Skip to main content

Daily materialized evidence profile

CWE CWE-20

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
12,908
CVEs with mentions
2,540
Total mentions
7,011
CVEs with KEV
72
CVEs with PoC
51

Attack vector counts

Network
9,364
Adjacent network
556
Local
2,912
Physical
74

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2026-34197

Published Apr 7, 2026

Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ. Apache ActiveMQ Classic exposes the…

CVSS 8.8 · High
evidence mentions
20
Buzz score
86.1
KEV listedPublic PoC observed

CVE-2023-22515

Published Oct 4, 2023

Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible…

CVSS 9.8 · Critical
evidence mentions
23
Buzz score
85.1
KEV listedPublic PoC observed

CVE-2022-47966

Published Jan 18, 2023

Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Jav…

CVSS 9.8 · Critical
evidence mentions
40
Buzz score
80.7
KEV listedPublic PoC observed

CVE-2021-44228

Published Dec 10, 2021

Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect aga…

CVSS 10.0 · Critical
evidence mentions
179
Buzz score
80.5
KEV listedPublic PoC observed

CVE-2022-24086

Published Feb 16, 2022

Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an improper input validation vulnerability during the checkout process. Exploitation of t…

CVSS 9.8 · Critical
evidence mentions
22
Buzz score
75.6
KEV listedPublic PoC observed