SocialSitrep
⚑ KEV Tracker ← CVEs / KEVs

CISA KEV Trends β€” Additions, Vendors & Patch Windows

Computed live from the CISA catalog

Trend analysis of the CISA Known Exploited Vulnerabilities catalog. Because every entry records the date it was added, the full history of exploitation additions is available directly from the catalog β€” no reconstruction required. Below: how many vulnerabilities CISA has flagged as exploited each week, which vendors appear most often, and how much time defenders are given to patch.

Loading and analyzing the CISA KEV catalog…
Source: CISA Known Exploited Vulnerabilities Catalog. Additions are counted by each entry's official date-added field. Patch window = federal remediation due date minus date added (BOD 22-01). Analysis generated in your browser from the live catalog.