month report
February 2015
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
February 2015 closed with 496 published CVEs — +11.5% YoY . 85 criticals, microsoft led volume, mostly via internet explorer. Biggest breakout: freetype at ×10.0 their 12-month median. Top weakness class — CWE-79 (71 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
496
— MoM+11.5% YoY
Severity mix
85 / 93
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
4.6%
23 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
4035.2
n=23
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
2610
n=4
Detection gap
KEV pressure, no Nuclei coverage
February 2015 · vendors with active exploitation listed by CISA but no public detection template.
- KEV 2microsoft57 CVE
- KEV 1opensuse49 CVE
- KEV 1adobe19 CVE
- KEV 1adobe systems inc.19 CVE
- KEV 1dlink5 CVE
- KEV 1d-link corp.3 CVE
Weakness × Vendor
What's spreading where in February 2015
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
Breakout vendors
CVE count ≥3× their own 12-period median.
- 10.0×freetype20 CVE
- 9.5×adobe systems inc.19 CVE
- 4.0×freebsd4 CVE
- 3.2×adobe19 CVE
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #27piwigo4 CVE
- #28pnmsoft4 CVE
- #29privoxy4 CVE
- #31yuba4 CVE
- #37mylittleforum3 CVE
- #39qpr3 CVE
- #41servision3 CVE
- #42adminsystems cms project2 CVE
- #43almail2 CVE
- #44ansible2 CVE
Top vendors
Ranked by distinct CVE count this period.
- 57 CVE38 critCVSS 6.9KEV 2PoC 9internet explorer (42) · windows rt 8.1 (10) · windows server 2012 (10)
- 49 CVE1 critCVSS 6.2KEV 1PoC 13opensuse (49) · evergreen (2)
- 44 CVE1 critCVSS 5.5PoC 1ios (7) · webex meetings server (4) · prime infrastructure (3)
- 43 CVE1 critCVSS 6.4PoC 14ubuntu linux (43)
- 31 CVE2 critCVSS 6.5KEV 1Nuclei 1PoC 11enterprise linux server (18) · enterprise linux desktop (18) · enterprise linux workstation (18)
- 28 CVECVSS 6.4PoC 12fedora (28)
- 25 CVECVSS 6.1PoC 9debian linux (25)
- 25 CVECVSS 3.9tivoli storage manager (5) · maximo for nuclear power (4) · change and configuration management database (4)
- 20 CVECVSS 6.8×10.0PoC 10freetype (20)
- 19 CVE19 critCVSS 10.0×3.2KEV 1PoC 1flash player (19)
- 19 CVE19 critCVSS 10.0×9.5KEV 1PoC 1flash player (19)
- 19 CVECVSS 5.8firefox (18) · firefox esr (5) · thunderbird (5)
- 16 CVECVSS 6.5PoC 8solaris (16)
- 11 CVECVSS 5.2PoC 8fortiauthenticator (5) · forticlient (3) · fortios (3)
- 10 CVECVSS 4.9owncloud server (9) · owncloud (8)
- 9 CVE1 critCVSS 5.6KEV 1Nuclei 1PoC 2org.apache.activemq:activemq-client (1) · org.elasticsearch:elasticsearch (1) · org.apache.tomcat:tomcat (1)
- 7 CVE1 critCVSS 6.7PoC 2chrome (4) · email (1) · android (1)
- 7 CVE2 critCVSS 6.2ruggedcom firmware (3) · simatic step 7 (2) · scalance x-200 series firmware (1)
- 6 CVECVSS 4.8PoC 1data loss prevention endpoint (4) · email gateway (1) · mcafee agent (1)
- 5 CVE3 critCVSS 8.9KEV 1PoC 3dcs-931l firmware (2) · dir-645 firmware (2) · dap-1320 firmware (1)
- 5 CVE2 critCVSS 6.8kerberos 5 (5)
- 4 CVECVSS 5.2PoC 1activemq (1) · qpid (1) · tomcat (1)
- 4 CVECVSS 6.9clamav (4)
- 4 CVE1 critCVSS 5.2PoC 1documentum d2 (2) · captiva capture (1) · unisphere central (1)
- 4 CVECVSS 6.8×4.0PoC 2freebsd (4)
- 4 CVECVSS 4.2PoC 3glibc (2) · cpio (1) · grep (1)
- 4 CVECVSS 6.1NEWPoC 3piwigo (4)
- 4 CVECVSS 4.8NEWsequence kinetics (4)
- 4 CVECVSS 5.6NEWprivoxy (4)
- 4 CVECVSS 3.3PoC 4passenger (2) · fat_free_crm (1) · facter (1)
- 4 CVECVSS 6.0NEWPoC 4u5cms (4)
- 4 CVECVSS 6.3PoC 3manageengine desktop central (1) · manageengine opmanager (1) · manageengine supportcenter plus (1)
- 3 CVECVSS 6.5PoC 1rt-ac68u (2) · rt-ac68u firmware (2) · rt-ac87u firmware (2)
- 3 CVE3 critCVSS 10.0reflection ftp client (3)
- 3 CVE2 critCVSS 9.6KEV 1PoC 2dap-1320 (3)
- 3 CVECVSS 5.2fortios (3)
- 3 CVECVSS 5.0NEWPoC 3my little forum (3)
- 3 CVECVSS 4.0glance (2) · kallithea (1) · rhodecode (1)
- 3 CVECVSS 5.0NEWportal (3)
- 3 CVECVSS 4.8PoC 3businessobjects edge (2) · hana (1)
- 3 CVE3 critCVSS 9.7NEWhvg video gateway firmware (3)
- 2 CVECVSS 5.4NEWPoC 2adminsystems cms (2)
- 2 CVECVSS 5.0NEWal-mail32 (2)
- 2 CVECVSS 5.8NEWPoC 2tower (2)
- 2 CVECVSS 5.9mac os x (1) · cups (1)
- 2 CVECVSS 5.9NEWPoC 2j-classifiedsmanager (2)
- 2 CVECVSS 5.9NEWcontent rating extbase (2)
- 2 CVECVSS 5.9NEWcontent rating (2)
- 2 CVECVSS 5.9NEWdlguard (2)
- 2 CVECVSS 4.6NEWPoC 1e2fsprogs (2)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | microsoft | 57 | 38 | 2 | · | KEV 2PoC 9 | internet explorer (42) · windows rt 8.1 (10) · windows server 2012 (10) | — | |
| 2 | opensuse | 49 | 1 | 1 | · | KEV 1PoC 13 | opensuse (49) · evergreen (2) | — | |
| 3 | cisco | 44 | 1 | · | · | PoC 1 | ios (7) · webex meetings server (4) · prime infrastructure (3) | — | |
| 4 | canonical | 43 | 1 | · | · | PoC 14 | ubuntu linux (43) | — | |
| 5 | redhat | 31 | 2 | 1 | 1 | KEV 1Nuclei 1PoC 11 | enterprise linux server (18) · enterprise linux desktop (18) · enterprise linux workstation (18) | — | |
| 6 | fedoraproject | 28 | · | · | · | PoC 12 | fedora (28) | — | |
| 7 | debian | 25 | · | · | · | PoC 9 | debian linux (25) | — | |
| 8 | ibm | 25 | · | · | · | tivoli storage manager (5) · maximo for nuclear power (4) · change and configuration management database (4) | — | ||
| 9 | freetype | 20 | · | · | · | ×10.0PoC 10 | freetype (20) | — | |
| 10 | adobe | 19 | 19 | 1 | · | ×3.2KEV 1PoC 1 | flash player (19) | — | |
| 11 | adobe systems inc. | 19 | 19 | 1 | · | ×9.5KEV 1PoC 1 | flash player (19) | — | |
| 12 | mozilla | 19 | · | · | · | firefox (18) · firefox esr (5) · thunderbird (5) | — | ||
| 13 | oracle | 16 | · | · | · | PoC 8 | solaris (16) | — | |
| 14 | fortinet | 11 | · | · | · | PoC 8 | fortiauthenticator (5) · forticlient (3) · fortios (3) | — | |
| 15 | owncloud | 10 | · | · | · | owncloud server (9) · owncloud (8) | — | ||
| 16 | maven | 9 | 1 | 1 | 1 | KEV 1Nuclei 1PoC 2 | org.apache.activemq:activemq-client (1) · org.elasticsearch:elasticsearch (1) · org.apache.tomcat:tomcat (1) | — | |
| 17 | 7 | 1 | · | · | PoC 2 | chrome (4) · email (1) · android (1) | — | ||
| 18 | siemens | 7 | 2 | · | · | ruggedcom firmware (3) · simatic step 7 (2) · scalance x-200 series firmware (1) | — | ||
| 19 | mcafee | 6 | · | · | · | PoC 1 | data loss prevention endpoint (4) · email gateway (1) · mcafee agent (1) | — | |
| 20 | dlink | 5 | 3 | 1 | · | KEV 1PoC 3 | dcs-931l firmware (2) · dir-645 firmware (2) · dap-1320 firmware (1) | — | |
| 21 | mit | 5 | 2 | · | · | kerberos 5 (5) | — | ||
| 22 | apache | 4 | · | · | · | PoC 1 | activemq (1) · qpid (1) · tomcat (1) | — | |
| 23 | clamav | 4 | · | · | · | clamav (4) | — | ||
| 24 | emc | 4 | 1 | · | · | PoC 1 | documentum d2 (2) · captiva capture (1) · unisphere central (1) | — | |
| 25 | freebsd | 4 | · | · | · | ×4.0PoC 2 | freebsd (4) | — | |
| 26 | gnu | 4 | · | · | · | PoC 3 | glibc (2) · cpio (1) · grep (1) | — | |
| 27 | piwigo | 4 | · | · | · | NEWPoC 3 | piwigo (4) | — | |
| 28 | pnmsoft | 4 | · | · | · | NEW | sequence kinetics (4) | — | |
| 29 | privoxy | 4 | · | · | · | NEW | privoxy (4) | — | |
| 30 | rubygems | 4 | · | · | · | PoC 4 | passenger (2) · fat_free_crm (1) · facter (1) | — | |
| 31 | yuba | 4 | · | · | · | NEWPoC 4 | u5cms (4) | — | |
| 32 | zohocorp | 4 | · | · | · | PoC 3 | manageengine desktop central (1) · manageengine opmanager (1) · manageengine supportcenter plus (1) | — | |
| 33 | asus | 3 | · | · | · | PoC 1 | rt-ac68u (2) · rt-ac68u firmware (2) · rt-ac87u firmware (2) | — | |
| 34 | attachmate | 3 | 3 | · | · | reflection ftp client (3) | — | ||
| 35 | d-link corp. | 3 | 2 | 1 | · | KEV 1PoC 2 | dap-1320 (3) | — | |
| 36 | fortinet inc. | 3 | · | · | · | fortios (3) | — | ||
| 37 | mylittleforum | 3 | · | · | · | NEWPoC 3 | my little forum (3) | — | |
| 38 | pypi | 3 | · | · | · | glance (2) · kallithea (1) · rhodecode (1) | — | ||
| 39 | qpr | 3 | · | · | · | NEW | portal (3) | — | |
| 40 | sap | 3 | · | · | · | PoC 3 | businessobjects edge (2) · hana (1) | — | |
| 41 | servision | 3 | 3 | · | · | NEW | hvg video gateway firmware (3) | — | |
| 42 | adminsystems cms project | 2 | · | · | · | NEWPoC 2 | adminsystems cms (2) | — | |
| 43 | almail | 2 | · | · | · | NEW | al-mail32 (2) | — | |
| 44 | ansible | 2 | · | · | · | NEWPoC 2 | tower (2) | — | |
| 45 | apple | 2 | · | · | · | mac os x (1) · cups (1) | — | ||
| 46 | cmsjunkie | 2 | · | · | · | NEWPoC 2 | j-classifiedsmanager (2) | — | |
| 47 | content rating extbase project | 2 | · | · | · | NEW | content rating extbase (2) | — | |
| 48 | content rating project | 2 | · | · | · | NEW | content rating (2) | — | |
| 49 | dlguard | 2 | · | · | · | NEW | dlguard (2) | — | |
| 50 | e2fsprogs project | 2 | · | · | · | NEWPoC 1 | e2fsprogs (2) | — |