month report
August 2020
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
August 2020 closed with 1,297 published CVEs. 129 criticals, microsoft led volume, mostly via windows 10 version 2004. Top weakness class — CWE-79 (153 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
1,297
— MoM— YoY
Severity mix
129 / 512
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
4.4%
57 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
2023.3
n=57
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
447
n=10
Detection gap
KEV pressure, no Nuclei coverage
August 2020 · vendors with active exploitation listed by CISA but no public detection template.
- KEV 3microsoft121 CVE
- KEV 3microsoft corp121 CVE
- KEV 1adobe28 CVE
- KEV 1adobe systems inc.26 CVE
- KEV 1ао "нппкт"9 CVE
Weakness × Vendor
What's spreading where in August 2020
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
79XSS787Out-of-bounds Write20Improper Input Validation125Out-of-bounds Read287Improper Authentication120Buffer Overflow22Path Traversal78OS Command Injection89SQL Injection269Improper Privilege Mgmtmicrosoft3121microsoft corp3121ibm107321112сообщество свободного программного обеспечения116246322ооо «русбитех-астра»116246222canonical1513612debian15156321canonical ltd.1513612ао «концерн вниинс»1614621intel156359cisco8113221cisco systems inc.8113221
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #20adobe systems inc.26 CVE
- #31jetbrains16 CVE
- #32ао «нтц ит роса»16 CVE
- #33dbhcms project15 CVE
- #34mozilla15 CVE
- #37gitlab13 CVE
- #39parallels13 CVE
- #43sierrawireless12 CVE
- #44mcafee11 CVE
- #45marvell10 CVE
Top vendors
Ranked by distinct CVE count this period.
- 121 CVE1 critCVSS 7.5KEV 3PoC 7windows 10 version 2004 (86) · windows 10 version 1909 (86) · windows 10 version 1809 (85)
- 121 CVE1 critCVSS 7.5KEV 3PoC 7windows 10 1909 (86) · windows 10 1903 (85) · windows 10 1809 (84)
- 74 CVE4 critCVSS 6.3security guardium data encryption (13) · guardium data encryption (13) · guardium for cloud key management (12)
- 74 CVE5 critCVSS 6.6KEV 1Nuclei 5PoC 24debian gnu/linux (70) · linux (2) · net-snmp (2)
- 72 CVE3 critCVSS 6.0KEV 1Nuclei 3PoC 23astra linux special edition (60) · astra linux special edition для «эльбрус» (52) · astra linux common edition (17)
- 64 CVE1 critCVSS 6.2KEV 1Nuclei 3PoC 26ubuntu linux (61) · apport (2) · ppp (1)
- 59 CVE5 critCVSS 6.4KEV 1Nuclei 5PoC 24debian linux (59)
- 57 CVE1 critCVSS 6.4KEV 1Nuclei 4PoC 26ubuntu (57) · apport (2)
- 55 CVE2 critCVSS 6.4KEV 1Nuclei 3PoC 21ос он «стрелец» (55)
- 52 CVECVSS 7.4server board s2600wt firmware (22) · server board s2600wf firmware (22) · compute module hns2600tp firmware (22)
- 51 CVE2 critCVSS 6.9KEV 2Nuclei 3PoC 51nx-os (8) · data center network manager (7) · cisco webex meetings (7)
- 50 CVE1 critCVSS 6.4KEV 2Nuclei 1PoC 49cisco data center network manager (7) · nx-os (7) · cisco webex meetings (6)
- 48 CVE11 critCVSS 8.4PoC 6highcharts (2) · keystone (2) · tinymce (2)
- 43 CVE11 critCVSS 7.5PoC 1android (40) · asylo (2) · go-tpm (1)
- 42 CVE3 critCVSS 7.0KEV 1Nuclei 3PoC 13fedora (41) · selinux-policy (1)
- 38 CVECVSS 7.5intel server board s2600st (24) · intel server board s2600wf (24) · intel server board s2600bp (24)
- 34 CVE3 critCVSS 7.5KEV 1Nuclei 3PoC 11leap (33) · backports sle (7) · opensuse leap 15.1 (2)
- 29 CVE3 critCVSS 7.0KEV 1Nuclei 3PoC 11opensuse leap (27) · suse linux enterprise server (4) · suse linux enterprise server for sap applications (2)
- 28 CVECVSS 6.8KEV 1acrobat dc (26) · acrobat reader dc (26) · adobe acrobat and reader (26)
- 26 CVECVSS 6.7NEWKEV 1adobe acrobat reader 2017 (25) · adobe acrobat 2015 (25) · adobe acrobat 2017 (25)
- 26 CVECVSS 5.7PoC 15ghostscript (25) · mujs (1)
- 25 CVECVSS 5.6PoC 14ghostscript (25)
- 24 CVE3 critCVSS 7.3PoC 4альт 8 сп (24)
- 21 CVECVSS 7.0PoC 1big-ip application security manager (14) · big-ip access policy manager (13) · big-ip advanced firewall manager (12)
- 21 CVE2 critCVSS 7.0Nuclei 2PoC 4org.jenkins-ci.main:jenkins-core (3) · org.jenkins-ci.plugins:pipeline-maven (3) · net.sf.mpxj:mpxj (1)
- 21 CVE3 critCVSS 7.3Nuclei 3PoC 2red hat enterprise linux (9) · cloudforms management engine (8) · red hat software collections (3)
- 19 CVE2 critCVSS 7.0Nuclei 1PoC 1cloudforms (5) · enterprise linux (3) · cloudforms management engine (3)
- 16 CVE3 critCVSS 7.1KEV 1Nuclei 4PoC 8fedora (16)
- 16 CVE1 critCVSS 7.0PoC 4go.etcd.io/etcd (3) · github.com/hashicorp/vault (2) · github.com/aws/aws-sdk-go (2)
- 16 CVE1 critCVSS 6.6fusioncompute (6) · p30 pro firmware (4) · p30 firmware (3)
- 16 CVECVSS 6.6NEWyoutrack (7) · teamcity (6) · toolbox (1)
- 16 CVE1 critCVSS 6.5NEWNuclei 4PoC 11rosa virtualization 3.0 (14) · rosa virtualization (5) · роса хром (1)
- 15 CVECVSS 5.9NEWPoC 8dbhcms (15)
- 15 CVECVSS 7.0NEWfirefox (13) · firefox esr (10) · thunderbird (9)
- 15 CVE1 critCVSS 6.9PoC 4baserproject/basercms (3) · codiad/codiad (3) · dolibarr/dolibarr (2)
- 14 CVE2 critCVSS 7.9KEV 1Nuclei 3PoC 7zfs storage appliance kit (5) · communications element manager (4) · communications session report manager (4)
- 13 CVE1 critCVSS 6.4NEWgitlab (12) · gitlab runner (1) · runner (1)
- 13 CVE1 critCVSS 7.5Nuclei 2PoC 7steelstore cloud integrated storage (5) · active iq unified manager (4) · cloud backup (3)
- 13 CVECVSS 7.6NEWdesktop (13) · parallels desktop (13)
- 13 CVE2 critCVSS 6.6sap netweaver (5) · abap platform (3) · netweaver application server abap (3)
- 13 CVE2 critCVSS 6.8sap netweaver (abap server) and abap platform (3) · sap netweaver (knowledge management) (2) · sap business objects business intelligence platform (1)
- 12 CVE3 critCVSS 8.0PoC 2scalyr-agent-2 (2) · openapi-python-client (2) · red-discordbot (2)
- 12 CVE1 critCVSS 6.0NEWaleos (12)
- 11 CVECVSS 5.6NEWdata loss prevention (8) · dlp epo extension (6) · total protection (2)
- 10 CVE1 critCVSS 8.6NEWqconvergeconsole (10)
- 9 CVECVSS 5.9PoC 3jenkins (3) · pipeline maven integration (3) · email extension (1)
- 9 CVECVSS 5.9PoC 3jenkins (3) · jenkins pipeline maven integration plugin (3) · jenkins flaky test handler plugin (1)
- 9 CVECVSS 7.1NEWfirefox (7) · firefox esr (7) · thunderbird (5)
- 9 CVECVSS 6.5KEV 1PoC 2осон основа оnyx (9)
- 8 CVE2 critCVSS 7.9Nuclei 5PoC 3http server (4) · skywalking (1) · solr (1)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | microsoft | 121 | 1 | 3 | · | KEV 3PoC 7 | windows 10 version 2004 (86) · windows 10 version 1909 (86) · windows 10 version 1809 (85) | — | |
| 2 | microsoft corp | 121 | 1 | 3 | · | KEV 3PoC 7 | windows 10 1909 (86) · windows 10 1903 (85) · windows 10 1809 (84) | — | |
| 3 | ibm | 74 | 4 | · | · | security guardium data encryption (13) · guardium data encryption (13) · guardium for cloud key management (12) | — | ||
| 4 | сообщество свободного программного обеспечения | 74 | 5 | 1 | 5 | KEV 1Nuclei 5PoC 24 | debian gnu/linux (70) · linux (2) · net-snmp (2) | — | |
| 5 | ооо «русбитех-астра» | 72 | 3 | 1 | 3 | KEV 1Nuclei 3PoC 23 | astra linux special edition (60) · astra linux special edition для «эльбрус» (52) · astra linux common edition (17) | — | |
| 6 | canonical | 64 | 1 | 1 | 3 | KEV 1Nuclei 3PoC 26 | ubuntu linux (61) · apport (2) · ppp (1) | — | |
| 7 | debian | 59 | 5 | 1 | 5 | KEV 1Nuclei 5PoC 24 | debian linux (59) | — | |
| 8 | canonical ltd. | 57 | 1 | 1 | 4 | KEV 1Nuclei 4PoC 26 | ubuntu (57) · apport (2) | — | |
| 9 | ао «концерн вниинс» | 55 | 2 | 1 | 3 | KEV 1Nuclei 3PoC 21 | ос он «стрелец» (55) | — | |
| 10 | intel | 52 | · | · | · | server board s2600wt firmware (22) · server board s2600wf firmware (22) · compute module hns2600tp firmware (22) | — | ||
| 11 | cisco | 51 | 2 | 2 | 3 | KEV 2Nuclei 3PoC 51 | nx-os (8) · data center network manager (7) · cisco webex meetings (7) | — | |
| 12 | cisco systems inc. | 50 | 1 | 2 | 1 | KEV 2Nuclei 1PoC 49 | cisco data center network manager (7) · nx-os (7) · cisco webex meetings (6) | — | |
| 13 | npm | 48 | 11 | · | · | PoC 6 | highcharts (2) · keystone (2) · tinymce (2) | — | |
| 14 | 43 | 11 | · | · | PoC 1 | android (40) · asylo (2) · go-tpm (1) | — | ||
| 15 | fedoraproject | 42 | 3 | 1 | 3 | KEV 1Nuclei 3PoC 13 | fedora (41) · selinux-policy (1) | — | |
| 16 | intel corp. | 38 | · | · | · | intel server board s2600st (24) · intel server board s2600wf (24) · intel server board s2600bp (24) | — | ||
| 17 | opensuse | 34 | 3 | 1 | 3 | KEV 1Nuclei 3PoC 11 | leap (33) · backports sle (7) · opensuse leap 15.1 (2) | — | |
| 18 | novell inc. | 29 | 3 | 1 | 3 | KEV 1Nuclei 3PoC 11 | opensuse leap (27) · suse linux enterprise server (4) · suse linux enterprise server for sap applications (2) | — | |
| 19 | adobe | 28 | · | 1 | · | KEV 1 | acrobat dc (26) · acrobat reader dc (26) · adobe acrobat and reader (26) | — | |
| 20 | adobe systems inc. | 26 | · | 1 | · | NEWKEV 1 | adobe acrobat reader 2017 (25) · adobe acrobat 2015 (25) · adobe acrobat 2017 (25) | — | |
| 21 | artifex | 26 | · | · | · | PoC 15 | ghostscript (25) · mujs (1) | — | |
| 22 | artifex software inc. | 25 | · | · | · | PoC 14 | ghostscript (25) | — | |
| 23 | ао «ивк» | 24 | 3 | · | · | PoC 4 | альт 8 сп (24) | — | |
| 24 | f5 | 21 | · | · | · | PoC 1 | big-ip application security manager (14) · big-ip access policy manager (13) · big-ip advanced firewall manager (12) | — | |
| 25 | maven | 21 | 2 | · | 2 | Nuclei 2PoC 4 | org.jenkins-ci.main:jenkins-core (3) · org.jenkins-ci.plugins:pipeline-maven (3) · net.sf.mpxj:mpxj (1) | — | |
| 26 | red hat inc. | 21 | 3 | · | 3 | Nuclei 3PoC 2 | red hat enterprise linux (9) · cloudforms management engine (8) · red hat software collections (3) | — | |
| 27 | redhat | 19 | 2 | · | 1 | Nuclei 1PoC 1 | cloudforms (5) · enterprise linux (3) · cloudforms management engine (3) | — | |
| 28 | fedora project | 16 | 3 | 1 | 4 | KEV 1Nuclei 4PoC 8 | fedora (16) | — | |
| 29 | go | 16 | 1 | · | · | PoC 4 | go.etcd.io/etcd (3) · github.com/hashicorp/vault (2) · github.com/aws/aws-sdk-go (2) | — | |
| 30 | huawei | 16 | 1 | · | · | fusioncompute (6) · p30 pro firmware (4) · p30 firmware (3) | — | ||
| 31 | jetbrains | 16 | · | · | · | NEW | youtrack (7) · teamcity (6) · toolbox (1) | — | |
| 32 | ао «нтц ит роса» | 16 | 1 | · | 4 | NEWNuclei 4PoC 11 | rosa virtualization 3.0 (14) · rosa virtualization (5) · роса хром (1) | — | |
| 33 | dbhcms project | 15 | · | · | · | NEWPoC 8 | dbhcms (15) | — | |
| 34 | mozilla | 15 | · | · | · | NEW | firefox (13) · firefox esr (10) · thunderbird (9) | — | |
| 35 | packagist | 15 | 1 | · | · | PoC 4 | baserproject/basercms (3) · codiad/codiad (3) · dolibarr/dolibarr (2) | — | |
| 36 | oracle | 14 | 2 | 1 | 3 | KEV 1Nuclei 3PoC 7 | zfs storage appliance kit (5) · communications element manager (4) · communications session report manager (4) | — | |
| 37 | gitlab | 13 | 1 | · | · | NEW | gitlab (12) · gitlab runner (1) · runner (1) | — | |
| 38 | netapp | 13 | 1 | · | 2 | Nuclei 2PoC 7 | steelstore cloud integrated storage (5) · active iq unified manager (4) · cloud backup (3) | — | |
| 39 | parallels | 13 | · | · | · | NEW | desktop (13) · parallels desktop (13) | — | |
| 40 | sap | 13 | 2 | · | · | sap netweaver (5) · abap platform (3) · netweaver application server abap (3) | — | ||
| 41 | sap se | 13 | 2 | · | · | sap netweaver (abap server) and abap platform (3) · sap netweaver (knowledge management) (2) · sap business objects business intelligence platform (1) | — | ||
| 42 | pypi | 12 | 3 | · | · | PoC 2 | scalyr-agent-2 (2) · openapi-python-client (2) · red-discordbot (2) | — | |
| 43 | sierrawireless | 12 | 1 | · | · | NEW | aleos (12) | — | |
| 44 | mcafee | 11 | · | · | · | NEW | data loss prevention (8) · dlp epo extension (6) · total protection (2) | — | |
| 45 | marvell | 10 | 1 | · | · | NEW | qconvergeconsole (10) | — | |
| 46 | jenkins | 9 | · | · | · | PoC 3 | jenkins (3) · pipeline maven integration (3) · email extension (1) | — | |
| 47 | jenkins project | 9 | · | · | · | PoC 3 | jenkins (3) · jenkins pipeline maven integration plugin (3) · jenkins flaky test handler plugin (1) | — | |
| 48 | mozilla corp. | 9 | · | · | · | NEW | firefox (7) · firefox esr (7) · thunderbird (5) | — | |
| 49 | ао "нппкт" | 9 | · | 1 | · | KEV 1PoC 2 | осон основа оnyx (9) | — | |
| 50 | apache | 8 | 2 | · | 5 | Nuclei 5PoC 3 | http server (4) · skywalking (1) · solr (1) | — |