Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

11,431 changes · newest first · grouped by dayCSVJSONRSS

SinceClear the filter
ChangedSourceRows
Counted changes, newest first, one line per change to a CVE record, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord, Which record was edited, by its CVE id, or how many records one collapsed line stands on.Vendor · product, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Sun 9 Aug 2026· 1 record change
2026-08-09Product addedCVE-2026-16242not named as affected at publication, now names red hat openshift container platform 4.2Days to revision 20
Sat 8 Aug 2026· 4 record changes
2026-08-08Fix version movedCVE-2025-4106
watchguardfireware os
stated at publication 12.11.2, now states 12.11.3Release branch starts at 12.0.Days to revision 287
2026-08-08Affected range extended
watchguardfireware os
stated at publication 12.5.12+701324, now states 12.11.1Release branch starts at 12.0.Days to revision 540
2026-08-08same kind of change as the line aboveCVE-2025-1239same vendor as the line abovesame change as the line aboveRelease branch starts at 12.0.Days to revision 540
2026-08-08same kind of change as the line aboveCVE-2025-0178same vendor as the line abovesame change as the line aboveRelease branch starts at 12.0.Days to revision 540
2026-08-08Affected range extendedCVE-2025-2781
watchguardmobile vpn with ssl client
stated at publication 12.11, now states 12.11.2Release branch starts at 11.0.Days to revision 497
Fri 7 Aug 2026· 13 record changes
2026-08-07Fix version movedCVE-2026-68480
linuxlinux
stated at publication 5.10.263, now states 5.10.264Release branch starts at 5.10.*.same dayDays to revision 1
2026-08-07Fix version movedCVE-2026-68480
linuxlinux
stated at publication 5.15.214, now states 5.15.215Release branch starts at 5.15.*.same dayDays to revision 1
2026-08-07Fix version movedCVE-2026-68480
linuxlinux
stated at publication 6.1.181, now states 6.1.182Release branch starts at 6.1.*.same dayDays to revision 1
2026-08-07Fix version movedCVE-2026-68480
linuxlinux
stated at publication 6.6.149, now states 6.6.150Release branch starts at 6.6.*.same dayDays to revision 1
2026-08-07Affected range extendedCVE-2025-1071
watchguardfireware os
stated at publication 12.5.12+701324, now states 12.11.1Release branch starts at 12.0.Days to revision 539
2026-08-07Product addednot named as affected at publication, now names sso agentDays to revision 682
2026-08-07same kind of change as the line aboveCVE-2024-6592same vendor as the line abovesame change as the line aboveDays to revision 682
2026-08-07same kind of change as the line aboveCVE-2024-6593same vendor as the line abovesame change as the line aboveDays to revision 682
2026-08-07Product addednot named as affected at publication, now names sso clientDays to revision 682
2026-08-07same kind of change as the line aboveCVE-2024-6592same vendor as the line abovesame change as the line aboveDays to revision 682
2026-08-07same kind of change as the line aboveCVE-2024-6594same vendor as the line abovesame change as the line aboveDays to revision 682
2026-08-07Product addedCVE-2024-8424not named as affected at publication, now names endpoint securityDays to revision 638
2026-08-07Product addednot named as affected at publication, now names dwg trueviewDays to revision 1
2026-08-07same kind of change as the line aboveCVE-2026-7405same vendor as the line abovesame change as the line aboveDays to revision 1
2026-08-07same kind of change as the line aboveCVE-2026-7406same vendor as the line abovesame change as the line aboveDays to revision 1
2026-08-07Record state changedCVE-2025-58375
whole record
GitHub_M
stated at publication REJECTED, now states PUBLISHEDDays to revision 0
Thu 6 Aug 2026· 30 record changes
2026-08-06Affected range extendedCVE-2025-14843
wizitwizit gateway for woocommerce
Wordfence
stated at publication 1.2.9, now states 1.3.1Release branch starts at 0.Days to revision 195
2026-08-06Product addedCVE-2026-21655jcinot named as affected at publication, now names ccure 9000 and 1 moreDays to revision 14
2026-08-06same kind of change as the line aboveCVE-2026-21655same vendor as the line abovenot named as affected at publication, now names ccure 9000Days to revision 14
2026-08-06same kind of change as the line aboveCVE-2026-21655same vendor as the line abovenot named as affected at publication, now names victor application serverDays to revision 14
2026-08-064 commitsProduct added17 rows, one per record and productnot named as affected at publication, now names red hat enterprise linux ai 3.3 for rhel 9 and 10 moreBranches and original-value intervals are stated on each row.Days to revision 17 to 287
2026-08-06same kind of change as the line aboveCVE-2026-56208same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.3 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56208same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.4 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56209same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.3 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56209same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.4 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56210same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.3 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56210same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.4 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56211same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.3 for rhel 9Days to revision 48
2026-08-06same kind of change as the line aboveCVE-2026-56211same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux ai 3.4 for rhel 9Days to revision 48
9 more rows in this change are not listed here. Open all 17 rows
2026-08-06Product addedCVE-2025-11362
vendor not named
snyk
not named as affected at publication, now names org.webjars.npm:pdfmakeDays to revision 303
2026-08-06Product addedCVE-2026-65458Patchstacknot named as affected at publication, now names polylang proDays to revision 14
2026-08-06Product addedredhatnot named as affected at publication, now names stunnelDays to revision 2
2026-08-06same kind of change as the line aboveCVE-2026-70367same vendor as the line abovesame change as the line aboveDays to revision 2
2026-08-06same kind of change as the line aboveCVE-2026-70368same vendor as the line abovesame change as the line aboveDays to revision 2
2026-08-06CVSS base score changed
whole record
adobe
stated at publication 4.3, now states 6.1CVSS v3.1 · base scoreMediumMediumDays to revision 23 to 58
2026-08-06same kind of change as the line aboveCVE-2026-47991same vendor as the line abovesame change as the line aboveDays to revision 58
2026-08-06same kind of change as the line aboveCVE-2026-48000same vendor as the line abovesame change as the line aboveDays to revision 23
2026-08-06CVSS base score changedCVE-2026-19023
whole record
HDFG
stated at publication 0.0, now states 6.8CVSS v4.0 · base scoreNoneMediumDays to revision 1
2026-08-06Record state changedCVE-2026-28183
whole record
Patchstack
stated at publication PUBLISHED, now states REJECTEDDays to revision 0
2026-08-06Record state changedCVE-2026-56699
whole record
VulnCheck
stated at publication PUBLISHED, now states REJECTEDDays to revision 22
2026-08-06Record state changedCVE-2026-51992
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDDays to revision 8
Wed 5 Aug 2026· 23 record changes
2026-08-05Product addedredhatnot named as affected at publication, now names poptDays to revision 0 to 2
2026-08-05same kind of change as the line aboveCVE-2026-18739same vendor as the line abovesame change as the line aboveDays to revision 2
2026-08-05same kind of change as the line aboveCVE-2026-18839same vendor as the line abovesame change as the line aboveDays to revision 0
2026-08-053 commitsProduct addedCVE-2026-16242not named as affected at publication, now names red hat openshift container platform 4.18 and 2 moreBranches and original-value intervals are stated on each row.Days to revision 16 to 17
2026-08-05same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names red hat openshift container platform 4.18Days to revision 17
2026-08-05same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names red hat openshift container platform 4.19Days to revision 16
2026-08-05same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names red hat openshift container platform 4.21Days to revision 16
2026-08-05Product addedCVE-2026-14614not named as affected at publication, now names red hat build of keycloak 26.4 and 1 moreDays to revision 33
2026-08-05same kind of change as the line aboveCVE-2026-14614same vendor as the line abovenot named as affected at publication, now names red hat build of keycloak 26.4Days to revision 33
2026-08-05same kind of change as the line aboveCVE-2026-14614same vendor as the line abovenot named as affected at publication, now names red hat build of keycloak 26.6Days to revision 33
2026-08-05Product addedCVE-2026-65512Patchstacknot named as affected at publication, now names wp activity log premiumDays to revision 13
2026-08-05Product addedCVE-2026-24457eclipsenot named as affected at publication, now names eclipse glassfishDays to revision 153
2026-08-05CVSS base score changedCVE-2026-55747
whole record
TuranSec
stated at publication 7.1, now states 6.8CVSS v3.1 · base scoreHighMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71205
whole record
TuranSec
stated at publication 5.3, now states 6.5CVSS v3.1 · base scoreMediumMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71210
whole record
TuranSec
stated at publication 6.5, now states 5.3CVSS v3.1 · base scoreMediumMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71211
whole record
TuranSec
stated at publication 7.7, now states 7.1CVSS v3.1 · base scoreHighHighDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71213
whole record
TuranSec
stated at publication 8.1, now states 9.1CVSS v3.1 · base scoreHighCriticalDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71235
whole record
TuranSec
stated at publication 9.9, now states 8.8CVSS v3.1 · base scoreCriticalHighDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71236
whole record
TuranSec
stated at publication 8.0, now states 8.7CVSS v3.1 · base scoreHighHighDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71239
whole record
TuranSec
stated at publication 8.8, now states 8.1CVSS v3.1 · base scoreHighHighDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71240
whole record
TuranSec
stated at publication 5.4, now states 4.3CVSS v3.1 · base scoreMediumMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71244
whole record
TuranSec
stated at publication 7.1, now states 6.5CVSS v3.1 · base scoreHighMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71246
whole record
TuranSec
stated at publication 5.7, now states 4.3CVSS v3.1 · base scoreMediumMediumDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71254
whole record
TuranSec
stated at publication 9.1, now states 9.8CVSS v3.1 · base scoreCriticalCriticalDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71255
whole record
TuranSec
stated at publication 8.2, now states 8.6CVSS v3.1 · base scoreHighHighDays to revision 0
2026-08-05CVSS base score changedCVE-2026-71256
whole record
TuranSec
stated at publication 8.1, now states 9.8CVSS v3.1 · base scoreHighCriticalDays to revision 0
Tue 4 Aug 2026· 30 record changes
2026-08-048 commitsProduct added24 rows, one per record and productnot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension and 12 moreBranches and original-value intervals are stated on each row.Days to revision 4 to 61
2026-08-04same kind of change as the line aboveCVE-2026-50256same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50257same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50258same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50259same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50260same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50261same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50262same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
2026-08-04same kind of change as the line aboveCVE-2026-50263same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extensionDays to revision 61
16 more rows in this change are not listed here. Open all 24 rows
2026-08-04Product addedCVE-2026-40181GitHub_Mnot named as affected at publication, now names @remix-run/routerDays to revision 63
2026-08-04Product addedCVE-2026-0651TPLinknot named as affected at publication, now names tapo c211 v2Days to revision 175
2026-08-04CVSS base score changedCVE-2025-61813
whole record
adobe
stated at publication 8.2, now states 7.4CVSS v3.1 · base scoreHighHighDays to revision 238
2026-08-04CVSS base score changedCVE-2026-47996
whole record
adobe
stated at publication 7.6, now states 6.8CVSS v3.1 · base scoreHighMediumDays to revision 21
2026-08-04CVSS base score changedCVE-2026-48322
whole record
adobe
stated at publication 9.6, now states 9.9CVSS v3.1 · base scoreCriticalCriticalDays to revision 21
2026-08-04Record state changedCVE-2026-13325
whole record
redhat
stated at publication PUBLISHED, now states REJECTEDDays to revision 39
Mon 3 Aug 2026· 6 record changes
2026-08-03Product addedCVE-2023-52355not named as affected at publication, now names red hat enterprise linux 10.0 extended update supportDays to revision 921
2026-08-032 commitsProduct addedCVE-2026-53705not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support and 1 moreBranches and original-value intervals are stated on each row.Days to revision 49
2026-08-03same kind of change as the line aboveCVE-2026-53705same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 49
2026-08-03same kind of change as the line aboveCVE-2026-53705same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 49
2026-08-03CVSS base score changedCVE-2026-47296
whole record
microsoft
stated at publication 7.8, now states 7.5CVSS v3.1 · base scoreHighHighDays to revision 20
2026-08-03CVSS base score changedCVE-2026-55002
whole record
microsoft
stated at publication 7.8, now states 8.8CVSS v3.1 · base scoreHighHighDays to revision 20
2026-08-03Record state changedCVE-2026-13151
whole record
GitLab
stated at publication PUBLISHED, now states REJECTEDDays to revision 26
Sun 2 Aug 2026· 4 record changes
2026-08-02Affected range extendedCVE-2026-5084
aspeerwebdyne::session
CPANSec
stated at publication 2.075, now states 3.003_704Release branch starts at 0.Days to revision 83
2026-08-02Product addedCVE-2026-10840not named as affected at publication, now names red hat openshift builds 1.7.3Days to revision 59
2026-08-02Product addedCVE-2026-4878not named as affected at publication, now names red hat openshift distributed tracing 3.9.2Days to revision 115
2026-08-02Product addedCVE-2026-16242not named as affected at publication, now names multicluster engine for kubernetes 2.1Days to revision 13
Sat 1 Aug 2026· 1 record change
2026-08-01Product addedCVE-2024-21536
vendor not named
snyk
not named as affected at publication, now names org.webjars.npm:http-proxy-middlewareDays to revision 651
Fri 31 Jul 2026· 55 record changes
2026-07-31Product addedCVE-2026-0631TPLinknot named as affected at publication, now names archer axe75 v1Days to revision 179
2026-07-313 commitsProduct added6 rows, one per record and productnot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support and 1 moreBranches and original-value intervals are stated on each row.Days to revision 49 to 66
2026-07-31same kind of change as the line aboveCVE-2026-48864same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 66
2026-07-31same kind of change as the line aboveCVE-2026-54228same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 49
2026-07-31same kind of change as the line aboveCVE-2026-54228same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 49
2026-07-31same kind of change as the line aboveCVE-2026-54229same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 49
2026-07-31same kind of change as the line aboveCVE-2026-54229same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 49
2026-07-31same kind of change as the line aboveCVE-2026-48864same vendor as the line abovenot named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 66
2026-07-312 commitsProduct addedredhatnot named as affected at publication, now names gimpBranches and original-value intervals are stated on each row.Days to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-66757same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-66758same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-66759same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31Product addedCVE-2026-66420VulnChecknot named as affected at publication, now names meshcentralDays to revision 1
2026-07-31Product addedCVE-2026-16843not named as affected at publication, now names ds-3wg105g-si and 3 moreDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-16843same vendor as the line abovenot named as affected at publication, now names ds-3wg105g-siDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-16843same vendor as the line abovenot named as affected at publication, now names ds-3wg105gp-siDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-16843same vendor as the line abovenot named as affected at publication, now names ds-3wg210gp-siDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-16843same vendor as the line abovenot named as affected at publication, now names ds-3wg507g-siDays to revision 0
2026-07-31Product addedCSAnot named as affected at publication, now names tbcDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-43829same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-43830same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-43831same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-43832same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-43833same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31Record state changedCVE-2026-6552
whole record
GitLab
stated at publication PUBLISHED, now states REJECTEDDays to revision 50
2026-07-31Record state changed
whole record
mitre
stated at publication PUBLISHED, now states REJECTEDDays to revision 2 to 5
2026-07-31same kind of change as the line aboveCVE-2026-51235same vendor as the line abovesame change as the line aboveDays to revision 5
2026-07-31same kind of change as the line aboveCVE-2026-51244same vendor as the line abovesame change as the line aboveDays to revision 5
2026-07-31same kind of change as the line aboveCVE-2026-51251same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-51252same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-51254same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-51259same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-51260same vendor as the line abovesame change as the line aboveDays to revision 4
2026-07-31same kind of change as the line aboveCVE-2026-51261same vendor as the line abovesame change as the line aboveDays to revision 4
24 more rows in this change are not listed here. Open all 32 rows
2026-07-31Record state changed
whole record
CSA
stated at publication PUBLISHED, now states REJECTEDDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-6889same vendor as the line abovesame change as the line aboveDays to revision 0
2026-07-31same kind of change as the line aboveCVE-2026-6890same vendor as the line abovesame change as the line aboveDays to revision 0
Thu 30 Jul 2026· 5 record changes
2026-07-30Product addedCVE-2026-16242not named as affected at publication, now names multicluster engine for kubernetes 2.17Days to revision 10
2026-07-30Record state changed
whole record
twcert
stated at publication PUBLISHED, now states REJECTEDDays to revision 195
2026-07-30same kind of change as the line aboveCVE-2026-1018same vendor as the line abovesame change as the line aboveDays to revision 195
2026-07-30same kind of change as the line aboveCVE-2026-1019same vendor as the line abovesame change as the line aboveDays to revision 195
2026-07-30same kind of change as the line aboveCVE-2026-1020same vendor as the line abovesame change as the line aboveDays to revision 195
2026-07-30same kind of change as the line aboveCVE-2026-1021same vendor as the line abovesame change as the line aboveDays to revision 195
Wed 29 Jul 2026· 10 record changes
2026-07-29Affected range extendedCVE-2024-4944
watchguardmobile vpn with ssl client
stated at publication 12.10, now states 12.10.4Release branch starts at 0.Days to revision 751
2026-07-29Product addedCVE-2026-11541not named as affected at publication, now names cics transaction gateway for multiplatformsDays to revision 29
2026-07-293 commitsProduct addedCVE-2026-16242not named as affected at publication, now names multicluster engine for kubernetes 2.11 and 3 moreBranches and original-value intervals are stated on each row.Days to revision 9
2026-07-29same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names multicluster engine for kubernetes 2.11Days to revision 9
2026-07-29same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names multicluster engine for kubernetes 2.6Days to revision 9
2026-07-29same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names multicluster engine for kubernetes 2.9Days to revision 9
2026-07-29same kind of change as the line aboveCVE-2026-16242same vendor as the line abovenot named as affected at publication, now names multicluster engine for kubernetes 2.8Days to revision 9
2026-07-29Product addedCVE-2025-12799not named as affected at publication, now names red hat jboss enterprise application platform 8.1.7.gaDays to revision 22
2026-07-29Product addedCVE-2024-21537
vendor not named
snyk
not named as affected at publication, now names org.webjars.npm:lilconfigDays to revision 636
2026-07-29CVSS base score changedCVE-2025-4318
whole record
AMZN
stated at publication 9.5, now states 9.0CVSS v4.0 · base scoreCriticalCriticalDays to revision 450
2026-07-29Record state changedCVE-2026-62389
whole record
VulnCheck
stated at publication PUBLISHED, now states REJECTEDDays to revision 14
Tue 28 Jul 2026· 38 record changes
2026-07-28Fix version moved
microsoftmicrosoft exchange server 2016 cumulative update 23
stated at publication 15.01.2507.069, now states 15.01.2507.071Release branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45500same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45501same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45502same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45503same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45504same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45583same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-47631same vendor as the line abovesame change as the line aboveRelease branch starts at 15.01.0.0.Days to revision 49
2026-07-28Fix version moved
microsoftmicrosoft exchange server 2019 cumulative update 14
stated at publication 15.02.1544.041, now states 15.02.1544.043Release branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45500same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45501same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45502same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45503same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45504same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45583same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-47631same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28Fix version moved
microsoftmicrosoft exchange server 2019 cumulative update 15
stated at publication 15.02.1748.046, now states 15.02.1748.048Release branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45500same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45501same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45502same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45503same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45504same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45583same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-47631same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28Fix version moved
microsoftmicrosoft exchange server subscription edition rtm
stated at publication 15.02.2562.043, now states 15.02.2562.045Release branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45500same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45501same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45502same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45503same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45504same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-45583same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28same kind of change as the line aboveCVE-2026-47631same vendor as the line abovesame change as the line aboveRelease branch starts at 15.02.0.0.Days to revision 49
2026-07-28Affected range extendedCVE-2026-49779
addifytax exempt for woocommerce
Patchstack
stated at publication 1.9.3, now states 1.9.5Release branch starts at 0.Days to revision 26
2026-07-28Product addedCVE-2026-16313not named as affected at publication, now names red hat openshift container platform 4Days to revision 0
2026-07-28Product addedCVE-2026-12505not named as affected at publication, now names red hat openshift container platform 4.22Days to revision 41
2026-07-28Product addednot named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update supportDays to revision 43
2026-07-28same kind of change as the line aboveCVE-2026-52720same vendor as the line abovesame change as the line aboveDays to revision 43
2026-07-28same kind of change as the line aboveCVE-2026-52722same vendor as the line abovesame change as the line aboveDays to revision 43
2026-07-28Product addedCVE-2026-4258
vendor not named
snyk
not named as affected at publication, now names org.webjars.npm:sjclDays to revision 134
2026-07-28Product addednot named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update supportDays to revision 43
2026-07-28same kind of change as the line aboveCVE-2026-52720same vendor as the line abovesame change as the line aboveDays to revision 43
2026-07-28same kind of change as the line aboveCVE-2026-52722same vendor as the line abovesame change as the line aboveDays to revision 43
2026-07-28Product addedCVE-2026-40000not named as affected at publication, now names blade a75 5gDays to revision 1
2026-07-28CVSS base score changedCVE-2026-12495
whole record
INCIBE
stated at publication 9.2, now states 5.3CVSS v4.0 · base scoreCriticalMediumDays to revision 1
Mon 27 Jul 2026· 103 record changes
2026-07-27Product added98 rows, one per record and productnot named as affected at publication, now names tvos and 2 moreDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-28979same vendor as the line abovenot named as affected at publication, now names tvosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-28979same vendor as the line abovenot named as affected at publication, now names visionosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-28979same vendor as the line abovenot named as affected at publication, now names watchosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-39868same vendor as the line abovenot named as affected at publication, now names tvosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-39868same vendor as the line abovenot named as affected at publication, now names visionosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-39868same vendor as the line abovenot named as affected at publication, now names watchosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-39872same vendor as the line abovenot named as affected at publication, now names tvosDays to revision 28
2026-07-27same kind of change as the line aboveCVE-2026-39872same vendor as the line abovenot named as affected at publication, now names visionosDays to revision 28
90 more rows in this change are not listed here. Open all 98 rows
2026-07-272 commitsProduct addednot named as affected at publication, now names red hat discovery 2Branches and original-value intervals are stated on each row.Days to revision 27 to 406
2026-07-27same kind of change as the line aboveCVE-2025-6170same vendor as the line abovesame change as the line aboveDays to revision 406
2026-07-27same kind of change as the line aboveCVE-2026-48864same vendor as the line abovesame change as the line aboveDays to revision 62
2026-07-27same kind of change as the line aboveCVE-2026-58016same vendor as the line abovesame change as the line aboveDays to revision 27
2026-07-27Record state changedCVE-2026-41603
whole record
apache
stated at publication PUBLISHED, now states REJECTEDDays to revision 90
2026-07-27Record state changedCVE-2026-10517
whole record
redhat
stated at publication PUBLISHED, now states REJECTEDDays to revision 56
Sun 26 Jul 2026· 3 record changes
2026-07-26Product addedCVE-2026-48561not named as affected at publication, now names microsoft edge copilot for android and 1 moreDays to revision 12
2026-07-26same kind of change as the line aboveCVE-2026-48561same vendor as the line abovenot named as affected at publication, now names microsoft edge copilot for androidDays to revision 12
2026-07-26same kind of change as the line aboveCVE-2026-48561same vendor as the line abovenot named as affected at publication, now names microsoft edge copilot for iosDays to revision 12
2026-07-26Product addedCVE-2025-5278not named as affected at publication, now names red hat openshift distributed tracing 3.10.2Days to revision 424
Fri 24 Jul 2026· 4 record changes
2026-07-24Fix version movedCVE-2026-8661
rapid7insightconnect markdown plugin
stated at publication 4.0.0, now states 4.0.2Release branch starts at 4.0.0.Days to revision 28
2026-07-24Product addedCVE-2026-16870not named as affected at publication, now names snowflake odbc driver and 1 moreDays to revision 1
2026-07-24same kind of change as the line aboveCVE-2026-16870same vendor as the line abovenot named as affected at publication, now names snowflake odbc driverDays to revision 1
2026-07-24same kind of change as the line aboveCVE-2026-16870same vendor as the line abovenot named as affected at publication, now names snowflake php pdo driverDays to revision 1
2026-07-24Product addedCVE-2026-16768redhatnot named as affected at publication, now names gdk-pixbufDays to revision 1

Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none. A collapsed line is one publisher's run of identical changes on one day; it says how many, and opens to all of them.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →