month report
November 2013
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
November 2013 closed with 399 published CVEs. 52 criticals, cisco led volume, mostly via ios. Biggest breakout: cisco at ×9.7 their 12-month median. Top weakness class — CWE-79 (63 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
399
— MoM— YoY
Severity mix
52 / 63
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
1.5%
6 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
4504.0
n=6
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
3052
n=5
Weakness × Vendor
What's spreading where in November 2013
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
Breakout vendors
CVE count ≥3× their own 12-period median.
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #13sybase10 CVE
- #20lockon6 CVE
- #22pineapp6 CVE
- #23saltstack6 CVE
- #33augeas3 CVE
- #35jahia3 CVE
- #36lighttpd3 CVE
- #40spip3 CVE
- #42ajaxplorer2 CVE
- #45catapultsoftware2 CVE
Top vendors
Ranked by distinct CVE count this period.
- 34 CVE1 critCVSS 5.9×9.7ios (6) · adaptive security appliance software (4) · wireless lan controller (3)
- 34 CVE3 critCVSS 4.6lotus sametime (5) · java (5) · websphere application server (4)
- 23 CVE11 critCVSS 7.4KEV 3PoC 3internet explorer (9) · windows vista (6) · windows xp (6)
- 22 CVECVSS 5.7×3.1KEV 1PoC 7linux kernel (22)
- 20 CVE16 critCVSS 8.6ffmpeg (20)
- 17 CVECVSS 5.0PoC 4opensuse (17)
- 16 CVECVSS 5.3PoC 4enterprise linux (11) · openstack (3) · libvirt (1)
- 15 CVE2 critCVSS 6.2PoC 2chrome (14) · web toolkit (1)
- 13 CVECVSS 5.4PoC 1ubuntu linux (13) · maas (2)
- 12 CVE1 critCVSS 5.8PoC 1debian linux (12)
- 11 CVE2 critCVSS 6.4netweaver (8) · netweaver development infrastructure (1) · netweaver logviewer (1)
- 10 CVE2 critCVSS 7.2PoC 2loadrunner (3) · integrated lights-out 4 (2) · integrated lights-out firmware (2)
- 10 CVE3 critCVSS 7.6NEWadaptive server enterprise (10)
- 10 CVE1 critCVSS 5.4PoC 2debian gnu/linux (5) · linux (5)
- 9 CVECVSS 4.6PoC 5document sciences xpression (5) · documentum digital asset manager (1) · documentum administrator (1)
- 9 CVE3 critCVSS 6.6PoC 2salt (5) · nova (2) · keystone (1)
- 7 CVECVSS 4.3PoC 2gentoo linux (7)
- 7 CVE1 critCVSS 5.8PoC 1zenworks configuration management (5) · suse studio onsite (1) · suse linux enterprise debuginfo (1)
- 6 CVECVSS 7.0×3.0KEV 1PoC 4des-3800 (2) · des-3800 firmware (2) · dsl-2740b (2)
- 6 CVECVSS 5.0NEWPoC 3ec-cube (6)
- 6 CVECVSS 3.6PoC 3havana (3) · grizzly (3) · folsom (2)
- 6 CVECVSS 7.0NEWPoC 1mail-secure (4) · mail-secure 5099sk (2)
- 6 CVE3 critCVSS 8.0NEWsalt (6)
- 5 CVECVSS 4.7PoC 2moodle (5)
- 5 CVECVSS 6.5network security services (3) · firefox (2) · seamonkey (2)
- 5 CVECVSS 4.3wireshark (5)
- 4 CVE2 critCVSS 8.9air (2) · air sdk (2) · coldfusion (2)
- 4 CVECVSS 4.8PoC 1mac os x (2) · iphone os (1) · motion (1)
- 4 CVECVSS 4.6×4.0PoC 1fedora (3) · 389 directory server (1)
- 4 CVECVSS 4.4PoC 1com.google.gwt:gwt (1) · com.sonyericsson.jenkins.plugins.bfa:build-failure-analyzer (1) · org.apache.struts:struts2-core (1)
- 4 CVECVSS 5.1×4.0mediawiki (4)
- 4 CVECVSS 6.0xen (4)
- 3 CVECVSS 3.4NEWaugeas (3)
- 3 CVECVSS 4.9PoC 1freebsd (3)
- 3 CVECVSS 4.3NEWPoC 2jahia xcm (3)
- 3 CVECVSS 6.7NEW×3.0lighttpd (3)
- 3 CVECVSS 4.0kerberos 5 (3) · kerberos (1)
- 3 CVECVSS 5.7PoC 1suse linux enterprise (2) · opensuse (1)
- 3 CVECVSS 4.6PoC 1moodle/moodle (2) · tikiwiki/tiki-manager (1)
- 3 CVECVSS 6.2NEWPoC 1spip (3)
- 3 CVECVSS 7.4lifecycle management server (1) · linux enterprise (1) · manager (1)
- 2 CVECVSS 7.0NEWPoC 2ajaxplorer (2)
- 2 CVECVSS 5.5PoC 1struts (1) · tomcat (1)
- 2 CVECVSS 6.3blackberry link (2)
- 2 CVECVSS 5.9NEWcatapult dnp3 i\/o driver (2)
- 2 CVECVSS 3.3endpoint security (2)
- 2 CVECVSS 6.3poppler (2)
- 2 CVECVSS 5.9intelligent platforms proficy hmi\/scada cimplicity (2) · intelligent platforms proficy dnp3 i\/o driver (2) · intelligent platforms proficy hmi\/scada ifix (2)
- 2 CVECVSS 4.7linux (2)
- 2 CVECVSS 5.0gnutls (2)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | cisco | 34 | 1 | · | · | ×9.7 | ios (6) · adaptive security appliance software (4) · wireless lan controller (3) | — | |
| 2 | ibm | 34 | 3 | · | · | lotus sametime (5) · java (5) · websphere application server (4) | — | ||
| 3 | microsoft | 23 | 11 | 3 | · | KEV 3PoC 3 | internet explorer (9) · windows vista (6) · windows xp (6) | — | |
| 4 | linux | 22 | · | 1 | · | ×3.1KEV 1PoC 7 | linux kernel (22) | — | |
| 5 | ffmpeg | 20 | 16 | · | · | ffmpeg (20) | — | ||
| 6 | opensuse | 17 | · | · | · | PoC 4 | opensuse (17) | — | |
| 7 | redhat | 16 | · | · | · | PoC 4 | enterprise linux (11) · openstack (3) · libvirt (1) | — | |
| 8 | 15 | 2 | · | · | PoC 2 | chrome (14) · web toolkit (1) | — | ||
| 9 | canonical | 13 | · | · | · | PoC 1 | ubuntu linux (13) · maas (2) | — | |
| 10 | debian | 12 | 1 | · | · | PoC 1 | debian linux (12) | — | |
| 11 | sap | 11 | 2 | · | · | netweaver (8) · netweaver development infrastructure (1) · netweaver logviewer (1) | — | ||
| 12 | hp | 10 | 2 | · | · | PoC 2 | loadrunner (3) · integrated lights-out 4 (2) · integrated lights-out firmware (2) | — | |
| 13 | sybase | 10 | 3 | · | · | NEW | adaptive server enterprise (10) | — | |
| 14 | сообщество свободного программного обеспечения | 10 | 1 | · | · | PoC 2 | debian gnu/linux (5) · linux (5) | — | |
| 15 | emc | 9 | · | · | · | PoC 5 | document sciences xpression (5) · documentum digital asset manager (1) · documentum administrator (1) | — | |
| 16 | pypi | 9 | 3 | · | · | PoC 2 | salt (5) · nova (2) · keystone (1) | — | |
| 17 | gentoo foundation inc. | 7 | · | · | · | PoC 2 | gentoo linux (7) | — | |
| 18 | novell | 7 | 1 | · | · | PoC 1 | zenworks configuration management (5) · suse studio onsite (1) · suse linux enterprise debuginfo (1) | — | |
| 19 | dlink | 6 | · | 1 | · | ×3.0KEV 1PoC 4 | des-3800 (2) · des-3800 firmware (2) · dsl-2740b (2) | — | |
| 20 | lockon | 6 | · | · | · | NEWPoC 3 | ec-cube (6) | — | |
| 21 | openstack | 6 | · | · | · | PoC 3 | havana (3) · grizzly (3) · folsom (2) | — | |
| 22 | pineapp | 6 | · | · | · | NEWPoC 1 | mail-secure (4) · mail-secure 5099sk (2) | — | |
| 23 | saltstack | 6 | 3 | · | · | NEW | salt (6) | — | |
| 24 | moodle | 5 | · | · | · | PoC 2 | moodle (5) | — | |
| 25 | mozilla | 5 | · | · | · | network security services (3) · firefox (2) · seamonkey (2) | — | ||
| 26 | wireshark | 5 | · | · | · | wireshark (5) | — | ||
| 27 | adobe | 4 | 2 | · | · | air (2) · air sdk (2) · coldfusion (2) | — | ||
| 28 | apple | 4 | · | · | · | PoC 1 | mac os x (2) · iphone os (1) · motion (1) | — | |
| 29 | fedoraproject | 4 | · | · | · | ×4.0PoC 1 | fedora (3) · 389 directory server (1) | — | |
| 30 | maven | 4 | · | · | · | PoC 1 | com.google.gwt:gwt (1) · com.sonyericsson.jenkins.plugins.bfa:build-failure-analyzer (1) · org.apache.struts:struts2-core (1) | — | |
| 31 | mediawiki | 4 | · | · | · | ×4.0 | mediawiki (4) | — | |
| 32 | xen | 4 | · | · | · | xen (4) | — | ||
| 33 | augeas | 3 | · | · | · | NEW | augeas (3) | — | |
| 34 | freebsd | 3 | · | · | · | PoC 1 | freebsd (3) | — | |
| 35 | jahia | 3 | · | · | · | NEWPoC 2 | jahia xcm (3) | — | |
| 36 | lighttpd | 3 | · | · | · | NEW×3.0 | lighttpd (3) | — | |
| 37 | mit | 3 | · | · | · | kerberos 5 (3) · kerberos (1) | — | ||
| 38 | novell inc. | 3 | · | · | · | PoC 1 | suse linux enterprise (2) · opensuse (1) | — | |
| 39 | packagist | 3 | · | · | · | PoC 1 | moodle/moodle (2) · tikiwiki/tiki-manager (1) | — | |
| 40 | spip | 3 | · | · | · | NEWPoC 1 | spip (3) | — | |
| 41 | suse | 3 | · | · | · | lifecycle management server (1) · linux enterprise (1) · manager (1) | — | ||
| 42 | ajaxplorer | 2 | · | · | · | NEWPoC 2 | ajaxplorer (2) | — | |
| 43 | apache | 2 | · | · | · | PoC 1 | struts (1) · tomcat (1) | — | |
| 44 | blackberry | 2 | · | · | · | blackberry link (2) | — | ||
| 45 | catapultsoftware | 2 | · | · | · | NEW | catapult dnp3 i\/o driver (2) | — | |
| 46 | checkpoint | 2 | · | · | · | endpoint security (2) | — | ||
| 47 | freedesktop | 2 | · | · | · | poppler (2) | — | ||
| 48 | ge | 2 | · | · | · | intelligent platforms proficy hmi\/scada cimplicity (2) · intelligent platforms proficy dnp3 i\/o driver (2) · intelligent platforms proficy hmi\/scada ifix (2) | — | ||
| 49 | gentoo | 2 | · | · | · | linux (2) | — | ||
| 50 | gnu | 2 | · | · | · | gnutls (2) | — |