Skip to the content.
gantt title Cases in 2024 dateFormat YYYY-MM-DD axisFormat %e %b %Y DIVD-2022-00048 - Dossier Energy Transition, 7 Sep 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00052 - Multiple vulnerabilities is Cloudflow software, 21 Feb 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00055 - Server Management Interfaces security issues, 8 Oct 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00058 - ZK Framework - ZK AuUploader Servlet Upload Vulnerability, 30 Oct 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00061 - KNXNet/IP gateways often left open to the internet, 8 Feb 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00064 - Multiple injection vulnerabilities identified within Axiell Iguana CMS, 8 Sep 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2022-00065 - Multiple Critical Vulnerabilities in multiple Zyxel EOL devices, 19 Dec 2022 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00002 - Publicly Reachable Malicious Webshells, 6 Jan 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00010 - Remote Code Execution in Microsoft Exchange Server, 14 Feb 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00011 - FortiNAC and FortiWeb RCE Vulnerability, 3 Feb 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00021 - Multiple vulnerabilities in Danfoss AK-EM 100, 18 Jan 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00022 - OS command injection vulnerability of Zyxel firewalls, 28 Apr 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00025 - Multiple vulnerabilities in Danfoss AK-SM800A, 18 Jan 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00026 - Apache Superset authentication bypass leads to RCE - CVE-2023-27524, 2 Jul 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00027 - Ignite Realtime Openfire auth bypass - CVE-2023-32315, 23 Jun 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00028 - SQL Injection in MOVEit Transfer - CVE-2023-36934, 6 Jul 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00030 - Citrix systems vulnerable for CVE-2023-3519, 18 Jul 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00032 - Access Control Bypass - CVE-2023-29298 & CVE-2023-38205, 14 Jul 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00035 - Remote Code Execution in Juniper Networks SRX- and EX-Series, 11 Sep 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00037 - Security Feature Bypass in MinIO, 26 Sep 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00038 - Global Cisco IOS-XE (CVE-2023-20198) Implants, 17 Oct 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00039 - VMware vCenter Server RCE, 25 Oct 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00040 - Critical F5 BIG-IP unauthenticated RCE Vulnerability, 28 Oct 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2023-00042 - Confluence improper authorization vulnerability, 11 Nov 2023 - 14 Apr 2024 (156 days) :2024-01-01, 2024-04-14 DIVD-2023-00045 - Confluence RCE Vulnerability In Confluence Data Center and Confluence Server, 5 Dec 2023 - 14 Apr 2024 (132 days) :2024-01-01, 2024-04-14 DIVD-2024-00001 - Auth. Bypass and Command Injection in Ivanti VPN appliance, 10 Jan 2024 -> ? (open) :2024-01-10, 2024-05-25 DIVD-2024-00002 - Account takeover vulnerability in Gitlab CE/EE, 12 Jan 2024 -> ? (open) :2024-01-12, 2024-05-25 DIVD-2024-00003 - Unauthenticaded Remote Code Execution in CrushFTP, 13 Dec 2023 -> ? (open) :2024-01-01, 2024-05-25 DIVD-2024-00005 - Remote code execution in FortiOS, 8 Feb 2024 -> ? (open) :2024-02-08, 2024-05-25 DIVD-2024-00006 - Authentication Bypass in JetBrains TeamCity, 8 Feb 2024 - 28 Mar 2024 (50 days) :2024-02-08, 2024-03-28 DIVD-2024-00008 - Authentication Bypass and Remote Code Execution in ConnectWise ScreenConnect, 21 Feb 2024 -> ? (open) :2024-02-21, 2024-05-25 DIVD-2024-00009 - Authentication Bypass in JetBrains TeamCity, 6 Mar 2024 - 28 Mar 2024 (23 days) :2024-03-06, 2024-03-28 DIVD-2024-00010 - Unauthenticated Command Injection In Progress Kemp LoadMaster, 20 Mar 2024 - 23 Apr 2024 (35 days) :2024-03-20, 2024-04-23 DIVD-2024-00013 - Palo Alto PAN-OS Command Injection Vulnerability in GlobalProtect, 12 Apr 2024 -> ? (open) :2024-04-12, 2024-05-25 DIVD-2024-00014 - Qlik Sense Remote Code Execution, 19 Apr 2024 -> ? (open) :2024-04-19, 2024-05-25 DIVD-2024-00015 - Unauthenticated sandbox escape with the ability to read sensitive system files within CrushFTP WebInterface, 23 Apr 2024 -> ? (open) :2024-04-23, 2024-05-25
gantt title Cases in 2023 dateFormat YYYY-MM-DD axisFormat %e %b %Y DIVD-2021-00014 - Kaseya Unitrends, 2 Jul 2021 - 5 Jul 2023 (734 days) :2023-01-01, 2023-07-05 DIVD-2021-00020 - OSNexsus QuantaStor limited disclosure and product warning, 10 Aug 2021 - 16 Oct 2023 (798 days) :2023-01-01, 2023-10-16 DIVD-2022-00012 - Global Charity Vulnerabilities, 22 Feb 2022 - 12 Jan 2023 (325 days) :2023-01-01, 2023-01-12 DIVD-2022-00017 - Global Healthcare Vulnerabilities, 10 Mar 2022 - 1 Mar 2023 (357 days) :2023-01-01, 2023-03-01 DIVD-2022-00020 - Inproper input validation vulnerabilities identified within Feathers.js, 23 Feb 2022 - 27 May 2023 (459 days) :2023-01-01, 2023-05-27 DIVD-2022-00029 - Remote Code Execution on Sophos Firewall, 10 May 2022 - 22 Feb 2023 (289 days) :2023-01-01, 2023-02-22 DIVD-2022-00038 - Vulnerable Oracle WebLogic Server, 3 Jul 2022 - 7 Mar 2023 (248 days) :2023-01-01, 2023-03-07 DIVD-2022-00042 - Canon print portals facing the internet, 18 Aug 2022 - 5 Apr 2023 (231 days) :2023-01-01, 2023-04-05 DIVD-2022-00045 - Injection vulnerability found within Socket.io, 29 Apr 2022 - 22 Feb 2023 (300 days) :2023-01-01, 2023-02-22 DIVD-2022-00048 - Dossier Energy Transition, 7 Sep 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00051 - H2 Web Console - CVE-2021-42392, CVE-2022-23221, 9 Sep 2022 - 11 Jan 2023 (125 days) :2023-01-01, 2023-01-11 DIVD-2022-00052 - Multiple vulnerabilities is Cloudflow software, 21 Feb 2023 -> ? (open) :2023-02-21, 2024-01-01 DIVD-2022-00053 - Atlassian Bitbucket Server - CVE-2022-36804, 21 Sep 2022 - 22 Feb 2023 (155 days) :2023-01-01, 2023-02-22 DIVD-2022-00054 - ProxyNotShell - Microsoft Exchange SSRF and RCE, 30 Sep 2022 - 10 Apr 2023 (193 days) :2023-01-01, 2023-04-10 DIVD-2022-00055 - Server Management Interfaces security issues, 8 Oct 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00056 - Critical authentication bypass affecting Fortigate products, 7 Oct 2022 - 5 Apr 2023 (181 days) :2023-01-01, 2023-04-05 DIVD-2022-00058 - ZK Framework - ZK AuUploader Servlet Upload Vulnerability, 30 Oct 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00060 - Command Injection vulnerability in Bitbucket Server and Data Center, 17 Nov 2022 - 13 Mar 2023 (117 days) :2023-01-01, 2023-03-13 DIVD-2022-00061 - KNXNet/IP gateways often left open to the internet, 8 Feb 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00063 - Memory overflow vulnerability in FortiOS SSL VPN, 12 Dec 2022 - 31 May 2023 (171 days) :2023-01-01, 2023-05-31 DIVD-2022-00064 - Multiple injection vulnerabilities identified within Axiell Iguana CMS, 8 Sep 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00065 - Multiple Critical Vulnerabilities in multiple Zyxel EOL devices, 19 Dec 2022 -> ? (open) :2023-01-01, 2024-01-01 DIVD-2022-00068 - Multiple vulnerabilities identified within White Rabbit Switch from CERN, 16 Nov 2022 - 31 May 2023 (197 days) :2023-01-01, 2023-05-31 DIVD-2023-00001 - Citrix systems vulnerable for CVE-2022-27510 and/or CVE-2022-27518, 18 Jan 2023 - 24 May 2023 (127 days) :2023-01-18, 2023-05-24 DIVD-2023-00002 - Publicly Reachable Malicious Webshells, 6 Jan 2023 -> ? (open) :2023-01-06, 2024-01-01 DIVD-2023-00003 - OS command injection in CentOS CWP, 11 Jan 2023 - 22 Feb 2023 (43 days) :2023-01-11, 2023-02-22 DIVD-2023-00004 - Unauthenticated Remote Command Execution using SAML in Zoho ManageEngine, 20 Jan 2023 - 17 Apr 2023 (88 days) :2023-01-20, 2023-04-17 DIVD-2023-00006 - Unauthenticated code injection in QNAP QTS and QuTS hero, 2 Feb 2023 - 22 Mar 2023 (49 days) :2023-02-02, 2023-03-22 DIVD-2023-00007 - Global VMware ESXi Ransomware Attack, 3 Feb 2023 - 18 Apr 2023 (75 days) :2023-02-03, 2023-04-18 DIVD-2023-00009 - Cisco RV Series Remote Command Execution, 7 Feb 2023 - 4 Aug 2023 (179 days) :2023-02-07, 2023-08-04 DIVD-2023-00010 - Remote Code Execution in Microsoft Exchange Server, 14 Feb 2023 -> ? (open) :2023-02-14, 2024-01-01 DIVD-2023-00011 - FortiNAC and FortiWeb RCE Vulnerability, 3 Feb 2023 -> ? (open) :2023-02-03, 2024-01-01 DIVD-2023-00012 - Unauthenticated Remote Command Execution in IBM Aspera Faspex, 17 Feb 2023 - 20 Apr 2023 (63 days) :2023-02-17, 2023-04-20 DIVD-2023-00014 - Critical Broken Authentication Flaw in Jira Service Management Products, 1 Feb 2023 - 5 Apr 2023 (64 days) :2023-02-01, 2023-04-05 DIVD-2023-00015 - Yeastar Configuration Panel Takeover, 20 Jan 2023 - 2 Feb 2023 (14 days) :2023-01-20, 2023-02-02 DIVD-2023-00016 - GLPI Remote Code Execution, 10 Nov 2022 - 25 May 2023 (197 days) :2023-01-01, 2023-05-25 DIVD-2023-00017 - Cisco Small Business Router Authentication Bypass, 15 Mar 2023 - 26 Sep 2023 (196 days) :2023-03-15, 2023-09-26 DIVD-2023-00020 - PaperCut MF/NG Authentication Bypass, 20 Apr 2023 - 10 May 2023 (21 days) :2023-04-20, 2023-05-10 DIVD-2023-00021 - Multiple vulnerabilities in Danfoss AK-EM 100, 18 Jan 2023 -> ? (open) :2023-01-18, 2024-01-01 DIVD-2023-00022 - OS command injection vulnerability of Zyxel firewalls, 28 Apr 2023 -> ? (open) :2023-04-28, 2024-01-01 DIVD-2023-00023 - SQL injection in MOVEit Transfer - CVE-2023-34362, 2 Jun 2023 - 27 Jul 2023 (56 days) :2023-06-02, 2023-07-27 DIVD-2023-00024 - SQL injection in GeoServer - CVE-2023-25157, 7 Jun 2023 - 26 Sep 2023 (112 days) :2023-06-07, 2023-09-26 DIVD-2023-00025 - Multiple vulnerabilities in Danfoss AK-SM800A, 18 Jan 2023 -> ? (open) :2023-01-18, 2024-01-01 DIVD-2023-00026 - Apache Superset authentication bypass leads to RCE - CVE-2023-27524, 2 Jul 2023 -> ? (open) :2023-07-02, 2024-01-01 DIVD-2023-00027 - Ignite Realtime Openfire auth bypass - CVE-2023-32315, 23 Jun 2023 -> ? (open) :2023-06-23, 2024-01-01 DIVD-2023-00028 - SQL Injection in MOVEit Transfer - CVE-2023-36934, 6 Jul 2023 -> ? (open) :2023-07-06, 2024-01-01 DIVD-2023-00029 - Critical Fortinet SSL-VPN RCE Vulnerability, 9 Jun 2023 - 26 Sep 2023 (110 days) :2023-06-09, 2023-09-26 DIVD-2023-00030 - Citrix systems vulnerable for CVE-2023-3519, 18 Jul 2023 -> ? (open) :2023-07-18, 2024-01-01 DIVD-2023-00031 - Ivanti MobileIron vulnerable for CVE-2023-35078, 25 Jul 2023 - 26 Sep 2023 (64 days) :2023-07-25, 2023-09-26 DIVD-2023-00032 - Access Control Bypass - CVE-2023-29298 & CVE-2023-38205, 14 Jul 2023 -> ? (open) :2023-07-14, 2024-01-01 DIVD-2023-00033 - Citrix systems exploited with CVE-2023-3519, 18 Jul 2023 - 26 Sep 2023 (71 days) :2023-07-18, 2023-09-26 DIVD-2023-00034 - API Authentication Bypass Vulnerability in Ivanti Sentry, 22 Aug 2023 - 26 Sep 2023 (36 days) :2023-08-22, 2023-09-26 DIVD-2023-00035 - Remote Code Execution in Juniper Networks SRX- and EX-Series, 11 Sep 2023 -> ? (open) :2023-09-11, 2024-01-01 DIVD-2023-00036 - Authentication Bypass in JetBrains TeamCity, 20 Sep 2023 - 16 Dec 2023 (88 days) :2023-09-20, 2023-12-16 DIVD-2023-00037 - Security Feature Bypass in MinIO, 26 Sep 2023 -> ? (open) :2023-09-26, 2024-01-01 DIVD-2023-00038 - Global Cisco IOS-XE (CVE-2023-20198) Implants, 17 Oct 2023 -> ? (open) :2023-10-17, 2024-01-01 DIVD-2023-00039 - VMware vCenter Server RCE, 25 Oct 2023 -> ? (open) :2023-10-25, 2024-01-01 DIVD-2023-00040 - Critical F5 BIG-IP unauthenticated RCE Vulnerability, 28 Oct 2023 -> ? (open) :2023-10-28, 2024-01-01 DIVD-2023-00042 - Confluence improper authorization vulnerability, 11 Nov 2023 - 14 Apr 2024 (156 days) :2023-11-11, 2024-01-01 DIVD-2023-00045 - Confluence RCE Vulnerability In Confluence Data Center and Confluence Server, 5 Dec 2023 - 14 Apr 2024 (132 days) :2023-12-05, 2024-01-01 DIVD-2024-00003 - Unauthenticaded Remote Code Execution in CrushFTP, 13 Dec 2023 -> ? (open) :2023-12-13, 2024-01-01
gantt title Cases in 2022 dateFormat YYYY-MM-DD axisFormat %e %b %Y DIVD-2021-00006 - SmarterMail, 30 Apr 2021 - 13 Jan 2022 (259 days) :2022-01-01, 2022-01-13 DIVD-2021-00014 - Kaseya Unitrends, 2 Jul 2021 - 5 Jul 2023 (734 days) :2022-01-01, 2023-01-01 DIVD-2021-00015 - Telegram OD, 10 Jun 2021 - 10 Oct 2022 (488 days) :2022-01-01, 2022-10-10 DIVD-2021-00020 - OSNexsus QuantaStor limited disclosure and product warning, 10 Aug 2021 - 16 Oct 2023 (798 days) :2022-01-01, 2023-01-01 DIVD-2021-00021 - Qlik Sense Enterprise domain user enumeration, 18 Aug 2021 - 1 Apr 2022 (227 days) :2022-01-01, 2022-04-01 DIVD-2021-00022 - Exchange ProxyShell and ProxyOracle, 30 Aug 2021 - 10 Oct 2022 (407 days) :2022-01-01, 2022-10-10 DIVD-2021-00023 - Atlassian Confluence OGNL injection (RCE), 22 Sep 2021 - 10 Oct 2022 (384 days) :2022-01-01, 2022-10-10 DIVD-2021-00029 - Smartertrack, 17 Oct 2021 - 10 Oct 2022 (359 days) :2022-01-01, 2022-10-10 DIVD-2021-00033 - Sites with Potential SQL-Injection, 16 Nov 2021 - 9 Feb 2022 (86 days) :2022-01-01, 2022-02-09 DIVD-2021-00036 - VMware vCenter Server arbitrary file read vulnerability, 3 Dec 2021 - 12 Jan 2022 (41 days) :2022-01-01, 2022-01-12 DIVD-2021-00037 - Critical vulnerabilities in ITarian MSP platform and on-premise solution, 1 Dec 2021 - 10 Oct 2022 (314 days) :2022-01-01, 2022-10-10 DIVD-2021-00038 - Apache Log4j2, 9 Dec 2021 - 5 Apr 2022 (118 days) :2022-01-01, 2022-04-05 DIVD-2021-00039 - HP iLO, 31 Dec 2021 - 9 Mar 2022 (69 days) :2022-01-01, 2022-03-09 DIVD-2022-00002 - Grafana, 7 Dec 2021 - 7 Nov 2022 (336 days) :2022-01-01, 2022-11-07 DIVD-2022-00004 - Post-Log4J Open Database C2 and Monero Miner Infections, 13 Jan 2022 - 25 May 2022 (133 days) :2022-01-13, 2022-05-25 DIVD-2022-00005 - Exposed BACnet devices, 29 Jan 2022 - 20 Apr 2022 (82 days) :2022-01-29, 2022-04-20 DIVD-2022-00006 - SAProuter, 7 Feb 2022 - 13 Jul 2022 (157 days) :2022-02-07, 2022-07-13 DIVD-2022-00007 - Subdomain Takeovers, 4 Feb 2022 - 1 Dec 2022 (301 days) :2022-02-04, 2022-12-01 DIVD-2022-00008 - XSS Zeroday in Zimbra, 14 Dec 2021 - 20 Apr 2022 (128 days) :2022-01-01, 2022-04-20 DIVD-2022-00009 - SolarMan backend administrator account/password, 6 Feb 2022 - 2 Jul 2022 (147 days) :2022-02-06, 2022-07-02 DIVD-2022-00010 - Auth bypass in SAP, 8 Feb 2022 - 10 Apr 2022 (62 days) :2022-02-08, 2022-04-10 DIVD-2022-00012 - Global Charity Vulnerabilities, 22 Feb 2022 - 12 Jan 2023 (325 days) :2022-02-22, 2023-01-01 DIVD-2022-00013 - The curious case of the odd update.microsoft.com certificates, 5 Feb 2022 - 23 Oct 2022 (261 days) :2022-02-05, 2022-10-23 DIVD-2022-00014 - GreyNoise's Ukraine only list, 4 Mar 2022 - 15 Aug 2022 (165 days) :2022-03-04, 2022-08-15 DIVD-2022-00015 - Unauthenticated user enumeration on GraphQL API, 4 Mar 2022 - 31 Aug 2022 (181 days) :2022-03-04, 2022-08-31 DIVD-2022-00017 - Global Healthcare Vulnerabilities, 10 Mar 2022 - 1 Mar 2023 (357 days) :2022-03-10, 2023-01-01 DIVD-2022-00019 - Insecure Mendix Applications, 19 Mar 2022 - 7 Nov 2022 (234 days) :2022-03-19, 2022-11-07 DIVD-2022-00020 - Inproper input validation vulnerabilities identified within Feathers.js, 23 Feb 2022 - 27 May 2023 (459 days) :2022-02-23, 2023-01-01 DIVD-2022-00021 - Ivanti EPM CSA remote code execution, 25 Mar 2022 - 20 Nov 2022 (241 days) :2022-03-25, 2022-11-20 DIVD-2022-00022 - WatchGuard Firebox and XTM appliance ACE vulnerability, 29 Mar 2022 - 31 Oct 2022 (217 days) :2022-03-29, 2022-10-31 DIVD-2022-00024 - Spring Cloud RCE - CVE-2022-22963, 31 Mar 2022 - 22 Sep 2022 (176 days) :2022-03-31, 2022-09-22 DIVD-2022-00025 - VMware - CVE-2022-22954, 12 Apr 2022 - 1 Dec 2022 (234 days) :2022-04-12, 2022-12-01 DIVD-2022-00026 - WSO2 Remote Code Executions - CVE-2022-29464, 24 Apr 2022 - 20 Nov 2022 (211 days) :2022-04-24, 2022-11-20 DIVD-2022-00027 - F5 BIG-IP iControl REST API remote code execution, 10 May 2022 - 25 Jun 2022 (47 days) :2022-05-10, 2022-06-25 DIVD-2022-00029 - Remote Code Execution on Sophos Firewall, 10 May 2022 - 22 Feb 2023 (289 days) :2022-05-10, 2023-01-01 DIVD-2022-00030 - Exposed QNAP, 23 May 2022 - 10 Jun 2022 (19 days) :2022-05-23, 2022-06-10 DIVD-2022-00032 - Exchange backdoor, 3 Jun 2022 - 22 Nov 2022 (173 days) :2022-06-03, 2022-11-22 DIVD-2022-00033 - Atlassian Confluence 0-day unauthenticated RCE, 3 Jun 2022 - 1 Dec 2022 (182 days) :2022-06-03, 2022-12-01 DIVD-2022-00038 - Vulnerable Oracle WebLogic Server, 3 Jul 2022 - 7 Mar 2023 (248 days) :2022-07-03, 2023-01-01 DIVD-2022-00042 - Canon print portals facing the internet, 18 Aug 2022 - 5 Apr 2023 (231 days) :2022-08-18, 2023-01-01 DIVD-2022-00045 - Injection vulnerability found within Socket.io, 29 Apr 2022 - 22 Feb 2023 (300 days) :2022-04-29, 2023-01-01 DIVD-2022-00048 - Dossier Energy Transition, 7 Sep 2022 -> ? (open) :2022-09-07, 2023-01-01 DIVD-2022-00051 - H2 Web Console - CVE-2021-42392, CVE-2022-23221, 9 Sep 2022 - 11 Jan 2023 (125 days) :2022-09-09, 2023-01-01 DIVD-2022-00053 - Atlassian Bitbucket Server - CVE-2022-36804, 21 Sep 2022 - 22 Feb 2023 (155 days) :2022-09-21, 2023-01-01 DIVD-2022-00054 - ProxyNotShell - Microsoft Exchange SSRF and RCE, 30 Sep 2022 - 10 Apr 2023 (193 days) :2022-09-30, 2023-01-01 DIVD-2022-00055 - Server Management Interfaces security issues, 8 Oct 2022 -> ? (open) :2022-10-08, 2023-01-01 DIVD-2022-00056 - Critical authentication bypass affecting Fortigate products, 7 Oct 2022 - 5 Apr 2023 (181 days) :2022-10-07, 2023-01-01 DIVD-2022-00058 - ZK Framework - ZK AuUploader Servlet Upload Vulnerability, 30 Oct 2022 -> ? (open) :2022-10-30, 2023-01-01 DIVD-2022-00060 - Command Injection vulnerability in Bitbucket Server and Data Center, 17 Nov 2022 - 13 Mar 2023 (117 days) :2022-11-17, 2023-01-01 DIVD-2022-00061 - KNXNet/IP gateways often left open to the internet, 8 Feb 2022 -> ? (open) :2022-02-08, 2023-01-01 DIVD-2022-00063 - Memory overflow vulnerability in FortiOS SSL VPN, 12 Dec 2022 - 31 May 2023 (171 days) :2022-12-12, 2023-01-01 DIVD-2022-00064 - Multiple injection vulnerabilities identified within Axiell Iguana CMS, 8 Sep 2022 -> ? (open) :2022-09-08, 2023-01-01 DIVD-2022-00065 - Multiple Critical Vulnerabilities in multiple Zyxel EOL devices, 19 Dec 2022 -> ? (open) :2022-12-19, 2023-01-01 DIVD-2022-00068 - Multiple vulnerabilities identified within White Rabbit Switch from CERN, 16 Nov 2022 - 31 May 2023 (197 days) :2022-11-16, 2023-01-01 DIVD-2023-00016 - GLPI Remote Code Execution, 10 Nov 2022 - 25 May 2023 (197 days) :2022-11-10, 2023-01-01
gantt title Cases in 2021 dateFormat YYYY-MM-DD axisFormat %e %b %Y DIVD-2020-00011 - Four critical vulnerabilities in Vembu BDR, 26 Oct 2020 - 11 May 2021 (198 days) :2021-01-01, 2021-05-11 DIVD-2021-00001 - Microsoft on-prem Exchange Servers, 3 Mar 2021 - 15 May 2021 (74 days) :2021-03-03, 2021-05-15 DIVD-2021-00002 - Kaseya VSA, 1 Apr 2021 - 9 Jul 2021 (100 days) :2021-04-01, 2021-07-09 DIVD-2021-00004 - Gelekte phishing gegevens / Leaked phishing credentials, 7 May 2021 - 10 May 2021 (4 days) :2021-05-07, 2021-05-10 DIVD-2021-00005 - Pulse Secure PreAuth RCE, 21 Apr 2021 - 1 Aug 2021 (103 days) :2021-04-21, 2021-08-01 DIVD-2021-00006 - SmarterMail, 30 Apr 2021 - 13 Jan 2022 (259 days) :2021-04-30, 2022-01-01 DIVD-2021-00007 - EA Origin XSS and RCE 1-click, 21 Apr 2021 - 13 Jul 2021 (84 days) :2021-04-21, 2021-07-13 DIVD-2021-00010 - vCenter Server PreAuth RCE, 30 May 2021 - 30 Nov 2021 (185 days) :2021-05-30, 2021-11-30 DIVD-2021-00011 - Kaseya VSA Disclosure, 1 Apr 2021 - 7 Jul 2021 (98 days) :2021-04-01, 2021-07-07 DIVD-2021-00012 - Warehouse Botnet, 20 May 2021 - 4 Jun 2021 (16 days) :2021-05-20, 2021-06-04 DIVD-2021-00014 - Kaseya Unitrends, 2 Jul 2021 - 5 Jul 2023 (734 days) :2021-07-02, 2022-01-01 DIVD-2021-00015 - Telegram OD, 10 Jun 2021 - 10 Oct 2022 (488 days) :2021-06-10, 2022-01-01 DIVD-2021-00017 - SolarWinds N-able N-central agent vulnerabilities, 5 Jul 2021 - 24 Sep 2021 (82 days) :2021-07-05, 2021-09-24 DIVD-2021-00020 - OSNexsus QuantaStor limited disclosure and product warning, 10 Aug 2021 - 16 Oct 2023 (798 days) :2021-08-10, 2022-01-01 DIVD-2021-00021 - Qlik Sense Enterprise domain user enumeration, 18 Aug 2021 - 1 Apr 2022 (227 days) :2021-08-18, 2022-01-01 DIVD-2021-00022 - Exchange ProxyShell and ProxyOracle, 30 Aug 2021 - 10 Oct 2022 (407 days) :2021-08-30, 2022-01-01 DIVD-2021-00023 - Atlassian Confluence OGNL injection (RCE), 22 Sep 2021 - 10 Oct 2022 (384 days) :2021-09-22, 2022-01-01 DIVD-2021-00026 - Omigod Microsoft Open Management Interface RCE, 15 Sep 2021 - 24 Nov 2021 (71 days) :2021-09-15, 2021-11-24 DIVD-2021-00027 - Apache HTTP 2.4.49 Path Traversal and File Disclosure, 5 Oct 2021 - 1 Dec 2021 (58 days) :2021-10-05, 2021-12-01 DIVD-2021-00029 - Smartertrack, 17 Oct 2021 - 10 Oct 2022 (359 days) :2021-10-17, 2022-01-01 DIVD-2021-00030 - GitLab Unauthenticated RCE Flaw, 1 Nov 2021 - 29 Dec 2021 (59 days) :2021-11-01, 2021-12-29 DIVD-2021-00033 - Sites with Potential SQL-Injection, 16 Nov 2021 - 9 Feb 2022 (86 days) :2021-11-16, 2022-01-01 DIVD-2021-00036 - VMware vCenter Server arbitrary file read vulnerability, 3 Dec 2021 - 12 Jan 2022 (41 days) :2021-12-03, 2022-01-01 DIVD-2021-00037 - Critical vulnerabilities in ITarian MSP platform and on-premise solution, 1 Dec 2021 - 10 Oct 2022 (314 days) :2021-12-01, 2022-01-01 DIVD-2021-00038 - Apache Log4j2, 9 Dec 2021 - 5 Apr 2022 (118 days) :2021-12-09, 2022-01-01 DIVD-2021-00039 - HP iLO, 31 Dec 2021 - 9 Mar 2022 (69 days) :2021-12-31, 2022-01-01 DIVD-2022-00002 - Grafana, 7 Dec 2021 - 7 Nov 2022 (336 days) :2021-12-07, 2022-01-01 DIVD-2022-00008 - XSS Zeroday in Zimbra, 14 Dec 2021 - 20 Apr 2022 (128 days) :2021-12-14, 2022-01-01
gantt title Cases in 2020 dateFormat YYYY-MM-DD axisFormat %e %b %Y DIVD-2020-00001 - Citrix ADC, 13 Jan 2020 - 9 Mar 2020 (57 days) :2020-01-13, 2020-03-09 DIVD-2020-00002 - Wildcard certificaten Citrix ADC, 9 Jan 2020 - 22 Jan 2020 (14 days) :2020-01-09, 2020-01-22 DIVD-2020-00003 - Microsoft RDP Gateway vulnerable for Bluegate RCE, 27 Jan 2020 - 9 Mar 2020 (43 days) :2020-01-27, 2020-03-09 DIVD-2020-00004 - List of Mirai botnet victims published with credentials, 20 Jan 2020 - 7 Feb 2020 (19 days) :2020-01-20, 2020-02-07 DIVD-2020-00005 - Apache Tomcat AJP File Read/Inclusion Vulnerability, 22 Feb 2020 - 3 Dec 2020 (286 days) :2020-02-22, 2020-12-03 DIVD-2020-00006 - SMBv3 Server Compression Transform Header Memory Corruption, 10 Mar 2020 - 3 Dec 2020 (269 days) :2020-03-10, 2020-12-03 DIVD-2020-00007 - Citrix ShareFile, 26 May 2020 - 23 Jun 2020 (29 days) :2020-05-26, 2020-06-23 DIVD-2020-00008 - 313 000 Wordpress sites scanned, 10 Nov 2020 - 30 Nov 2020 (21 days) :2020-11-10, 2020-11-30 DIVD-2020-00009 - Pulse Secure VPN enterprise Leak, 5 Aug 2020 - 3 Dec 2020 (121 days) :2020-08-05, 2020-12-03 DIVD-2020-00010 - wpDiscuz plugin Remote Code Excution, 4 Aug 2020 - 3 Dec 2020 (122 days) :2020-08-04, 2020-12-03 DIVD-2020-00011 - Four critical vulnerabilities in Vembu BDR, 26 Oct 2020 - 11 May 2021 (198 days) :2020-10-26, 2021-01-01 DIVD-2020-00012 - 49 000 vulnerable Fortinet VPN devices, 22 Nov 2020 - 3 Dec 2020 (12 days) :2020-11-22, 2020-12-03 DIVD-2020-00013 - Gelekte phishing wachtwoorden / Leaked phishing credentials, 20 Dec 2020 - 31 Dec 2020 (12 days) :2020-12-20, 2020-12-31 DIVD-2020-00014 - SolarWinds Orion, 28 Dec 2020 - 30 Dec 2020 (3 days) :2020-12-28, 2020-12-30