states 8.1CVSS v3.1 · base scoreMediumHighDays to revision 3
2026-08-14CVSS base score changedCVE-2026-44962
whole record
hackerone
stated at publication 10.0, now states 9.9CVSS v3.1 · base scoreCriticalCriticalDays to revision 77
2026-08-14CVSS base score changedCVE-2026-19617
whole record
redhat
stated at publication 5.7, now states 5.5CVSS v3.1 · base scoreMediumMediumDays to revision 0
2026-08-14Record state changedCVE-2026-73188
whole record
Patchstack
stated at publication PUBLISHED, now states REJECTEDDays to revision 1
2026-08-14Record state changedCVE-2026-28184
whole record
Patchstack
stated at publication PUBLISHED, now states REJECTEDDays to revision 1
2026-08-14published 2026-04-14Advisory fix version movedGHSA-355h-qmc2-wpwfCVE-2026-2332
mavenorg.eclipse.jetty:jetty-http
high
stated at publication 11.0.28, now states 11.0.29Days to revision 35
2026-08-14published 2026-02-19Package added to advisoryGHSA-p6jf-79j3-33f3CVE-2025-13590criticalnot named as affected when the advisory was published, now names org.wso2.carbon.apimgt:org.wso2.carbon.apimgt.rest.api.admin.v1Days to revision 176
2026-08-14published 2026-04-29Package added to advisoryGHSA-w22p-4x9f-486vCVE-2026-42523criticalnot named as affected when the advisory was published, now names com.coravy.hudson.plugins.github:githubDays to revision 107
Thu 13 Aug 2026· 38 record changes
2026-08-13Affected range extendedCVE-2026-70556
hubzillahubzilla
VulnCheck
stated at publication 11.2.1, now states 11.4Release branch starts at 0.Days to revision 7
2026-08-13Affected range extendedCVE-2025-7708TR-CERTstated at publication 09022026, now states 26072025Release branch starts at 0.Days to revision 185
2026-08-13Affected range extendedCVE-2026-17020
unknownsalon booking system
WPScan
stated at publication 10.30.33, now states 10.31.0Release branch starts at 0.Days to revision 3
2026-08-13Product addedCVE-2026-12912not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 45
2026-08-13Product addedCVE-2026-12912not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 45
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 46
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.4 extended update support long-life add-onDays to revision 46
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 46
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.6 extended update support long-life add-onDays to revision 46
2026-08-13Product addedCVE-2026-39821Gonot named as affected at publication, now names net/httpDays to revision 83
2026-08-13Product addedCVE-2026-39821Gonot named as affected at publication, now names net/http/internal/http2Days to revision 83
2026-08-13Product addedCVE-2026-46600Gonot named as affected at publication, now names netDays to revision 23
2026-08-13Product addedCVE-2026-59691not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 36
2026-08-13Product addedCVE-2026-59692not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 36
2026-08-13Product addedCVE-2026-73666GitHub_Mnot named as affected at publication, now names backstage-pluginsDays to revision 0
2026-08-13Product addedCVE-2026-13757not named as affected at publication, now names red hat discovery 2Days to revision 45
2026-08-13Product addedCVE-2026-14164not named as affected at publication, now names red hat discovery 2Days to revision 45
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 9.2 update services for sap solutionsDays to revision 45
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.8 telecommunications update serviceDays to revision 45
2026-08-13Product addedCVE-2026-13601not named as affected at publication, now names red hat enterprise linux 8.8 update services for sap solutionsDays to revision 45
2026-08-13Product addedCVE-2026-65807not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68793not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68794not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68795not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68796not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68797not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68799not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68800not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68801not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68802not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68803not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68804not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68805not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68806not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68807not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68808not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68810not named as affected at publication, now names office online serverDays to revision 2
2026-08-13Product addedCVE-2026-68811not named as affected at publication, now names office online serverDays to revision 2

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →