month report
April 2008
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
April 2008 closed with 459 published CVEs — -27.4% YoY . 88 criticals, oracle led volume, mostly via database server. Biggest breakout: prozilla at ×3.5 their 12-month median. Top weakness class — CWE-89 (73 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
459
— MoM-27.4% YoY
Severity mix
88 / 125
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
0.9%
4 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
6521.6
n=4
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
—
n=0
Weakness × Vendor
What's spreading where in April 2008
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
89SQL Injection119Memory Buffer Bounds79XSS264CWE-26422Path Traversal94Code Injection20Improper Input Validation399CWE-399189CWE-189287Improper Authenticationoracleapple101112ibm83221microsoft4111513сообщество свободного программного обеспечения72112hp11131autonomy6clam anti-virus311prozilla421sun211ооо «русбитех-астра»412adobe1111
Breakout vendors
CVE count ≥3× their own 12-period median.
- 3.5×prozilla7 CVE
- 3.5×oracle21 CVE
- 3.0×e1073 CVE
- 3.0×chilkat software3 CVE
- 3.0×openoffice3 CVE
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #11ооо «русбитех-астра»7 CVE
- #19acidcat4 CVE
- #20apache software foundation4 CVE
- #24cezannesw3 CVE
- #25chilkat software3 CVE
- #26computer associates3 CVE
- #30emedia office gmbh3 CVE
- #31iscripts3 CVE
- #35myiosoft3 CVE
- #39python3 CVE
Top vendors
Ranked by distinct CVE count this period.
- 21 CVE15 critCVSS 8.2×3.5database server (6) · database 9i (5) · application server (3)
- 19 CVE1 critCVSS 6.2PoC 1quicktime (12) · safari (6) · webkit (1)
- 19 CVE10 critCVSS 7.8PoC 4lotus notes (7) · soliddb (4) · db2 (3)
- 17 CVE11 critCVSS 8.5PoC 8windows xp (8) · windows vista (7) · windows 2000 (6)
- 14 CVE2 critCVSS 6.7PoC 3debian gnu/linux (14)
- 10 CVE2 critCVSS 6.6PoC 3openview network node manager (6) · 442084-b21 (1) · rx6600 (1)
- 7 CVE7 critCVSS 9.3keyview (7)
- 7 CVE1 critCVSS 6.2clamav (7)
- 7 CVECVSS 7.0×3.5PoC 7cheats (1) · entertainers (1) · forum (1)
- 7 CVECVSS 6.0solaris (3) · sunos (1) · java system directory server (1)
- 7 CVE1 critCVSS 7.2NEWPoC 1astra linux common edition (4) · astra linux special edition (3)
- 6 CVE3 critCVSS 7.3PoC 1flash player (4) · flex (2) · air (2)
- 6 CVE2 critCVSS 7.3PoC 1red hat enterprise linux (6)
- 6 CVE4 critCVSS 8.0mail security (3) · norton 360 (2) · norton antivirus (2)
- 5 CVE3 critCVSS 8.3desktop management suite (2) · brightstor arcserve backup (2) · anti-virus for the enterprise (1)
- 5 CVE1 critCVSS 6.2PoC 1aptlinex (2) · debian linux (2) · tss (1)
- 5 CVECVSS 4.4ubercart module (2) · e-publish (1) · drupal (1)
- 5 CVECVSS 5.2PoC 1gentoo linux (5)
- 4 CVECVSS 6.7NEWPoC 4acidcat cms (4)
- 4 CVE1 critCVSS 7.4NEWopenoffice (4)
- 4 CVECVSS 6.2m4 (2) · sccs (1) · emacs (1)
- 4 CVE1 critCVSS 7.1PoC 3pixel motion blog (4)
- 4 CVECVSS 7.5Nuclei 4PoC 2download monitor plugin (1) · wordpress (1) · wp download (1)
- 3 CVECVSS 4.6NEWPoC 2cezanne (3)
- 3 CVE1 critCVSS 8.1NEW×3.0PoC 1chicomas (2) · chilkathttp activex (1)
- 3 CVE3 critCVSS 9.4NEWarcserve backup laptops and desktops (3) · desktop management suite (3) · unicenter software delivery (1)
- 3 CVECVSS 6.4PoC 3cpcommerce (3)
- 3 CVE1 critCVSS 7.3×3.0PoC 2e107 (2) · my gallery (1)
- 3 CVE3 critCVSS 9.3diskxtender (3)
- 3 CVECVSS 6.4NEWcuteflow (3)
- 3 CVECVSS 6.3NEWPoC 3socialware (3)
- 3 CVECVSS 6.4PoC 2kwsphp (3)
- 3 CVECVSS 5.1PoC 3minibb (3)
- 3 CVE1 critCVSS 7.4firefox (3) · seamonkey (1) · thunderbird (1)
- 3 CVECVSS 6.4NEWPoC 3easynews (3)
- 3 CVE1 critCVSS 7.6novell linux desktop (3) · suse linux (3)
- 3 CVE1 critCVSS 7.6×3.0openoffice.org (2) · openoffice (1)
- 3 CVE3 critCVSS 9.3opera (2) · opera browser (1)
- 3 CVE1 critCVSS 7.9NEWPoC 1python (3)
- 3 CVE1 critCVSS 8.1directory server (2) · enterprise linux (1) · fedora directory server (1)
- 3 CVECVSS 7.3savas link manager (2) · savas guestbook (1)
- 3 CVE1 critCVSS 6.7NEWslmail pro (3)
- 3 CVECVSS 6.8PoC 1vlc (3)
- 3 CVECVSS 6.8NEWPoC 1vlc media player (3)
- 3 CVECVSS 7.5NEWPoC 1dating club (1) · online banking (1) · phphotresources (1)
- 2 CVE2 critCVSS 9.3docconverter (2)
- 2 CVECVSS 5.7asterisk business edition (2) · asterisk appliance developer kit (2) · open source (2)
- 2 CVECVSS 5.5NEWblackboard academic suite (1) · academic suite (1)
- 2 CVECVSS 6.8NEWblender (2)
- 2 CVECVSS 5.9NEWPoC 1blogator script (2)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | oracle | 21 | 15 | · | · | ×3.5 | database server (6) · database 9i (5) · application server (3) | — | |
| 2 | apple | 19 | 1 | · | · | PoC 1 | quicktime (12) · safari (6) · webkit (1) | — | |
| 3 | ibm | 19 | 10 | · | · | PoC 4 | lotus notes (7) · soliddb (4) · db2 (3) | — | |
| 4 | microsoft | 17 | 11 | · | · | PoC 8 | windows xp (8) · windows vista (7) · windows 2000 (6) | — | |
| 5 | сообщество свободного программного обеспечения | 14 | 2 | · | · | PoC 3 | debian gnu/linux (14) | — | |
| 6 | hp | 10 | 2 | · | · | PoC 3 | openview network node manager (6) · 442084-b21 (1) · rx6600 (1) | — | |
| 7 | autonomy | 7 | 7 | · | · | keyview (7) | — | ||
| 8 | clam anti-virus | 7 | 1 | · | · | clamav (7) | — | ||
| 9 | prozilla | 7 | · | · | · | ×3.5PoC 7 | cheats (1) · entertainers (1) · forum (1) | — | |
| 10 | sun | 7 | · | · | · | solaris (3) · sunos (1) · java system directory server (1) | — | ||
| 11 | ооо «русбитех-астра» | 7 | 1 | · | · | NEWPoC 1 | astra linux common edition (4) · astra linux special edition (3) | — | |
| 12 | adobe | 6 | 3 | · | · | PoC 1 | flash player (4) · flex (2) · air (2) | — | |
| 13 | red hat inc. | 6 | 2 | · | · | PoC 1 | red hat enterprise linux (6) | — | |
| 14 | symantec | 6 | 4 | · | · | mail security (3) · norton 360 (2) · norton antivirus (2) | — | ||
| 15 | broadcom | 5 | 3 | · | · | desktop management suite (2) · brightstor arcserve backup (2) · anti-virus for the enterprise (1) | — | ||
| 16 | debian | 5 | 1 | · | · | PoC 1 | aptlinex (2) · debian linux (2) · tss (1) | — | |
| 17 | drupal | 5 | · | · | · | ubercart module (2) · e-publish (1) · drupal (1) | — | ||
| 18 | gentoo foundation inc. | 5 | · | · | · | PoC 1 | gentoo linux (5) | — | |
| 19 | acidcat | 4 | · | · | · | NEWPoC 4 | acidcat cms (4) | — | |
| 20 | apache software foundation | 4 | 1 | · | · | NEW | openoffice (4) | — | |
| 21 | gnu | 4 | · | · | · | m4 (2) · sccs (1) · emacs (1) | — | ||
| 22 | pixel motion | 4 | 1 | · | · | PoC 3 | pixel motion blog (4) | — | |
| 23 | wordpress | 4 | · | · | 4 | Nuclei 4PoC 2 | download monitor plugin (1) · wordpress (1) · wp download (1) | — | |
| 24 | cezannesw | 3 | · | · | · | NEWPoC 2 | cezanne (3) | — | |
| 25 | chilkat software | 3 | 1 | · | · | NEW×3.0PoC 1 | chicomas (2) · chilkathttp activex (1) | — | |
| 26 | computer associates | 3 | 3 | · | · | NEW | arcserve backup laptops and desktops (3) · desktop management suite (3) · unicenter software delivery (1) | — | |
| 27 | cpcommerce | 3 | · | · | · | PoC 3 | cpcommerce (3) | — | |
| 28 | e107 | 3 | 1 | · | · | ×3.0PoC 2 | e107 (2) · my gallery (1) | — | |
| 29 | emc | 3 | 3 | · | · | diskxtender (3) | — | ||
| 30 | emedia office gmbh | 3 | · | · | · | NEW | cuteflow (3) | — | |
| 31 | iscripts | 3 | · | · | · | NEWPoC 3 | socialware (3) | — | |
| 32 | kwsphp | 3 | · | · | · | PoC 2 | kwsphp (3) | — | |
| 33 | minibb | 3 | · | · | · | PoC 3 | minibb (3) | — | |
| 34 | mozilla | 3 | 1 | · | · | firefox (3) · seamonkey (1) · thunderbird (1) | — | ||
| 35 | myiosoft | 3 | · | · | · | NEWPoC 3 | easynews (3) | — | |
| 36 | novell inc. | 3 | 1 | · | · | novell linux desktop (3) · suse linux (3) | — | ||
| 37 | openoffice | 3 | 1 | · | · | ×3.0 | openoffice.org (2) · openoffice (1) | — | |
| 38 | opera | 3 | 3 | · | · | opera (2) · opera browser (1) | — | ||
| 39 | python | 3 | 1 | · | · | NEWPoC 1 | python (3) | — | |
| 40 | redhat | 3 | 1 | · | · | directory server (2) · enterprise linux (1) · fedora directory server (1) | — | ||
| 41 | savas place | 3 | · | · | · | savas link manager (2) · savas guestbook (1) | — | ||
| 42 | seattle lab software | 3 | 1 | · | · | NEW | slmail pro (3) | — | |
| 43 | videolan | 3 | · | · | · | PoC 1 | vlc (3) | — | |
| 44 | videolan organization | 3 | · | · | · | NEWPoC 1 | vlc media player (3) | — | |
| 45 | w2b | 3 | · | · | · | NEWPoC 1 | dating club (1) · online banking (1) · phphotresources (1) | — | |
| 46 | activepdf | 2 | 2 | · | · | docconverter (2) | — | ||
| 47 | asterisk | 2 | · | · | · | asterisk business edition (2) · asterisk appliance developer kit (2) · open source (2) | — | ||
| 48 | blackboard | 2 | · | · | · | NEW | blackboard academic suite (1) · academic suite (1) | — | |
| 49 | blender | 2 | · | · | · | NEW | blender (2) | — | |
| 50 | blogator script | 2 | · | · | · | NEWPoC 1 | blogator script (2) | — |