month report
December 2008
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
December 2008 closed with 530 published CVEs — +18.0% YoY . 129 criticals, microsoft led volume, mostly via internet explorer. Biggest breakout: mozilla at ×15.0 their 12-month median. Top weakness class — CWE-89 (101 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
530
— MoM+18.0% YoY
Severity mix
129 / 176
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
0.6%
3 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
6286.1
n=3
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
—
n=0
Weakness × Vendor
What's spreading where in December 2008
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
Breakout vendors
CVE count ≥3× their own 12-period median.
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #8activewebsoftwares10 CVE
- #9typo310 CVE
- #13aspapps5 CVE
- #16netcat5 CVE
- #18eset4 CVE
- #19e-topbiz4 CVE
- #20myiosoft4 CVE
- #21scripts4you4 CVE
- #23textpattern4 CVE
- #27bdigital web solutions3 CVE
Top vendors
Ranked by distinct CVE count this period.
- 39 CVE21 critCVSS 8.8PoC 8internet explorer (12) · office (11) · open xml file format converter (11)
- 36 CVE13 critCVSS 7.3PoC 1jdk (23) · jre (23) · sdk (19)
- 17 CVE3 critCVSS 6.5rational clearquest (7) · websphere application server (4) · aix (4)
- 15 CVE7 critCVSS 8.3PoC 2mac os x server (11) · mac os x (10) · cups (2)
- 15 CVE1 critCVSS 5.5×15.0PoC 1firefox (14) · seamonkey (11) · thunderbird (10)
- 11 CVE1 critCVSS 5.9×3.7ubuntu linux (11)
- 11 CVE1 critCVSS 6.1×3.7PoC 1debian linux (10) · shadow (1)
- 10 CVECVSS 7.5NEWPoC 10activevotes (2) · active force matrix (1) · active membership (1)
- 10 CVE1 critCVSS 6.6NEWtypo3 (2) · wir ber uns extension (2) · eluna page comments extension (2)
- 7 CVECVSS 4.8PoC 1linux kernel (7)
- 6 CVE2 critCVSS 6.5PoC 1opera browser (4) · opera (2)
- 5 CVE1 critCVSS 5.3air (3) · flash player (3) · acrobat (1)
- 5 CVECVSS 6.0NEWPoC 5asp autodealer (2) · aspportal (2) · aspticker (1)
- 5 CVECVSS 6.9PoC 2gentoo linux (5)
- 5 CVECVSS 4.6mediawiki (5)
- 5 CVECVSS 5.5NEWPoC 5netcat (5)
- 5 CVE1 critCVSS 7.5×5.0PoC 3php (5)
- 4 CVE2 critCVSS 7.5NEWPoC 1nod32 antivirus (2) · smart security (2)
- 4 CVECVSS 7.5NEWPoC 4online store (2) · number links 1 php script (1) · domain shop (1)
- 4 CVECVSS 7.5NEWPoC 3easybookmarker (3) · easycalendar (1)
- 4 CVECVSS 6.5NEWPoC 4clean cms (2) · faq manager (2)
- 4 CVE3 critCVSS 8.0backup exec for windows server (2) · antivirus (1) · norton internet security 2008 (1)
- 4 CVECVSS 4.9NEWPoC 1textpattern (4)
- 4 CVECVSS 7.2PoC 4debian gnu/linux (4)
- 3 CVE1 critCVSS 8.3PoC 3article manager pro (1) · web email script enterprise (1) · webhost directory (1)
- 3 CVECVSS 5.8×3.0zaptel (2) · open source (1) · asterisk business edition (1)
- 3 CVECVSS 7.5NEWPoC 3webstudio ehotel (1) · webstudio cms (1) · webstudio ecatalogue (1)
- 3 CVE3 critCVSS 10.0trillian (3) · trillian pro (3)
- 3 CVE3 critCVSS 10.0NEWtrillian (3) · trillian pro (3)
- 3 CVECVSS 7.5NEWPoC 3php classifieds (2) · php shop (1)
- 3 CVECVSS 5.8NEWPoC 3professional download assistant (2) · ikon admanager (1)
- 3 CVECVSS 6.9NEWgpsdrive (3)
- 3 CVECVSS 4.8hp-ux (2) · decnet plus for openvms (1)
- 3 CVECVSS 7.5PoC 1com books (1) · joomla (1) · joomla\! (1)
- 3 CVECVSS 6.7NEWPoC 3mini-pub (3)
- 3 CVECVSS 7.5PoC 3real estate portal (1) · blog system (1) · car portal (1)
- 3 CVECVSS 5.5NEWoempro (3)
- 3 CVE1 critCVSS 6.2PoC 1phpmailer/phpmailer (1) · typo3/cms-backend (1) · typo3/cms-felogin (1)
- 3 CVECVSS 6.7NEWphparanoid (3)
- 3 CVECVSS 5.0punbb (3)
- 3 CVECVSS 6.7×3.0qemu (3)
- 3 CVECVSS 7.3NEWPoC 3clickheat-heatmap (1) · competitions (1) · interactive feederator (1)
- 3 CVECVSS 7.5NEWPoC 3scssboard (3)
- 3 CVE3 critCVSS 9.3housecall (2) · trend micro antivirus (1)
- 3 CVE1 critCVSS 8.3NEWPoC 3v3 chat profiles dating script (2) · v3 chat live support (1)
- 2 CVE1 critCVSS 7.2NEWPoC 2worksimple (2)
- 2 CVECVSS 5.0NEWteamtek universal ftp server (2)
- 2 CVECVSS 7.5NEWPoC 2apertoblog (2)
- 2 CVECVSS 7.5NEWPoC 2homebuilder (1) · realtylistings (1)
- 2 CVE1 critCVSS 7.0communication manager (2)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | microsoft | 39 | 21 | · | · | PoC 8 | internet explorer (12) · office (11) · open xml file format converter (11) | — | |
| 2 | sun | 36 | 13 | · | · | PoC 1 | jdk (23) · jre (23) · sdk (19) | — | |
| 3 | ibm | 17 | 3 | · | · | rational clearquest (7) · websphere application server (4) · aix (4) | — | ||
| 4 | apple | 15 | 7 | · | · | PoC 2 | mac os x server (11) · mac os x (10) · cups (2) | — | |
| 5 | mozilla | 15 | 1 | · | · | ×15.0PoC 1 | firefox (14) · seamonkey (11) · thunderbird (10) | — | |
| 6 | canonical | 11 | 1 | · | · | ×3.7 | ubuntu linux (11) | — | |
| 7 | debian | 11 | 1 | · | · | ×3.7PoC 1 | debian linux (10) · shadow (1) | — | |
| 8 | activewebsoftwares | 10 | · | · | · | NEWPoC 10 | activevotes (2) · active force matrix (1) · active membership (1) | — | |
| 9 | typo3 | 10 | 1 | · | · | NEW | typo3 (2) · wir ber uns extension (2) · eluna page comments extension (2) | — | |
| 10 | linux | 7 | · | · | · | PoC 1 | linux kernel (7) | — | |
| 11 | opera | 6 | 2 | · | · | PoC 1 | opera browser (4) · opera (2) | — | |
| 12 | adobe | 5 | 1 | · | · | air (3) · flash player (3) · acrobat (1) | — | ||
| 13 | aspapps | 5 | · | · | · | NEWPoC 5 | asp autodealer (2) · aspportal (2) · aspticker (1) | — | |
| 14 | gentoo foundation inc. | 5 | · | · | · | PoC 2 | gentoo linux (5) | — | |
| 15 | mediawiki | 5 | · | · | · | mediawiki (5) | — | ||
| 16 | netcat | 5 | · | · | · | NEWPoC 5 | netcat (5) | — | |
| 17 | php | 5 | 1 | · | · | ×5.0PoC 3 | php (5) | — | |
| 18 | eset | 4 | 2 | · | · | NEWPoC 1 | nod32 antivirus (2) · smart security (2) | — | |
| 19 | e-topbiz | 4 | · | · | · | NEWPoC 4 | online store (2) · number links 1 php script (1) · domain shop (1) | — | |
| 20 | myiosoft | 4 | · | · | · | NEWPoC 3 | easybookmarker (3) · easycalendar (1) | — | |
| 21 | scripts4you | 4 | · | · | · | NEWPoC 4 | clean cms (2) · faq manager (2) | — | |
| 22 | symantec | 4 | 3 | · | · | backup exec for windows server (2) · antivirus (1) · norton internet security 2008 (1) | — | ||
| 23 | textpattern | 4 | · | · | · | NEWPoC 1 | textpattern (4) | — | |
| 24 | сообщество свободного программного обеспечения | 4 | · | · | · | PoC 4 | debian gnu/linux (4) | — | |
| 25 | alstrasoft | 3 | 1 | · | · | PoC 3 | article manager pro (1) · web email script enterprise (1) · webhost directory (1) | — | |
| 26 | asterisk | 3 | · | · | · | ×3.0 | zaptel (2) · open source (1) · asterisk business edition (1) | — | |
| 27 | bdigital web solutions | 3 | · | · | · | NEWPoC 3 | webstudio ehotel (1) · webstudio cms (1) · webstudio ecatalogue (1) | — | |
| 28 | cerulean studios | 3 | 3 | · | · | trillian (3) · trillian pro (3) | — | ||
| 29 | ceruleanstudios | 3 | 3 | · | · | NEW | trillian (3) · trillian pro (3) | — | |
| 30 | deltascripts | 3 | · | · | · | NEWPoC 3 | php classifieds (2) · php shop (1) | — | |
| 31 | dotnetindex | 3 | · | · | · | NEWPoC 3 | professional download assistant (2) · ikon admanager (1) | — | |
| 32 | gpsdrive | 3 | · | · | · | NEW | gpsdrive (3) | — | |
| 33 | hp | 3 | · | · | · | hp-ux (2) · decnet plus for openvms (1) | — | ||
| 34 | joomla | 3 | · | · | · | PoC 1 | com books (1) · joomla (1) · joomla\! (1) | — | |
| 35 | mini-pub | 3 | · | · | · | NEWPoC 3 | mini-pub (3) | — | |
| 36 | netart media | 3 | · | · | · | PoC 3 | real estate portal (1) · blog system (1) · car portal (1) | — | |
| 37 | octeth | 3 | · | · | · | NEW | oempro (3) | — | |
| 38 | packagist | 3 | 1 | · | · | PoC 1 | phpmailer/phpmailer (1) · typo3/cms-backend (1) · typo3/cms-felogin (1) | — | |
| 39 | phparanoid | 3 | · | · | · | NEW | phparanoid (3) | — | |
| 40 | punbb | 3 | · | · | · | punbb (3) | — | ||
| 41 | qemu | 3 | · | · | · | ×3.0 | qemu (3) | — | |
| 42 | recly | 3 | · | · | · | NEWPoC 3 | clickheat-heatmap (1) · competitions (1) · interactive feederator (1) | — | |
| 43 | scssboard | 3 | · | · | · | NEWPoC 3 | scssboard (3) | — | |
| 44 | trend micro | 3 | 3 | · | · | housecall (2) · trend micro antivirus (1) | — | ||
| 45 | v3chat | 3 | 1 | · | · | NEWPoC 3 | v3 chat profiles dating script (2) · v3 chat live support (1) | — | |
| 46 | 2500mhz | 2 | 1 | · | · | NEWPoC 2 | worksimple (2) | — | |
| 47 | 5e5 | 2 | · | · | · | NEW | teamtek universal ftp server (2) | — | |
| 48 | apertoblog | 2 | · | · | · | NEWPoC 2 | apertoblog (2) | — | |
| 49 | aspsiteware | 2 | · | · | · | NEWPoC 2 | homebuilder (1) · realtylistings (1) | — | |
| 50 | avaya | 2 | 1 | · | · | communication manager (2) | — |