month report
June 2021
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
June 2021 closed with 1,985 published CVEs. 177 criticals, сообщество свободного программного обеспечения led volume, mostly via debian gnu/linux. Top weakness class — CWE-79 (198 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
1,985
— MoM— YoY
Severity mix
177 / 772
critical / high
KEV added
0
0 ransomware-linked
Nuclei coverage
7.4%
147 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
1726.3
n=147
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
148
n=15
Detection gap
KEV pressure, no Nuclei coverage
June 2021 · vendors with active exploitation listed by CISA but no public detection template.
- KEV 7microsoft corp53 CVE
- KEV 7microsoft50 CVE
- KEV 3google inc54 CVE
- KEV 2google170 CVE
- KEV 2ао «ивк»71 CVE
- KEV 2samsung mobile43 CVE
- KEV 2samsung19 CVE
- KEV 1qualcomm33 CVE
Weakness × Vendor
What's spreading where in June 2021
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
79XSS787Out-of-bounds Write125Out-of-bounds Read20Improper Input Validation416Use After Free89SQL Injection434Unrestricted File Upload119Memory Buffer Bounds400Resource Consumption22Path Traversalсообщество свободного программного обеспечения14369432466106google311393951ао "нппкт"234125242ооо «русбитех-астра»2225123451fedoraproject1124251134ао «концерн вниинс»1622213debian11313233ао «ивк»521611intel526221google inc931251microsoft corp221microsoft11
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #18samsung mobile43 CVE
- #22unknown40 CVE
- #29opentext34 CVE
- #45jerryscript20 CVE
- #46samsung electronics20 CVE
- #47synology20 CVE
- #51ffmpeg17 CVE
- #52ffmpeg team17 CVE
- #57ао «нтц ит роса»16 CVE
- #58ооо "аскон-бизнес-решения"16 CVE
Top vendors
Ranked by distinct CVE count this period.
- 260 CVE24 critCVSS 7.1KEV 5Nuclei 23PoC 71debian gnu/linux (235) · linux (16) · libslirp (4)
- 170 CVE9 critCVSS 7.6KEV 2PoC 18android (118) · chrome (47) · asylo (3)
- 128 CVE5 critCVSS 7.2KEV 2Nuclei 10PoC 25осон основа оnyx (128)
- 128 CVE5 critCVSS 7.0KEV 2Nuclei 9PoC 27astra linux special edition (128) · astra linux special edition для «эльбрус» (38) · astra linux common edition (4)
- 109 CVE7 critCVSS 7.3KEV 2Nuclei 9PoC 25fedora (109)
- 106 CVE3 critCVSS 7.3KEV 2Nuclei 9PoC 21ос он «стрелец» (106)
- 71 CVE4 critCVSS 6.6Nuclei 8PoC 11debian linux (71)
- 71 CVE1 critCVSS 7.1KEV 2PoC 11альт 8 сп (67) · альт сп 10 (4)
- 69 CVE1 critCVSS 7.2PoC 1jhl6540 thunderbolt 3 firmware (9) · jhl6240 thunderbolt 3 firmware (9) · jhl6340 thunderbolt 3 firmware (9)
- 54 CVECVSS 8.0KEV 3PoC 13google chrome (46) · android (8)
- 53 CVE1 critCVSS 7.1KEV 7PoC 10windows 10 21h1 (25) · windows 10 20h2 (25) · windows 10 1809 (24)
- 50 CVE1 critCVSS 7.1KEV 7PoC 8windows 10 version 21h1 (25) · windows 10 version 1809 (24) · windows 10 version 1909 (24)
- 49 CVE1 critCVSS 5.9engineering lifecycle optimization - publishing (13) · rational collaborative lifecycle management (13) · engineering lifecycle optimization (13)
- 48 CVE9 critCVSS 7.0emui (32) · magic ui (31) · ese620x vess firmware (4)
- 45 CVE3 critCVSS 6.2Nuclei 2PoC 4com.xebialabs.deployit.ci:deployit-plugin (4) · org.jenkins-ci.plugins:requests (3) · org.apache.pdfbox:pdfbox (2)
- 44 CVE7 critCVSS 6.7Nuclei 5PoC 16shopware/platform (10) · magento/community-edition (5) · shopware/core (5)
- 43 CVE1 critCVSS 7.0KEV 1Nuclei 4PoC 10opensuse leap (37) · suse linux enterprise server (21) · suse linux enterprise server for sap applications (14)
- 43 CVE5 critCVSS 6.2NEWKEV 2PoC 5samsung mobile devices (26) · samsung health (2) · samsung notes (2)
- 41 CVE1 critCVSS 6.3Nuclei 5PoC 7red hat enterprise linux (34) · red hat openstack platform (3) · red hat software collections (2)
- 40 CVE1 critCVSS 6.5PoC 23d visual enterprise viewer (9) · netweaver as internet graphics server (7) · netweaver as abap (7)
- 40 CVE1 critCVSS 6.2PoC 2sap 3d visual enterprise viewer (9) · sap internet graphics service (7) · sap netweaver abap server and abap platform (enqueue server) (5)
- 40 CVE2 critCVSS 6.6NEWNuclei 40PoC 21simple 301 redirects by betterlinks (5) · the plus addons for elementor page builder (3) · autoptimize (3)
- 39 CVE1 critCVSS 6.9PoC 1firefox (30) · thunderbird (18) · firefox esr (11)
- 39 CVE3 critCVSS 6.7Nuclei 2PoC 3cloud backup (16) · hci compute node bios (9) · solidfire bios (9)
- 38 CVECVSS 7.1PoC 5ред ос (38)
- 36 CVE1 critCVSS 7.0PoC 1firefox (27) · thunderbird (17) · firefox esr (10)
- 36 CVE6 critCVSS 7.3Nuclei 2PoC 5tenvoy (2) · @backstage/techdocs-common (2) · @auth0/nextjs-auth0 (1)
- 36 CVECVSS 6.2enterprise linux (12) · openshift container platform (3) · satellite (3)
- 34 CVECVSS 7.4NEWbrava! desktop (34) · brava\! desktop (33) · brava\! (1)
- 33 CVE2 critCVSS 6.4Nuclei 10PoC 2zfs storage appliance kit (11) · instantis enterprisetrack (9) · enterprise manager ops center (9)
- 33 CVE6 critCVSS 8.0KEV 1wsa8810 firmware (33) · wcd9340 firmware (31) · wsa8815 firmware (27)
- 33 CVE6 critCVSS 8.0KEV 1snapdragon wired infrastructure and networking (6) · snapdragon auto, snapdragon compute, snapdragon connectivity, snapdragon consumer iot, snapdragon industrial iot, snapdragon mobile, snapdragon voice & music, snapdragon wearables (5) · snapdragon auto, snapdragon compute, snapdragon connectivity, snapdragon consumer electronics connectivity, snapdragon consumer iot, snapdragon industrial iot, snapdragon mobile, snapdragon voice & music, snapdragon wired infrastructure and networking (4)
- 33 CVE3 critCVSS 7.1PoC 1teamcenter visualization (9) · jt2go (9) · comos (8)
- 29 CVECVSS 7.1PoC 6ubuntu (29)
- 27 CVECVSS 6.8PoC 27webex meetings server (5) · cisco webex meetings (5) · sf220-48p firmware (4)
- 27 CVECVSS 6.2jetson linux (26) · nvidia jetson tx1 (10) · nvidia jetson agx xavier series, jetson xavier nx, jetson tx2 series, jetson tx2 nx (8)
- 26 CVE3 critCVSS 6.9Nuclei 1PoC 2pillow (6) · zope (3) · datasette (2)
- 24 CVECVSS 6.8magento commerce (5) · animate (4) · after effects (3)
- 23 CVECVSS 7.0animate (6) · magento commerce (5) · magento open source (5)
- 23 CVECVSS 6.1PoC 23cisco webex player (4) · cisco webex meetings server (3) · webex network recording player (3)
- 22 CVECVSS 7.0KEV 1Nuclei 1PoC 5fedora (22)
- 21 CVE4 critCVSS 7.4Nuclei 7http server (8) · traffic server (5) · pdfbox (2)
- 21 CVE5 critCVSS 7.5Nuclei 7apache http server (8) · http server (7) · traffic server (5)
- 21 CVE4 critCVSS 8.0interactive graphical scada system (13) · powerlogic egx100 firmware (4) · powerlogic egx300 firmware (4)
- 20 CVE5 critCVSS 7.9NEWPoC 11jerryscript (20)
- 20 CVE5 critCVSS 7.9NEWPoC 11iot.js (20)
- 20 CVE4 critCVSS 7.6NEWdiskstation manager (7) · diskstation manager (dsm) (5) · diskstation manager unified controller (5)
- 19 CVECVSS 6.7KEV 2internet (3) · notes (2) · health (2)
- 18 CVE1 critCVSS 7.0helm.sh/helm/v3 (2) · github.com/ory/oathkeeper (2) · github.com/pterodactyl/wings (2)
- 17 CVECVSS 7.3PoC 3apport (14) · ubuntu linux (12)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | сообщество свободного программного обеспечения | 260 | 24 | 5 | 23 | KEV 5Nuclei 23PoC 71 | debian gnu/linux (235) · linux (16) · libslirp (4) | — | |
| 2 | 170 | 9 | 2 | · | KEV 2PoC 18 | android (118) · chrome (47) · asylo (3) | — | ||
| 3 | ао "нппкт" | 128 | 5 | 2 | 10 | KEV 2Nuclei 10PoC 25 | осон основа оnyx (128) | — | |
| 4 | ооо «русбитех-астра» | 128 | 5 | 2 | 9 | KEV 2Nuclei 9PoC 27 | astra linux special edition (128) · astra linux special edition для «эльбрус» (38) · astra linux common edition (4) | — | |
| 5 | fedoraproject | 109 | 7 | 2 | 9 | KEV 2Nuclei 9PoC 25 | fedora (109) | — | |
| 6 | ао «концерн вниинс» | 106 | 3 | 2 | 9 | KEV 2Nuclei 9PoC 21 | ос он «стрелец» (106) | — | |
| 7 | debian | 71 | 4 | · | 8 | Nuclei 8PoC 11 | debian linux (71) | — | |
| 8 | ао «ивк» | 71 | 1 | 2 | · | KEV 2PoC 11 | альт 8 сп (67) · альт сп 10 (4) | — | |
| 9 | intel | 69 | 1 | · | · | PoC 1 | jhl6540 thunderbolt 3 firmware (9) · jhl6240 thunderbolt 3 firmware (9) · jhl6340 thunderbolt 3 firmware (9) | — | |
| 10 | google inc | 54 | · | 3 | · | KEV 3PoC 13 | google chrome (46) · android (8) | — | |
| 11 | microsoft corp | 53 | 1 | 7 | · | KEV 7PoC 10 | windows 10 21h1 (25) · windows 10 20h2 (25) · windows 10 1809 (24) | — | |
| 12 | microsoft | 50 | 1 | 7 | · | KEV 7PoC 8 | windows 10 version 21h1 (25) · windows 10 version 1809 (24) · windows 10 version 1909 (24) | — | |
| 13 | ibm | 49 | 1 | · | · | engineering lifecycle optimization - publishing (13) · rational collaborative lifecycle management (13) · engineering lifecycle optimization (13) | — | ||
| 14 | huawei | 48 | 9 | · | · | emui (32) · magic ui (31) · ese620x vess firmware (4) | — | ||
| 15 | maven | 45 | 3 | · | 2 | Nuclei 2PoC 4 | com.xebialabs.deployit.ci:deployit-plugin (4) · org.jenkins-ci.plugins:requests (3) · org.apache.pdfbox:pdfbox (2) | — | |
| 16 | packagist | 44 | 7 | · | 5 | Nuclei 5PoC 16 | shopware/platform (10) · magento/community-edition (5) · shopware/core (5) | — | |
| 17 | novell inc. | 43 | 1 | 1 | 4 | KEV 1Nuclei 4PoC 10 | opensuse leap (37) · suse linux enterprise server (21) · suse linux enterprise server for sap applications (14) | — | |
| 18 | samsung mobile | 43 | 5 | 2 | · | NEWKEV 2PoC 5 | samsung mobile devices (26) · samsung health (2) · samsung notes (2) | — | |
| 19 | red hat inc. | 41 | 1 | · | 5 | Nuclei 5PoC 7 | red hat enterprise linux (34) · red hat openstack platform (3) · red hat software collections (2) | — | |
| 20 | sap | 40 | 1 | · | · | PoC 2 | 3d visual enterprise viewer (9) · netweaver as internet graphics server (7) · netweaver as abap (7) | — | |
| 21 | sap se | 40 | 1 | · | · | PoC 2 | sap 3d visual enterprise viewer (9) · sap internet graphics service (7) · sap netweaver abap server and abap platform (enqueue server) (5) | — | |
| 22 | unknown | 40 | 2 | · | 40 | NEWNuclei 40PoC 21 | simple 301 redirects by betterlinks (5) · the plus addons for elementor page builder (3) · autoptimize (3) | — | |
| 23 | mozilla | 39 | 1 | · | · | PoC 1 | firefox (30) · thunderbird (18) · firefox esr (11) | — | |
| 24 | netapp | 39 | 3 | · | 2 | Nuclei 2PoC 3 | cloud backup (16) · hci compute node bios (9) · solidfire bios (9) | — | |
| 25 | ооо «ред софт» | 38 | · | · | · | PoC 5 | ред ос (38) | — | |
| 26 | mozilla corp. | 36 | 1 | · | · | PoC 1 | firefox (27) · thunderbird (17) · firefox esr (10) | — | |
| 27 | npm | 36 | 6 | · | 2 | Nuclei 2PoC 5 | tenvoy (2) · @backstage/techdocs-common (2) · @auth0/nextjs-auth0 (1) | — | |
| 28 | redhat | 36 | · | · | · | enterprise linux (12) · openshift container platform (3) · satellite (3) | — | ||
| 29 | opentext | 34 | · | · | · | NEW | brava! desktop (34) · brava\! desktop (33) · brava\! (1) | — | |
| 30 | oracle | 33 | 2 | · | 10 | Nuclei 10PoC 2 | zfs storage appliance kit (11) · instantis enterprisetrack (9) · enterprise manager ops center (9) | — | |
| 31 | qualcomm | 33 | 6 | 1 | · | KEV 1 | wsa8810 firmware (33) · wcd9340 firmware (31) · wsa8815 firmware (27) | — | |
| 32 | qualcomm, inc. | 33 | 6 | 1 | · | KEV 1 | snapdragon wired infrastructure and networking (6) · snapdragon auto, snapdragon compute, snapdragon connectivity, snapdragon consumer iot, snapdragon industrial iot, snapdragon mobile, snapdragon voice & music, snapdragon wearables (5) · snapdragon auto, snapdragon compute, snapdragon connectivity, snapdragon consumer electronics connectivity, snapdragon consumer iot, snapdragon industrial iot, snapdragon mobile, snapdragon voice & music, snapdragon wired infrastructure and networking (4) | — | |
| 33 | siemens | 33 | 3 | · | · | PoC 1 | teamcenter visualization (9) · jt2go (9) · comos (8) | — | |
| 34 | canonical ltd. | 29 | · | · | · | PoC 6 | ubuntu (29) | — | |
| 35 | cisco | 27 | · | · | · | PoC 27 | webex meetings server (5) · cisco webex meetings (5) · sf220-48p firmware (4) | — | |
| 36 | nvidia | 27 | · | · | · | jetson linux (26) · nvidia jetson tx1 (10) · nvidia jetson agx xavier series, jetson xavier nx, jetson tx2 series, jetson tx2 nx (8) | — | ||
| 37 | pypi | 26 | 3 | · | 1 | Nuclei 1PoC 2 | pillow (6) · zope (3) · datasette (2) | — | |
| 38 | adobe | 24 | · | · | · | magento commerce (5) · animate (4) · after effects (3) | — | ||
| 39 | adobe systems inc. | 23 | · | · | · | animate (6) · magento commerce (5) · magento open source (5) | — | ||
| 40 | cisco systems inc. | 23 | · | · | · | PoC 23 | cisco webex player (4) · cisco webex meetings server (3) · webex network recording player (3) | — | |
| 41 | fedora project | 22 | · | 1 | 1 | KEV 1Nuclei 1PoC 5 | fedora (22) | — | |
| 42 | apache | 21 | 4 | · | 7 | Nuclei 7 | http server (8) · traffic server (5) · pdfbox (2) | — | |
| 43 | apache software foundation | 21 | 5 | · | 7 | Nuclei 7 | apache http server (8) · http server (7) · traffic server (5) | — | |
| 44 | schneider-electric | 21 | 4 | · | · | interactive graphical scada system (13) · powerlogic egx100 firmware (4) · powerlogic egx300 firmware (4) | — | ||
| 45 | jerryscript | 20 | 5 | · | · | NEWPoC 11 | jerryscript (20) | — | |
| 46 | samsung electronics | 20 | 5 | · | · | NEWPoC 11 | iot.js (20) | — | |
| 47 | synology | 20 | 4 | · | · | NEW | diskstation manager (7) · diskstation manager (dsm) (5) · diskstation manager unified controller (5) | — | |
| 48 | samsung | 19 | · | 2 | · | KEV 2 | internet (3) · notes (2) · health (2) | — | |
| 49 | go | 18 | 1 | · | · | helm.sh/helm/v3 (2) · github.com/ory/oathkeeper (2) · github.com/pterodactyl/wings (2) | — | ||
| 50 | canonical | 17 | · | · | · | PoC 3 | apport (14) · ubuntu linux (12) | — |