Skip to main content

Daily materialized evidence profile

CWE CWE-918

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
3,143
CVEs with mentions
1,679
Total mentions
5,056
CVEs with KEV
21
CVEs with PoC
62

Attack vector counts

Network
3,042
Adjacent network
39
Local
62
Physical
0

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2021-34473

Published Jul 14, 2021

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS 9.1 · Critical
evidence mentions
74
Buzz score
82.5
KEV listedPublic PoC observed

CVE-2021-26855

Published Mar 3, 2021

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS 9.1 · Critical
evidence mentions
78
Buzz score
81.9
KEV listedPublic PoC observed

CVE-2026-15409

Published Jul 14, 2026

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the…

CVSS 10.0 · Critical
evidence mentions
28
Buzz score
81.1
KEV listedPublic PoC observed

CVE-2024-21893

Published Jan 31, 2024

A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) and Ivanti Neurons for ZTA allows an at…

CVSS 8.2 · High
evidence mentions
41
Buzz score
75.0
KEV listed

CVE-2021-40438

Published Sep 16, 2021

A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

CVSS 9.0 · Critical
evidence mentions
31
Buzz score
75.0
KEV listed