위협 인텔리전스 (1,991건)
실제 악용·공격 신호가 있는 취약점 — CISA KEV · Qualys RTI · 공개 PoC/익스플로잇 · 악용확률(EPSS) 높은 건 통합. Qualys 마지막 동기화 14시간 전.
CISA KEV
1,685
실제 공격 중
985
랜섬웨어
352
익스플로잇 공개
1,334
악용확률 50%↑
877
제로데이
13
| 긴급도 | CVE | 심각도 | 악용확률 | 신호 | 제품 · 악성코드 |
|---|---|---|---|---|---|
| 80 | CVE-2022-42856 | — T9.3 | 94.7% | KEV실공격익스공개기능적 EPSS 95% | Apple iOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2024-4671 | — T9.1 | 94.6% | KEV실공격익스공개기능적 EPSS 95% | Google Chromium |
| 80 | CVE-2025-41244 | — T8.4 | 94.5% | KEV실공격익스공개기능적 EPSS 95% | Broadcom VMware Aria Operations and VMware Tools 🦠 CVE-2025-38352 (Exploit) |
| 80 | CVE-2023-0386 | — T8.2 | 94.4% | KEV실공격PoC기능적 EPSS 94% | Linux Kernel 🦠 CVE-2022-25636 (Exploit); CVE-2023-0386 (Exploit) |
| 80 | CVE-2021-1870 | — T9.3 | 94.3% | KEV실공격익스공개기능적 EPSS 94% | Apple iOS, iPadOS, and macOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2025-5419 | — T8.2 | 94.2% | KEV실공격익스공개기능적 EPSS 94% | Google Chromium V8 |
| 80 | CVE-2021-1871 | — T9.3 | 93.8% | KEV실공격익스공개기능적 EPSS 94% | Apple iOS, iPadOS, and macOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2021-30952 | — T9.3 | 93.7% | KEV실공격익스공개기능적 EPSS 94% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2025-24990 | — T9.2 | 93.2% | KEV실공격익스공개기능적 EPSS 93% | Microsoft Windows 🦠 CVE-2025-59230 (Exploit) |
| 80 | CVE-2020-6820 | — T7.5 | 93.2% | KEV실공격익스공개기능적 EPSS 93% | Mozilla Firefox and Thunderbird |
| 80 | CVE-2021-22600 | — T8.2 | 93.0% | KEV실공격PoC기능적 EPSS 93% | Linux Kernel 🦠 Multiverze (Trojan); CVE-2022-0847 (Exploit); CVE-2021-4034 (Exploit); CVE-2022-25636 (Exploit); CVE-2022-099… |
| 80 | CVE-2025-62215 | — T9.1 | 92.9% | KEV실공격PoC기능적 EPSS 93% | Microsoft Windows 🦠 Unattributed (Ransomware) |
| 80 | CVE-2023-2136 | — T9.1 | 92.6% | KEV실공격익스공개기능적 EPSS 93% | Google Chromium Skia |
| 80 | CVE-2025-13223 | — T9.1 | 91.7% | KEV실공격익스공개기능적 EPSS 92% | Google Chromium V8 |
| 80 | CVE-2021-38000 | — T8.9 | 91.1% | KEV실공격익스공개기능적 EPSS 91% | Google Chromium Intents 🦠 CVE-2021-38003 (Exploit) |
| 80 | CVE-2021-30661 | — T9.3 | 90.8% | KEV실공격익스공개기능적 EPSS 91% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2025-24200 | — T9.3 | 90.6% | KEV실공격익스공개기능적 EPSS 91% | Apple iOS and iPadOS |
| 80 | CVE-2019-0859 | — T9.1 | 90.2% | KEV실공격익스공개기능적 EPSS 90% | Microsoft Win32k 🦠 Johnnie (Trojan); Occamy (Trojan); Occamy (PUA); Wacatac (Trojan); Masson (Trojan); Ymacco (Trojan); Convagen… |
| 80 | CVE-2025-24201 | — T9.3 | 90.1% | KEV실공격익스공개기능적 EPSS 90% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2025-48384 | — T9.1 | 90.1% | KEV실공격익스공개기능적 EPSS 90% | Git Git 🦠 CVE-2025-32463 (Exploit) |
| 80 | CVE-2025-47827 | — T9.2 | 89.9% | KEV실공격익스공개기능적 EPSS 90% | IGEL IGEL OS 🦠 CVE-2025-59230 (Exploit) |
| 80 | CVE-2025-24985 | — T8.2 | 89.4% | KEV실공격익스공개기능적 EPSS 89% | Microsoft Windows 🦠 CVE-2025-24054 (Exploit); CVE-2025-26633 (Exploit); Generic (Exploit); Larva-208 (Ransomware); Unattributed (… |
| 80 | CVE-2023-0266 | — T8.2 | 89.0% | KEV실공격PoC기능적 EPSS 89% | Linux Kernel 🦠 CVE-2023-32233 (Exploit); CVE-2024-1086 (Exploit); Multiverze (Trojan); CVE-2021-4034 (Exploit); CVE-2023-350… |
| 80 | CVE-2021-30665 | — T9.3 | 88.9% | KEV실공격익스공개기능적 EPSS 89% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2024-53197 | — T7.5 | 88.5% | KEV실공격익스공개기능적 EPSS 89% | Linux Kernel 🦠 CVE-2022-0995 (Exploit); CVE-2025-21756 (Exploit) |
| 80 | CVE-2021-30663 | — T9.3 | 88.3% | KEV실공격익스공개기능적 EPSS 88% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2024-53104 | — T8.2 | 87.7% | KEV실공격익스공개기능적 EPSS 88% | Linux Kernel 🦠 CVE-2022-2639 (Exploit) |
| 80 | CVE-2022-48503 | — T9.3 | 87.3% | KEV실공격익스공개기능적 EPSS 87% | Apple Multiple Products 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2023-36584 | — T9.1 | 86.6% | KEV실공격익스공개기능적 EPSS 87% | Microsoft Windows 🦠 CVE-2023-36584 (Exploit); CVE-2023-44487 (Exploit) |
| 80 | CVE-2021-30666 | — T9.3 | 86.3% | KEV실공격익스공개기능적 EPSS 86% | Apple iOS 🦠 CVE-2016-5195 (Exploit); CVE-2020-9856 (Exploit); CVE-2020-9850 (Exploit); CVE-2020-9802 (Exploit) |
| 80 | CVE-2021-29256 | — T9.1 | 86.3% | KEV실공격익스공개기능적 EPSS 86% | Arm Mali Graphics Processing Unit (GPU) |
| 80 | CVE-2024-32896 | — T9.1 | 86.3% | KEV실공격익스공개기능적 EPSS 86% | Android Pixel |
| 80 | CVE-2020-6819 | — T7.5 | 86.2% | KEV실공격익스공개기능적 EPSS 86% | Mozilla Firefox and Thunderbird |
| 80 | CVE-2022-21919 | — T9.1 | 86.1% | KEV실공격익스공개기능적 EPSS 86% | Microsoft Windows 🦠 CVE-2021-34484 (Exploit); CVE-2022-21919 (Exploit); CVE-2022-21916 (Exploit); CVE-2018-8120 (Exploit); CVE-20… |
| 80 | CVE-2021-38649 | — T9.1 | 85.8% | KEV실공격익스공개기능적 EPSS 86% | Microsoft Open Management Infrastructure (OMI) 🦠 CVE-2021-38647 (Exploit); Unattributed (Ransomware) |
| 80 | CVE-2021-38645 | — T9.1 | 85.0% | KEV실공격익스공개기능적 EPSS 85% | Microsoft Open Management Infrastructure (OMI) 🦠 CVE-2021-38647 (Exploit); Unattributed (Ransomware) |
| 80 | CVE-2024-36971 | — T9.1 | 84.8% | KEV실공격익스공개기능적 EPSS 85% | Android Kernel |
| 80 | CVE-2025-59230 | — T9.2 | 84.7% | KEV실공격익스공개기능적 EPSS 85% | Microsoft Windows 🦠 CVE-2025-59230 (Exploit) |
| 80 | CVE-2023-21492 | — T8.2 | 83.9% | KEV실공격익스공개기능적 EPSS 84% | Samsung Mobile Devices |
| 80 | CVE-2025-62221 | — T8.2 | 82.8% | KEV실공격익스공개기능적 EPSS 83% | Microsoft Windows 🦠 CVE-2025-62221 (Exploit) |
| 80 | CVE-2022-26486 | — T8.9 | 82.3% | KEV실공격익스공개기능적 EPSS 82% | Mozilla Firefox |
| 80 | CVE-2025-21391 | — T8.2 | 81.5% | KEV실공격익스공개기능적 EPSS 82% | Microsoft Windows |
| 80 | CVE-2025-24993 | — T8.2 | 80.8% | KEV실공격익스공개기능적 EPSS 81% | Microsoft Windows 🦠 CVE-2025-24054 (Exploit); CVE-2025-26633 (Exploit); Generic (Exploit); Larva-208 (Ransomware); Unattributed (… |
| 80 | CVE-2026-3910 | — T9.1 | 79.1% | KEV실공격익스공개기능적 EPSS 79% | Google Chromium V8 |
| 80 | CVE-2025-24991 | — T8.2 | 79.0% | KEV실공격익스공개기능적 EPSS 79% | Microsoft Windows 🦠 CVE-2025-24054 (Exploit); CVE-2025-26633 (Exploit); Generic (Exploit); Larva-208 (Ransomware); Unattributed (… |
| 80 | CVE-2025-24984 | — T8.2 | 78.6% | KEV실공격익스공개기능적 EPSS 79% | Microsoft Windows 🦠 CVE-2025-24054 (Exploit); CVE-2025-26633 (Exploit); Generic (Exploit); Larva-208 (Ransomware); Unattributed (… |
| 80 | CVE-2025-21043 | — T9.1 | 77.8% | KEV실공격익스공개기능적 EPSS 78% | Samsung Mobile Devices 🦠 CVE-2025-38352 (Exploit) |
| 80 | CVE-2026-72530 | 9.0 T8.8 | 77.0% | KEV익스공개 EPSS 77% | TrueConf Server |
| 80 | CVE-2023-28229 | — T8.2 | 76.2% | KEV실공격익스공개기능적 EPSS 76% | Microsoft Windows CNG Key Isolation Service 🦠 CVE-2023-28252 (Exploit); CVE-2023-2825 (Exploit); Nokoyawa (Ransomware); Black Basta (Ransomware); Unattribu… |
| 80 | CVE-2022-41033 | — T8.2 | 74.7% | KEV실공격익스공개기능적 EPSS 75% | Microsoft Windows COM+ Event System Service |