Vulnerabilities
Summary — last 7 days
New vulnerabilities2,738▲ 10 vs. last week
Critical / high1,458▲ 322 vs. last week
New active exploitation (KEV)7▼ 3 vs. last week
Unscored (no CVSS)85▼ 441 vs. last week
3 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | High (7.8) | 0.32% | — | Kaspersky VPN Secure Connection | 8/5/2022 | 6/17/2026 | Kaspersky VPN Secure Connection for Windows version up to 21.5 was vulnerable to arbitrary file deletion via abuse of its 'Delete All Service Data And Reports' feature by the local authenticated attacker. | |
| Modified | High (7.1) | 0.31% | — | Kaspersky VPN Secure Connection | 9/2/2020 | 6/17/2026 | The installer of Kaspersky VPN Secure Connection prior to 5.0 was vulnerable to arbitrary file deletion that could allow an attacker to delete any file in the system. | |
| Modified | Medium (6.7) | 0.77% | — | Kaspersky Internet SecurityKaspersky Secure ConnectionKaspersky Security CloudKaspersky Total Security | 12/2/2019 | 6/17/2026 | Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible… |