Every change, newest first
| Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin. | Kind | Record or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together. | Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry. | What changed | Days to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong. |
|---|---|---|---|---|---|
| Wed 5 Aug 2026· 11 changes | |||||
| 2026-08-05 | CVSS base score changed | CVE-2026-71211 | whole record TuranSec | stated at publication 7.7, now states 7.1CVSS v3.1 · base scoreHighHigh | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71213 | whole record TuranSec | stated at publication 8.1, now states 9.1CVSS v3.1 · base scoreHighCritical | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71235 | whole record TuranSec | stated at publication 9.9, now states 8.8CVSS v3.1 · base scoreCriticalHigh | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71236 | whole record TuranSec | stated at publication 8.0, now states 8.7CVSS v3.1 · base scoreHighHigh | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71239 | whole record TuranSec | stated at publication 8.8, now states 8.1CVSS v3.1 · base scoreHighHigh | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71240 | whole record TuranSec | stated at publication 5.4, now states 4.3CVSS v3.1 · base scoreMediumMedium | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71244 | whole record TuranSec | stated at publication 7.1, now states 6.5CVSS v3.1 · base scoreHighMedium | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71246 | whole record TuranSec | stated at publication 5.7, now states 4.3CVSS v3.1 · base scoreMediumMedium | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71254 | whole record TuranSec | stated at publication 9.1, now states 9.8CVSS v3.1 · base scoreCriticalCritical | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71255 | whole record TuranSec | stated at publication 8.2, now states 8.6CVSS v3.1 · base scoreHighHigh | Time to revision 0 days |
| 2026-08-05 | CVSS base score changed | CVE-2026-71256 | whole record TuranSec | stated at publication 8.1, now states 9.8CVSS v3.1 · base scoreHighCritical | Time to revision 0 days |
| Tue 4 Aug 2026· 37 changes | |||||
| 2026-08-04 | Added to CISA KEV | CVE-2026-18556 | N-ableN-central CISA KEV | fix due 2026-08-07 | Duration unknown |
| 2026-08-04 | Added to CISA KEV | CVE-2026-34486 | ApacheTomcat CISA KEV | fix due 2026-08-07 | Duration unknown |
| 2026-08-04 | Added to CISA KEV | CVE-2026-9198 | IBMLangflow CISA KEV | fix due 2026-08-07 | Duration unknown |
| 2026-08-04 | Ransomware use confirmed | CVE-2025-26399 | SolarWindsWeb Help Desk CISA KEV | stated at publication Unknown, now states Known | Time to revision 148 days |
| 2026-08-048 commits | Product added | 24 rows, one per record and product | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension and 12 moreBranches and original-value intervals are stated on each row. | Time to revision 4 to 61 days | |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50256 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50257 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50258 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50259 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50260 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50261 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50262 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 2026-08-04 | same kind of change as the line above | CVE-2026-50263 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 6 extended lifecycle support - extension | Time to revision 61 days |
| 16 more rows in this change are not listed here. Open all 24 rows → | |||||
| 2026-08-04 | Product added | CVE-2026-40181 | GitHub_M | not named as affected at publication, now names @remix-run/router | Time to revision 63 days |
| 2026-08-04 | Product added | CVE-2026-0651 | TPLink | not named as affected at publication, now names tapo c211 v2 | Time to revision 175 days |
| 2026-08-04 | CVSS base score changed | CVE-2025-61813 | whole record adobe | stated at publication 8.2, now states 7.4CVSS v3.1 · base scoreHighHigh | Time to revision 238 days |
| 2026-08-04 | CVSS base score changed | CVE-2026-47996 | whole record adobe | stated at publication 7.6, now states 6.8CVSS v3.1 · base scoreHighMedium | Time to revision 21 days |
| 2026-08-04 | CVSS base score changed | CVE-2026-48322 | whole record adobe | stated at publication 9.6, now states 9.9CVSS v3.1 · base scoreCriticalCritical | Time to revision 21 days |
| 2026-08-04 | Record state changed | CVE-2026-13325 | whole record redhat | stated at publication PUBLISHED, now states REJECTED | Time to revision 39 days |
| 2026-08-04published 2026-07-28 | Advisory fix version moved | GHSA-6wcc-39rp-hh9pCVE-2026-54658 | npm@hypequery/clickhouse critical | stated at publication 2.0.2, now states 2.5.1 | Time to revision 7 days |
| 2026-08-04published 2026-06-03 | Package added to advisory | GHSA-2j2x-hqr9-3h42CVE-2026-40181 | moderate | not named as affected when the advisory was published, now names @remix-run/router | Time to revision 62 days |
| 2026-08-04published 2026-07-21 | Package added to advisory | GHSA-w5pg-649r-p6ggCVE-2026-58439 | high | not named as affected when the advisory was published, now names code.gitea.io/gitea | Time to revision 13 days |
| Mon 3 Aug 2026· 9 changes | |||||
| 2026-08-03 | Added to CISA KEV | CVE-2026-18577 | N-ableN-central CISA KEV | fix due 2026-08-06 | Duration unknown |
| 2026-08-03 | Ransomware use confirmed | SonicWallSMA1000 Appliances | stated at publication Unknown, now states Known | Time to revision 20 days | |
| 2026-08-03 | same kind of change as the line above | CVE-2026-15409 | same vendor as the line above | same change as the line above | Time to revision 20 days |
| 2026-08-03 | same kind of change as the line above | CVE-2026-15410 | same vendor as the line above | same change as the line above | Time to revision 20 days |
| 2026-08-03 | Product added | CVE-2023-52355 | not named as affected at publication, now names red hat enterprise linux 10.0 extended update support | Time to revision 921 days | |
| 2026-08-032 commits | Product added | CVE-2026-53705 | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support and 1 moreBranches and original-value intervals are stated on each row. | Time to revision 49 days | |
| 2026-08-03 | same kind of change as the line above | CVE-2026-53705 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support | Time to revision 49 days |
| 2026-08-03 | same kind of change as the line above | CVE-2026-53705 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support | Time to revision 49 days |
| 2026-08-03 | CVSS base score changed | CVE-2026-47296 | whole record microsoft | stated at publication 7.8, now states 7.5CVSS v3.1 · base scoreHighHigh | Time to revision 20 days |
| 2026-08-03 | CVSS base score changed | CVE-2026-55002 | whole record microsoft | stated at publication 7.8, now states 8.8CVSS v3.1 · base scoreHighHigh | Time to revision 20 days |
| 2026-08-03 | Record state changed | CVE-2026-13151 | whole record GitLab | stated at publication PUBLISHED, now states REJECTED | Time to revision 26 days |
| Sun 2 Aug 2026· 4 changes | |||||
| 2026-08-02 | Affected range extended | CVE-2026-5084 | aspeerwebdyne::session CPANSec | stated at publication 2.075, now states 3.003_704Release branch starts at 0. | Time to revision 83 days |
| 2026-08-02 | Product added | CVE-2026-10840 | not named as affected at publication, now names red hat openshift builds 1.7.3 | Time to revision 59 days | |
| 2026-08-02 | Product added | CVE-2026-4878 | not named as affected at publication, now names red hat openshift distributed tracing 3.9.2 | Time to revision 115 days | |
| 2026-08-02 | Product added | CVE-2026-16242 | not named as affected at publication, now names multicluster engine for kubernetes 2.1 | Time to revision 13 days | |
| Sat 1 Aug 2026· 1 change | |||||
| 2026-08-01 | Product added | CVE-2024-21536 | vendor not named snyk | not named as affected at publication, now names org.webjars.npm:http-proxy-middleware | Time to revision 651 days |
| Fri 31 Jul 2026· 61 changes | |||||
| 2026-07-31 | Product added | CVE-2026-0631 | TPLink | not named as affected at publication, now names archer axe75 v1 | Time to revision 179 days |
| 2026-07-313 commits | Product added | 6 rows, one per record and product | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support and 1 moreBranches and original-value intervals are stated on each row. | Time to revision 49 to 66 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-48864 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support | Time to revision 66 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-54228 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support | Time to revision 49 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-54228 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support | Time to revision 49 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-54229 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support | Time to revision 49 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-54229 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support | Time to revision 49 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-48864 | same vendor as the line above | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support | Time to revision 66 days |
| 2026-07-312 commits | Product added | redhat | not named as affected at publication, now names gimpBranches and original-value intervals are stated on each row. | Time to revision 4 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-66757 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-66758 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-66759 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | Product added | CVE-2026-66420 | VulnCheck | not named as affected at publication, now names meshcentral | Time to revision 1 days |
| 2026-07-31 | Product added | CVE-2026-16843 | not named as affected at publication, now names ds-3wg105g-si and 3 more | Time to revision 0 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-16843 | same vendor as the line above | not named as affected at publication, now names ds-3wg105g-si | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-16843 | same vendor as the line above | not named as affected at publication, now names ds-3wg105gp-si | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-16843 | same vendor as the line above | not named as affected at publication, now names ds-3wg210gp-si | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-16843 | same vendor as the line above | not named as affected at publication, now names ds-3wg507g-si | Time to revision 0 days |
| 2026-07-31 | Product added | CSA | not named as affected at publication, now names tbc | Time to revision 0 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-43829 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-43830 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-43831 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-43832 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-43833 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | Record state changed | CVE-2026-6552 | whole record GitLab | stated at publication PUBLISHED, now states REJECTED | Time to revision 50 days |
| 2026-07-31 | Record state changed | whole record mitre | stated at publication PUBLISHED, now states REJECTED | Time to revision 2 to 5 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51235 | same vendor as the line above | same change as the line above | Time to revision 5 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51244 | same vendor as the line above | same change as the line above | Time to revision 5 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51251 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51252 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51254 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51259 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51260 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-51261 | same vendor as the line above | same change as the line above | Time to revision 4 days |
| 24 more rows in this change are not listed here. Open all 32 rows → | |||||
| 2026-07-31 | Record state changed | whole record CSA | stated at publication PUBLISHED, now states REJECTED | Time to revision 0 days | |
| 2026-07-31 | same kind of change as the line above | CVE-2026-6889 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31 | same kind of change as the line above | CVE-2026-6890 | same vendor as the line above | same change as the line above | Time to revision 0 days |
| 2026-07-31published 2026-04-07 | Advisory fix version moved | GHSA-89gg-p5r5-q6r4 | pypimonai high | stated at publication 1.5.2, now states 1.6.0 | Time to revision 115 days |
| 2026-07-31published 2026-07-21 | Package added to advisory | GHSA-m4p7-r5rc-7g4jCVE-2026-59884 | high | not named as affected when the advisory was published, now names pyasn1 | Time to revision 10 days |
| 2026-07-31published 2026-06-16 | Advisory severity changed | GHSA-8xpq-cjcf-3wh9CVE-2026-49401 | whole advisoryhigh | stated at publication MODERATE, now states HIGHA vector changed on a shared CVSS version. The band and vector edits may have occurred separately. | Time to revision 45 days |
| 2026-07-31published 2023-08-29 to 2026-06-03 | Advisory withdrawn | whole advisorymoderate | withdrawn 2026-07-31 | Time to revision 58 to 1,067 days | |
| 2026-07-31published 2023-08-29 | same kind of change as the line above | GHSA-vmf9-6pcv-xr87CVE-2023-39522 | same package and registry as the line abovemoderate | withdrawn 2026-07-31 | Time to revision 1,067 days |
| 2026-07-31published 2026-06-03 | same kind of change as the line above | GHSA-v42x-x7jp-845hCVE-2026-6657 | same package and registry as the line abovemoderate | withdrawn 2026-07-31 | Time to revision 58 days |
| 2026-07-31published 2026-06-02 | same kind of change as the line above | GHSA-gf7q-q4j7-hp7cCVE-2026-5422 | same package and registry as the line abovemoderate | withdrawn 2026-07-31 | Time to revision 59 days |
| Thu 30 Jul 2026· 7 changes | |||||
| 2026-07-30 | Product added | CVE-2026-16242 | not named as affected at publication, now names multicluster engine for kubernetes 2.17 | Time to revision 10 days | |
| 2026-07-30 | Record state changed | whole record twcert | stated at publication PUBLISHED, now states REJECTED | Time to revision 195 days | |
| 2026-07-30 | same kind of change as the line above | CVE-2026-1018 | same vendor as the line above | same change as the line above | Time to revision 195 days |
| 2026-07-30 | same kind of change as the line above | CVE-2026-1019 | same vendor as the line above | same change as the line above | Time to revision 195 days |
| 2026-07-30 | same kind of change as the line above | CVE-2026-1020 | same vendor as the line above | same change as the line above | Time to revision 195 days |
| 2026-07-30 | same kind of change as the line above | CVE-2026-1021 | same vendor as the line above | same change as the line above | Time to revision 195 days |
| 2026-07-30published 2025-05-13 | Package added to advisory | GHSA-qqcr-9jfc-35c4 | high | not named as affected when the advisory was published, now names oxid-esales/oxideshop-metapackage-ce and 1 more | Time to revision 443 days |
| 2026-07-30published 2025-05-13 | same kind of change as the line above | GHSA-qqcr-9jfc-35c4CVE-2024-56526 | same package registry as the line abovehigh | not named as affected when the advisory was published, now names oxid-esales/oxideshop-metapackage-ce | Time to revision 443 days |
| 2026-07-30published 2025-05-13 | same kind of change as the line above | GHSA-qqcr-9jfc-35c4CVE-2024-56526 | same package registry as the line abovehigh | not named as affected when the advisory was published, now names oxid-esales/smarty-component | Time to revision 443 days |
| Wed 29 Jul 2026· 11 changes | |||||
| 2026-07-29 | Added to CISA KEV | CVE-2026-20316 | CiscoSecure Firewall Management Center (FMC) CISA KEV | fix due 2026-08-01 | Duration unknown |
| 2026-07-29 | Affected range extended | CVE-2024-4944 | watchguardmobile vpn with ssl client | stated at publication 12.10, now states 12.10.4Release branch starts at 0. | Time to revision 751 days |
| 2026-07-29 | Product added | CVE-2026-11541 | not named as affected at publication, now names cics transaction gateway for multiplatforms | Time to revision 29 days | |
| 2026-07-293 commits | Product added | CVE-2026-16242 | not named as affected at publication, now names multicluster engine for kubernetes 2.11 and 3 moreBranches and original-value intervals are stated on each row. | Time to revision 9 days | |
| 2026-07-29 | same kind of change as the line above | CVE-2026-16242 | same vendor as the line above | not named as affected at publication, now names multicluster engine for kubernetes 2.11 | Time to revision 9 days |
| 2026-07-29 | same kind of change as the line above | CVE-2026-16242 | same vendor as the line above | not named as affected at publication, now names multicluster engine for kubernetes 2.6 | Time to revision 9 days |
| 2026-07-29 | same kind of change as the line above | CVE-2026-16242 | same vendor as the line above | not named as affected at publication, now names multicluster engine for kubernetes 2.9 | Time to revision 9 days |
| 2026-07-29 | same kind of change as the line above | CVE-2026-16242 | same vendor as the line above | not named as affected at publication, now names multicluster engine for kubernetes 2.8 | Time to revision 9 days |
| 2026-07-29 | Product added | CVE-2025-12799 | not named as affected at publication, now names red hat jboss enterprise application platform 8.1.7.ga | Time to revision 22 days | |
| 2026-07-29 | Product added | CVE-2024-21537 | vendor not named snyk | not named as affected at publication, now names org.webjars.npm:lilconfig | Time to revision 636 days |
| 2026-07-29 | CVSS base score changed | CVE-2025-4318 | whole record AMZN | stated at publication 9.5, now states 9.0CVSS v4.0 · base scoreCriticalCritical | Time to revision 450 days |
| 2026-07-29 | Record state changed | CVE-2026-62389 | whole record VulnCheck | stated at publication PUBLISHED, now states REJECTED | Time to revision 14 days |
| Tue 28 Jul 2026· 39 changes | |||||
| 2026-07-28 | Fix version moved | microsoftmicrosoft exchange server 2016 cumulative update 23 | stated at publication 15.01.2507.069, now states 15.01.2507.071Release branch starts at 15.01.0.0. | Time to revision 49 days | |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45500 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45501 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45502 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45503 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45504 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45583 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-47631 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.01.0.0. | Time to revision 49 days |
| 2026-07-28 | Fix version moved | microsoftmicrosoft exchange server 2019 cumulative update 14 | stated at publication 15.02.1544.041, now states 15.02.1544.043Release branch starts at 15.02.0.0. | Time to revision 49 days | |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45500 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45501 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45502 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45503 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45504 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45583 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-47631 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | Fix version moved | microsoftmicrosoft exchange server 2019 cumulative update 15 | stated at publication 15.02.1748.046, now states 15.02.1748.048Release branch starts at 15.02.0.0. | Time to revision 49 days | |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45500 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45501 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45502 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45503 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45504 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45583 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-47631 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | Fix version moved | microsoftmicrosoft exchange server subscription edition rtm | stated at publication 15.02.2562.043, now states 15.02.2562.045Release branch starts at 15.02.0.0. | Time to revision 49 days | |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45500 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45501 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45502 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45503 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45504 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-45583 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-47631 | same vendor as the line above | same change as the line aboveRelease branch starts at 15.02.0.0. | Time to revision 49 days |
| 2026-07-28 | Affected range extended | CVE-2026-49779 | addifytax exempt for woocommerce Patchstack | stated at publication 1.9.3, now states 1.9.5Release branch starts at 0. | Time to revision 26 days |
| 2026-07-28 | Product added | CVE-2026-16313 | not named as affected at publication, now names red hat openshift container platform 4 | Time to revision 0 days | |
| 2026-07-28 | Product added | CVE-2026-12505 | not named as affected at publication, now names red hat openshift container platform 4.22 | Time to revision 41 days | |
| 2026-07-28 | Product added | not named as affected at publication, now names red hat enterprise linux 8.6 advanced mission critical update support | Time to revision 43 days | ||
| 2026-07-28 | same kind of change as the line above | CVE-2026-52720 | same vendor as the line above | same change as the line above | Time to revision 43 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-52722 | same vendor as the line above | same change as the line above | Time to revision 43 days |
| 2026-07-28 | Product added | CVE-2026-4258 | vendor not named snyk | not named as affected at publication, now names org.webjars.npm:sjcl | Time to revision 134 days |
| 2026-07-28 | Product added | not named as affected at publication, now names red hat enterprise linux 8.4 advanced mission critical update support | Time to revision 43 days | ||
| 2026-07-28 | same kind of change as the line above | CVE-2026-52720 | same vendor as the line above | same change as the line above | Time to revision 43 days |
| 2026-07-28 | same kind of change as the line above | CVE-2026-52722 | same vendor as the line above | same change as the line above | Time to revision 43 days |
| 2026-07-28 | Product added | CVE-2026-40000 | not named as affected at publication, now names blade a75 5g | Time to revision 1 days | |
| 2026-07-28 | CVSS base score changed | CVE-2026-12495 | whole record INCIBE | stated at publication 9.2, now states 5.3CVSS v4.0 · base scoreCriticalMedium | Time to revision 1 days |
| 2026-07-28published 2025-08-27 | Advisory withdrawn | GHSA-cxm3-wv7p-598cCVE-2025-10894 | whole advisorycritical | withdrawn 2026-07-28 | Time to revision 335 days |
| Mon 27 Jul 2026· 105 changes | |||||
| 2026-07-27 | Added to CISA KEV | CVE-2026-16812 | AristaVeloCloud Orchestrator CISA KEV | fix due 2026-07-30 | Duration unknown |
| 2026-07-27 | Added to CISA KEV | CVE-2025-68686 | FortinetFortiOS CISA KEV | fix due 2026-08-10 | Duration unknown |
| 2026-07-27 | Product added | 98 rows, one per record and product | not named as affected at publication, now names tvos and 2 more | Time to revision 28 days | |
| 2026-07-27 | same kind of change as the line above | CVE-2026-28979 | same vendor as the line above | not named as affected at publication, now names tvos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-28979 | same vendor as the line above | not named as affected at publication, now names visionos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-28979 | same vendor as the line above | not named as affected at publication, now names watchos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-39868 | same vendor as the line above | not named as affected at publication, now names tvos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-39868 | same vendor as the line above | not named as affected at publication, now names visionos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-39868 | same vendor as the line above | not named as affected at publication, now names watchos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-39872 | same vendor as the line above | not named as affected at publication, now names tvos | Time to revision 28 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-39872 | same vendor as the line above | not named as affected at publication, now names visionos | Time to revision 28 days |
| 90 more rows in this change are not listed here. Open all 98 rows → | |||||
| 2026-07-272 commits | Product added | not named as affected at publication, now names red hat discovery 2Branches and original-value intervals are stated on each row. | Time to revision 27 to 406 days | ||
| 2026-07-27 | same kind of change as the line above | CVE-2025-6170 | same vendor as the line above | same change as the line above | Time to revision 406 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-48864 | same vendor as the line above | same change as the line above | Time to revision 62 days |
| 2026-07-27 | same kind of change as the line above | CVE-2026-58016 | same vendor as the line above | same change as the line above | Time to revision 27 days |
| 2026-07-27 | Record state changed | CVE-2026-41603 | whole record apache | stated at publication PUBLISHED, now states REJECTED | Time to revision 90 days |
| 2026-07-27 | Record state changed | CVE-2026-10517 | whole record redhat | stated at publication PUBLISHED, now states REJECTED | Time to revision 56 days |
| Sun 26 Jul 2026· 3 changes | |||||
| 2026-07-26 | Product added | CVE-2026-48561 | not named as affected at publication, now names microsoft edge copilot for android and 1 more | Time to revision 12 days | |
| 2026-07-26 | same kind of change as the line above | CVE-2026-48561 | same vendor as the line above | not named as affected at publication, now names microsoft edge copilot for android | Time to revision 12 days |
| 2026-07-26 | same kind of change as the line above | CVE-2026-48561 | same vendor as the line above | not named as affected at publication, now names microsoft edge copilot for ios | Time to revision 12 days |
| 2026-07-26 | Product added | CVE-2025-5278 | not named as affected at publication, now names red hat openshift distributed tracing 3.10.2 | Time to revision 424 days | |
| Fri 24 Jul 2026· 9 changes | |||||
| 2026-07-24 | Ransomware use confirmed | CVE-2026-12569 | PTCWindchill and FlexPLM CISA KEV | stated at publication Unknown, now states Known | Time to revision 29 days |
| 2026-07-24 | Fix version moved | CVE-2026-8661 | rapid7insightconnect markdown plugin | stated at publication 4.0.0, now states 4.0.2Release branch starts at 4.0.0. | Time to revision 28 days |
| 2026-07-24 | Product added | CVE-2026-16870 | not named as affected at publication, now names snowflake odbc driver and 1 more | Time to revision 1 days | |
| 2026-07-24 | same kind of change as the line above | CVE-2026-16870 | same vendor as the line above | not named as affected at publication, now names snowflake odbc driver | Time to revision 1 days |
| 2026-07-24 | same kind of change as the line above | CVE-2026-16870 | same vendor as the line above | not named as affected at publication, now names snowflake php pdo driver | Time to revision 1 days |
| 2026-07-24 | Product added | CVE-2026-16768 | redhat | not named as affected at publication, now names gdk-pixbuf | Time to revision 1 days |
| 2026-07-24 | CVSS base score changed | CVE-2026-15786 | whole record Wordfence | stated at publication 4.9, now states 4.4CVSS v3.1 · base scoreMediumMedium | Time to revision 2 days |
| 2026-07-24 | Record state changed | CVE-2026-58054 | whole record VulnCheck | stated at publication PUBLISHED, now states REJECTED | Time to revision 27 days |
| 2026-07-24 | Record state changed | CVE-2026-1518 | whole record redhat | stated at publication PUBLISHED, now states REJECTED | Time to revision 172 days |
| 2026-07-24published 2026-05-06 | Package added to advisory | GHSA-rwm7-x88c-3g2pCVE-2026-42577 | high | not named as affected when the advisory was published, now names io.netty:netty-transport-classes-epoll | Time to revision 79 days |
| Thu 23 Jul 2026· 14 changes | |||||
| 2026-07-23 | Ransomware use confirmed | CVE-2021-40438 | ApacheApache CISA KEV | stated at publication Unknown, now states Known | Duration unknown |
| 2026-07-23 | Product added | CVE-2026-11332 | not named as affected at publication, now names migration toolkit for applications 8 and 4 more | Time to revision 49 days | |
| 2026-07-23 | same kind of change as the line above | CVE-2026-11332 | same vendor as the line above | not named as affected at publication, now names migration toolkit for applications 8 | Time to revision 49 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-11332 | same vendor as the line above | not named as affected at publication, now names migration toolkit for virtualization | Time to revision 49 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-11332 | same vendor as the line above | not named as affected at publication, now names red hat ansible automation platform ansible core 2 | Time to revision 49 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-11332 | same vendor as the line above | not named as affected at publication, now names red hat openshift container platform 4 | Time to revision 49 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-11332 | same vendor as the line above | not named as affected at publication, now names self-service automation portal 2 | Time to revision 49 days |
| 2026-07-23 | Product added | CVE-2026-16615 | redhat | not named as affected at publication, now names librest | Time to revision 1 days |
| 2026-07-23 | Product added | not named as affected at publication, now names red hat update infrastructure 5 | Time to revision 23 to 422 days | ||
| 2026-07-23 | same kind of change as the line above | CVE-2025-10911 | same vendor as the line above | same change as the line above | Time to revision 301 days |
| 2026-07-23 | same kind of change as the line above | CVE-2025-5278 | same vendor as the line above | same change as the line above | Time to revision 422 days |
| 2026-07-23 | same kind of change as the line above | CVE-2025-6170 | same vendor as the line above | same change as the line above | Time to revision 402 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-48864 | same vendor as the line above | same change as the line above | Time to revision 58 days |
| 2026-07-23 | same kind of change as the line above | CVE-2026-58016 | same vendor as the line above | same change as the line above | Time to revision 23 days |
| 2026-07-23 | CVSS base score changed | CVE-2026-63764 | whole record VulnCheck | stated at publication 9.3, now states 8.6CVSS v3.1 · base scoreCriticalHigh | Time to revision 2 days |
| 2026-07-23 | Record state changed | CVE-2026-16552 | whole record redhat | stated at publication PUBLISHED, now states REJECTED | Time to revision 1 days |
| Wed 22 Jul 2026· 15 changes | |||||
| 2026-07-22 | Added to CISA KEV | CVE-2026-16232 | Check PointSmartConsole CISA KEV | fix due 2026-07-25 | Duration unknown |
| 2026-07-22 | Added to CISA KEV | CVE-2026-50522 | MicrosoftSharePoint CISA KEV | fix due 2026-07-25 | Duration unknown |
| 2026-07-222 commits | Fix version moved | microsoft.net 10.0 | stated at publication 10.0.6, now states 10.0.10Branches and original-value intervals are stated on each row. | Time to revision 8 days | |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50524 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50525 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50526 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50527 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50528 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50648 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50651 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-50659 | same vendor as the line above | same change as the line aboveRelease branch starts at 10.0.0. | Time to revision 8 days |
| 3 more rows in this change are not listed here. Open all 11 rows → | |||||
| 2026-07-22 | Product added | CVE-2026-7253 | not named as affected at publication, now names sterling b2b integrator and 1 more | Time to revision 30 days | |
| 2026-07-22 | same kind of change as the line above | CVE-2026-7253 | same vendor as the line above | not named as affected at publication, now names sterling b2b integrator | Time to revision 30 days |
| 2026-07-22 | same kind of change as the line above | CVE-2026-7253 | same vendor as the line above | not named as affected at publication, now names sterling file gateway | Time to revision 30 days |
Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version and an added product count once per product, every other kind once per record or advisory. A collapsed line is one publisher's run of identical changes on one day; it says how many, and opens to all of them.
What this page cannot see
Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.
A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.
The units, the refusals, the cut-offs and every source, in full →
Paste your closed CVE tickets and see which of these changes hit them →