Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

state:in-the-wild — CVE vulnerabilities tagged 406

406 CVE security advisories tagged "state:in-the-wild" with AI Chinese analysis, CVSS, references and POCs.

The tag "state:in-the-wild" signifies that a disclosed vulnerability has been actively exploited by attackers in real-world environments, rather than remaining theoretical or limited to controlled laboratory testing. This classification is critical because it indicates an immediate and tangible threat to public infrastructure, demanding urgent mitigation strategies from administrators and developers. Typically, these vulnerabilities involve remote code execution, authentication bypasses, or critical logic flaws that allow adversaries to compromise systems without physical access. The presence of this tag implies that exploit code is likely circulating in the wild, increasing the risk of widespread data breaches, service disruptions, or lateral movement within networks. Consequently, organizations must prioritize patching these specific CVEs to prevent active intrusion, as the window between disclosure and exploitation has effectively closed, leaving systems exposed to sophisticated threat actors seeking immediate gain.

CVE IDTitleCVSSSeverityPublished
CVE-2015-5122 Adobe Flash Player ActionScript 3 释放后重用漏洞 — n/a 8.8 -2015-07-14
CVE-2015-5123 Adobe Flash Player ActionScript 3 释放后重用漏洞 — n/a 8.8 -2015-07-14
CVE-2015-5119 Adobe Flash Player ActionScript 3 缓冲区溢出漏洞 — n/a 9.8 -2015-07-08
CVE-2015-3113 Adobe Flash Player 基于堆的缓冲区溢出漏洞 — n/a 8.8 -2015-06-23
CVE-2015-2945 Hajime Fujimoto mt-phpincgi 代码注入漏洞 — n/a 9.8 -2015-05-25
CVE-2014-8361 Realtek SDK 输入验证错误 — n/a 9.8 -2015-05-01
CVE-2015-1701 Microsoft Windows Win32k 特权提升漏洞 — n/a 7.8 -2015-04-21
CVE-2015-3043 Adobe Flash Player 内存损坏漏洞 — n/a 8.8 -2015-04-14
CVE-2015-1494 WordPress FancyBox for WordPress插件跨站脚本漏洞 — n/a 6.1 -2015-02-17
CVE-2015-0313 Adobe Flash Player 任意代码执行漏洞 — n/a 8.8 -2015-02-02
CVE-2015-0310 Adobe Flash Player 安全绕过漏洞 — n/a 8.1 -2015-01-23
CVE-2015-0311 Adobe Flash Player 安全漏洞 — n/a 8.8 -2015-01-23
CVE-2014-9163 Adobe Flash Player 基于栈的缓冲区溢出漏洞 — n/a 8.8 -2014-12-10
CVE-2014-6324 多款Microsoft Windows产品远程提权漏洞 — n/a 7.5 -2014-11-18
CVE-2014-4077 Microsoft IME 特权提升漏洞 — n/a 8.1 -2014-11-11
CVE-2014-6352 多款Microsoft Windows产品代码执行漏洞 — n/a 7.8 -2014-10-22
CVE-2014-4113 Microsoft Windows Win32k.sys 特权提升漏洞 — n/a 8.4 -2014-10-15
CVE-2014-4114 Microsoft Windows OLE 远程执行代码漏洞 — n/a 7.8 -2014-10-15
CVE-2014-4123 Microsoft Internet Explorer 特权提升漏洞 — n/a 8.8 -2014-10-15
CVE-2014-4148 Microsoft TrueType 字体分析远程执行代码漏洞 — n/a 9.8 -2014-10-15
CVE-2014-7235 FreePBX 代码注入漏洞 — n/a 9.8 -2014-10-07
CVE-2014-6293 TYPO3 Statistics扩展SQL注入漏洞 — n/a 9.8 -2014-10-03
CVE-2014-1807 Microsoft Windows Shell 文件关联漏洞 — n/a 7.8 -2014-05-14
CVE-2014-1809 Microsoft Office MSCOMCTL ASLR 权限许可和访问控制漏洞 — n/a 4.3 -2014-05-14
CVE-2014-1812 Microsoft Windows组策略首选项密码特权提升漏洞 — n/a 8.8 -2014-05-14
CVE-2014-1815 Microsoft Internet Explorer 内存损坏漏洞 — n/a 7.5 -2014-05-14
CVE-2013-7372 Apache Harmony 加密问题漏洞 — n/a 9.8 -2014-04-29
CVE-2014-0515 Adobe Flash Player 缓冲区溢出漏洞 — n/a 9.8 -2014-04-29
CVE-2014-1776 Microsoft Internet Explorer 释放后重用漏洞 — n/a 9.8 -2014-04-27
CVE-2014-1761 Microsoft Word 内存损坏漏洞 — n/a 9.8 -2014-03-24

Vulnerabilities classified as state:in-the-wild represent 406 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.