month report
July 2022
Data as of Jun 4, 2026, 13:25 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
July 2022 closed with 2,201 published CVEs. 289 criticals, 3 added to CISA KEV. google led volume, mostly via chrome. Top weakness class — CWE-79 (230 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
2,201
— MoM— YoY
Severity mix
289 / 755
critical / high
KEV added
3
0 ransomware-linked
Nuclei coverage
8.5%
186 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
1327.5
n=186
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
34
n=6
Detection gap
KEV pressure, no Nuclei coverage
July 2022 · vendors with active exploitation listed by CISA but no public detection template.
- KEV 3google198 CVE
- KEV 3ао «концерн вниинс»127 CVE
- KEV 3google inc126 CVE
- KEV 2microsoft corp162 CVE
- KEV 1microsoft82 CVE
Weakness × Vendor
What's spreading where in July 2022
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
79XSS787Out-of-bounds Write22Path Traversal416Use After Free89SQL Injection125Out-of-bounds Read78OS Command Injection120Buffer Overflow352CSRF20Improper Input Validationgoogle22536867ао "нппкт"5231711413сообщество свободного программного обеспечения622611624microsoft corp2813922ооо «русбитех-астра»320431511ао «концерн вниинс»21316522google inc31116622oracle13fedoraproject49113512oracle corp.1oracle corporation1microsoft21
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #1google198 CVE
- #2ао "нппкт"191 CVE
- #3сообщество свободного программного обеспечения175 CVE
- #4microsoft corp162 CVE
- #5ооо «русбитех-астра»138 CVE
- #6ао «концерн вниинс»127 CVE
- #7google inc126 CVE
- #8oracle94 CVE
- #9fedoraproject91 CVE
- #10oracle corp.84 CVE
Top vendors
Ranked by distinct CVE count this period.
- 198 CVE10 critCVSS 7.5NEWKEV 3PoC 25chrome (124) · android (73) · google play services software development kit (1)
- 191 CVE8 critCVSS 7.6NEWKEV 3Nuclei 1PoC 40осон основа оnyx (191)
- 175 CVE10 critCVSS 7.5NEWKEV 2Nuclei 5PoC 40debian gnu/linux (151) · linux (24) · vim (12)
- 162 CVE3 critCVSS 7.2NEWKEV 2PoC 16microsoft edge (80) · windows server 20h2 (server core installation) (44) · windows server 2022 (server core installation) (44)
- 138 CVE7 critCVSS 7.5NEWKEV 3Nuclei 1PoC 34astra linux special edition (137) · astra linux special edition для «эльбрус» (16) · astra linux common edition (3)
- 127 CVE6 critCVSS 7.9NEWKEV 3PoC 24ос он «стрелец» (127)
- 126 CVE7 critCVSS 7.9NEWKEV 3PoC 25google chrome (123) · android (2) · angular (1)
- 94 CVE2 critCVSS 6.0NEWNuclei 5PoC 2mysql server (20) · database (13) · weblogic server proxy plug-in (9)
- 91 CVE5 critCVSS 7.1NEWKEV 1Nuclei 2PoC 19fedora (91) · extra packages for enterprise linux (5)
- 84 CVE2 critCVSS 6.0NEWNuclei 5PoC 2mysql server (20) · oracle flexcube universal banking (6) · communications billing and revenue management (6)
- 83 CVE1 critCVSS 5.9NEWNuclei 5PoC 1mysql server (22) · flexcube universal banking (6) · banking trade finance (6)
- 82 CVECVSS 7.1NEWKEV 1windows server version 20h2 (44) · windows server 2016 (44) · windows server 2022 (44)
- 75 CVE8 critCVSS 6.6NEWKEV 1Nuclei 5PoC 8io.dataease:dataease-plugin-common (4) · org.jenkins-ci.plugins:openshift-deployer (4) · org.jenkins-ci.plugins:git (3)
- 68 CVE4 critCVSS 7.1NEWPoC 18debian linux (68)
- 65 CVE3 critCVSS 6.3NEWengineering lifecycle optimization - publishing (6) · sterling partner engagement manager on cloud (6) · sterling partner engagement manager (6)
- 65 CVE2 critCVSS 5.8NEWNuclei 65PoC 34request a quote (2) · name directory (2) · ninja forms contact form – the drag and drop form builder for wordpress (2)
- 62 CVE2 critCVSS 6.4NEWPoC 16альт 8 сп (59) · альт сп 10 (6)
- 62 CVE2 critCVSS 6.7NEWNuclei 3PoC 13ред ос (53) · ред база данных (9)
- 55 CVE5 critCVSS 5.1NEWPoC 55rv130 firmware (35) · rv215w firmware (35) · rv110w firmware (35)
- 55 CVE5 critCVSS 5.1NEWPoC 55rv130w wireless-n multifunction vpn router (35) · rv110w wireless-n vpn (26) · rv215w wireless-n vpn router (26)
- 49 CVE3 critCVSS 5.9NEWPoC 7active iq unified manager (31) · oncommand insight (27) · snapcenter (26)
- 49 CVE9 critCVSS 7.2NEWNuclei 1PoC 21undici (3) · llhttp (2) · @openzeppelin/contracts (2)
- 48 CVE3 critCVSS 8.1NEWNuclei 1PoC 1pads viewer (20) · pads standard/plus viewer (20) · sinec ins (5)
- 44 CVECVSS 5.8NEWNuclei 1openshift deployer (4) · git (3) · coverity (3)
- 42 CVECVSS 5.8NEWNuclei 1jenkins deployer framework plugin (4) · jenkins coverity plugin (3) · jenkins openshift deployer plugin (3)
- 42 CVECVSS 5.8NEWNuclei 1jenkins openshift deployer plugin (4) · jenkins coverity plugin (3) · jenkins git plugin (3)
- 38 CVECVSS 4.8NEWsamsung mobile devices (29) · galaxy store (3) · camera (1)
- 35 CVE2 critCVSS 6.4NEWNuclei 6PoC 11microweber/microweber (6) · moodle/moodle (5) · idno/known (4)
- 35 CVECVSS 6.8NEWNuclei 1PoC 8роса хром (24) · rosa virtualization (7) · роса кобальт (4)
- 34 CVECVSS 7.1NEWacrobat (21) · acrobat dc (21) · acrobat reader (21)
- 34 CVE12 critCVSS 7.9NEWKEV 1Nuclei 2PoC 9pypi (2) · ujson (2) · untangle (2)
- 33 CVECVSS 7.1NEWadobe acrobat reader document cloud (20) · adobe acrobat reader 2017 (20) · adobe acrobat 2017 (20)
- 27 CVE2 critCVSS 7.0NEWmt6761, mt6779, mt6781, mt6833, mt6853, mt6873, mt6877, mt6879, mt6883, mt6885, mt6889, mt6893, mt6895, mt6983, mt8167s, mt8168, mt8175, mt8183, mt8185, mt8362a, mt8365, mt8385, mt8667, mt8675, mt8696, mt8766, mt8768, mt8786, mt8788, mt8789, mt8791, mt8797 (6) · mt6580, mt6735, mt6737, mt6739, mt6753, mt6761, mt6765, mt6768, mt6771, mt6779, mt6781, mt6785, mt6833, mt6853, mt6873, mt6877, mt6879, mt6883, mt6885, mt6889, mt6893, mt6895, mt6983, mt8321, mt8666, mt8667, mt8675, mt8765, mt8766, mt8768, mt8786, mt8788, mt8789, mt8791, mt8797 (3) · mt2731, mt2735, mt6297, mt6725, mt6735, mt6737, mt6739, mt6750, mt6750s, mt6755, mt6757, mt6757p, mt6758, mt6761, mt6762, mt6762d, mt6762m, mt6763, mt6765, mt6765t, mt6767, mt6768, mt6769, mt6769t, mt6769z, mt6771, mt6775, mt6779, mt6781, mt6783, mt6785, mt6785t, mt6789, mt6797, mt6799, mt6833, mt6853, mt6855, mt6873, mt6875, mt6877, mt6879, mt6880, mt6883, mt6885, mt6889, mt6890, mt6891, mt6893, mt6895, mt6983, mt8666, mt8667, mt8675, mt8735a, mt8735b, mt8765, mt8766, mt8768, mt8771, mt8781, mt8786, mt8788, mt8789, mt8791, mt8797 (2)
- 27 CVE2 critCVSS 7.4NEWPoC 8opensuse leap (20) · suse linux enterprise server (11) · suse linux enterprise server for sap applications (10)
- 26 CVE7 critCVSS 7.6NEWnetbackup (26) · netbackup appliance (17) · flex appliance (17)
- 25 CVE2 critCVSS 6.9NEWNuclei 1PoC 4github.com/kubeedge/kubeedge (6) · github.com/argoproj/argo-cd (3) · github.com/grafana/grafana (2)
- 24 CVECVSS 7.1NEWNuclei 2PoC 7red hat enterprise linux (22) · jboss core services (1) · jboss fuse (1)
- 23 CVE2 critCVSS 7.1NEWNuclei 2PoC 5fedora (23)
- 21 CVECVSS 6.6NEWPoC 3linux kernel (21) · linux (6)
- 21 CVECVSS 6.5NEWNuclei 1sap business objects business intelligence platform (5) · netweaver enterprise portal (5) · business one (3)
- 20 CVECVSS 6.4NEWNuclei 1sap netweaver enterprise portal (4) · sap business one (3) · sap s/4hana (2)
- 19 CVECVSS 5.2NEWgaroon (19)
- 19 CVECVSS 5.2NEWcybozu garoon (19)
- 18 CVECVSS 6.9NEWpdf editor (18) · pdf reader (18)
- 18 CVE1 critCVSS 5.4NEWNuclei 2PoC 1gitlab (18)
- 17 CVE1 critCVSS 6.4NEWbsafe crypto-c-micro-edition (10) · bsafe micro-edition-suite (10) · dell bsafe crypto-c micro edition (8)
- 17 CVECVSS 7.4NEWpexip infinity (17)
- 17 CVECVSS 5.3NEWNuclei 1PoC 9garage management system (5) · simple e-learning system (3) · clinics patient management system (2)
- 17 CVE3 critCVSS 7.6NEWNuclei 10PoC 9wifi-repeater firmware (5) · wl-wn535k3 firmware (3) · wn535k3 (3)
- 16 CVE5 critCVSS 8.2NEWPoC 7m3 firmware (8) · ax1806 firmware (5) · ax1803 firmware (2)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | 198 | 10 | 3 | · | NEWKEV 3PoC 25 | chrome (124) · android (73) · google play services software development kit (1) | — | ||
| 2 | ао "нппкт" | 191 | 8 | 3 | 1 | NEWKEV 3Nuclei 1PoC 40 | осон основа оnyx (191) | — | |
| 3 | сообщество свободного программного обеспечения | 175 | 10 | 2 | 5 | NEWKEV 2Nuclei 5PoC 40 | debian gnu/linux (151) · linux (24) · vim (12) | — | |
| 4 | microsoft corp | 162 | 3 | 2 | · | NEWKEV 2PoC 16 | microsoft edge (80) · windows server 20h2 (server core installation) (44) · windows server 2022 (server core installation) (44) | — | |
| 5 | ооо «русбитех-астра» | 138 | 7 | 3 | 1 | NEWKEV 3Nuclei 1PoC 34 | astra linux special edition (137) · astra linux special edition для «эльбрус» (16) · astra linux common edition (3) | — | |
| 6 | ао «концерн вниинс» | 127 | 6 | 3 | · | NEWKEV 3PoC 24 | ос он «стрелец» (127) | — | |
| 7 | google inc | 126 | 7 | 3 | · | NEWKEV 3PoC 25 | google chrome (123) · android (2) · angular (1) | — | |
| 8 | oracle | 94 | 2 | · | 5 | NEWNuclei 5PoC 2 | mysql server (20) · database (13) · weblogic server proxy plug-in (9) | — | |
| 9 | fedoraproject | 91 | 5 | 1 | 2 | NEWKEV 1Nuclei 2PoC 19 | fedora (91) · extra packages for enterprise linux (5) | — | |
| 10 | oracle corp. | 84 | 2 | · | 5 | NEWNuclei 5PoC 2 | mysql server (20) · oracle flexcube universal banking (6) · communications billing and revenue management (6) | — | |
| 11 | oracle corporation | 83 | 1 | · | 5 | NEWNuclei 5PoC 1 | mysql server (22) · flexcube universal banking (6) · banking trade finance (6) | — | |
| 12 | microsoft | 82 | · | 1 | · | NEWKEV 1 | windows server version 20h2 (44) · windows server 2016 (44) · windows server 2022 (44) | — | |
| 13 | maven | 75 | 8 | 1 | 5 | NEWKEV 1Nuclei 5PoC 8 | io.dataease:dataease-plugin-common (4) · org.jenkins-ci.plugins:openshift-deployer (4) · org.jenkins-ci.plugins:git (3) | — | |
| 14 | debian | 68 | 4 | · | · | NEWPoC 18 | debian linux (68) | — | |
| 15 | ibm | 65 | 3 | · | · | NEW | engineering lifecycle optimization - publishing (6) · sterling partner engagement manager on cloud (6) · sterling partner engagement manager (6) | — | |
| 16 | unknown | 65 | 2 | · | 65 | NEWNuclei 65PoC 34 | request a quote (2) · name directory (2) · ninja forms contact form – the drag and drop form builder for wordpress (2) | — | |
| 17 | ао «ивк» | 62 | 2 | · | · | NEWPoC 16 | альт 8 сп (59) · альт сп 10 (6) | — | |
| 18 | ооо «ред софт» | 62 | 2 | · | 3 | NEWNuclei 3PoC 13 | ред ос (53) · ред база данных (9) | — | |
| 19 | cisco | 55 | 5 | · | · | NEWPoC 55 | rv130 firmware (35) · rv215w firmware (35) · rv110w firmware (35) | — | |
| 20 | cisco systems inc. | 55 | 5 | · | · | NEWPoC 55 | rv130w wireless-n multifunction vpn router (35) · rv110w wireless-n vpn (26) · rv215w wireless-n vpn router (26) | — | |
| 21 | netapp | 49 | 3 | · | · | NEWPoC 7 | active iq unified manager (31) · oncommand insight (27) · snapcenter (26) | — | |
| 22 | npm | 49 | 9 | · | 1 | NEWNuclei 1PoC 21 | undici (3) · llhttp (2) · @openzeppelin/contracts (2) | — | |
| 23 | siemens | 48 | 3 | · | 1 | NEWNuclei 1PoC 1 | pads viewer (20) · pads standard/plus viewer (20) · sinec ins (5) | — | |
| 24 | jenkins | 44 | · | · | 1 | NEWNuclei 1 | openshift deployer (4) · git (3) · coverity (3) | — | |
| 25 | cd foundation | 42 | · | · | 1 | NEWNuclei 1 | jenkins deployer framework plugin (4) · jenkins coverity plugin (3) · jenkins openshift deployer plugin (3) | — | |
| 26 | jenkins project | 42 | · | · | 1 | NEWNuclei 1 | jenkins openshift deployer plugin (4) · jenkins coverity plugin (3) · jenkins git plugin (3) | — | |
| 27 | samsung mobile | 38 | · | · | · | NEW | samsung mobile devices (29) · galaxy store (3) · camera (1) | — | |
| 28 | packagist | 35 | 2 | · | 6 | NEWNuclei 6PoC 11 | microweber/microweber (6) · moodle/moodle (5) · idno/known (4) | — | |
| 29 | ао «нтц ит роса» | 35 | · | · | 1 | NEWNuclei 1PoC 8 | роса хром (24) · rosa virtualization (7) · роса кобальт (4) | — | |
| 30 | adobe | 34 | · | · | · | NEW | acrobat (21) · acrobat dc (21) · acrobat reader (21) | — | |
| 31 | pypi | 34 | 12 | 1 | 2 | NEWKEV 1Nuclei 2PoC 9 | pypi (2) · ujson (2) · untangle (2) | — | |
| 32 | adobe systems inc. | 33 | · | · | · | NEW | adobe acrobat reader document cloud (20) · adobe acrobat reader 2017 (20) · adobe acrobat 2017 (20) | — | |
| 33 | mediatek, inc. | 27 | 2 | · | · | NEW | mt6761, mt6779, mt6781, mt6833, mt6853, mt6873, mt6877, mt6879, mt6883, mt6885, mt6889, mt6893, mt6895, mt6983, mt8167s, mt8168, mt8175, mt8183, mt8185, mt8362a, mt8365, mt8385, mt8667, mt8675, mt8696, mt8766, mt8768, mt8786, mt8788, mt8789, mt8791, mt8797 (6) · mt6580, mt6735, mt6737, mt6739, mt6753, mt6761, mt6765, mt6768, mt6771, mt6779, mt6781, mt6785, mt6833, mt6853, mt6873, mt6877, mt6879, mt6883, mt6885, mt6889, mt6893, mt6895, mt6983, mt8321, mt8666, mt8667, mt8675, mt8765, mt8766, mt8768, mt8786, mt8788, mt8789, mt8791, mt8797 (3) · mt2731, mt2735, mt6297, mt6725, mt6735, mt6737, mt6739, mt6750, mt6750s, mt6755, mt6757, mt6757p, mt6758, mt6761, mt6762, mt6762d, mt6762m, mt6763, mt6765, mt6765t, mt6767, mt6768, mt6769, mt6769t, mt6769z, mt6771, mt6775, mt6779, mt6781, mt6783, mt6785, mt6785t, mt6789, mt6797, mt6799, mt6833, mt6853, mt6855, mt6873, mt6875, mt6877, mt6879, mt6880, mt6883, mt6885, mt6889, mt6890, mt6891, mt6893, mt6895, mt6983, mt8666, mt8667, mt8675, mt8735a, mt8735b, mt8765, mt8766, mt8768, mt8771, mt8781, mt8786, mt8788, mt8789, mt8791, mt8797 (2) | — | |
| 34 | novell inc. | 27 | 2 | · | · | NEWPoC 8 | opensuse leap (20) · suse linux enterprise server (11) · suse linux enterprise server for sap applications (10) | — | |
| 35 | veritas | 26 | 7 | · | · | NEW | netbackup (26) · netbackup appliance (17) · flex appliance (17) | — | |
| 36 | go | 25 | 2 | · | 1 | NEWNuclei 1PoC 4 | github.com/kubeedge/kubeedge (6) · github.com/argoproj/argo-cd (3) · github.com/grafana/grafana (2) | — | |
| 37 | red hat inc. | 24 | · | · | 2 | NEWNuclei 2PoC 7 | red hat enterprise linux (22) · jboss core services (1) · jboss fuse (1) | — | |
| 38 | fedora project | 23 | 2 | · | 2 | NEWNuclei 2PoC 5 | fedora (23) | — | |
| 39 | linux | 21 | · | · | · | NEWPoC 3 | linux kernel (21) · linux (6) | — | |
| 40 | sap | 21 | · | · | 1 | NEWNuclei 1 | sap business objects business intelligence platform (5) · netweaver enterprise portal (5) · business one (3) | — | |
| 41 | sap se | 20 | · | · | 1 | NEWNuclei 1 | sap netweaver enterprise portal (4) · sap business one (3) · sap s/4hana (2) | — | |
| 42 | cybozu | 19 | · | · | · | NEW | garoon (19) | — | |
| 43 | cybozu, inc. | 19 | · | · | · | NEW | cybozu garoon (19) | — | |
| 44 | foxit | 18 | · | · | · | NEW | pdf editor (18) · pdf reader (18) | — | |
| 45 | gitlab | 18 | 1 | · | 2 | NEWNuclei 2PoC 1 | gitlab (18) | — | |
| 46 | dell | 17 | 1 | · | · | NEW | bsafe crypto-c-micro-edition (10) · bsafe micro-edition-suite (10) · dell bsafe crypto-c micro edition (8) | — | |
| 47 | pexip | 17 | · | · | · | NEW | pexip infinity (17) | — | |
| 48 | sourcecodester | 17 | · | · | 1 | NEWNuclei 1PoC 9 | garage management system (5) · simple e-learning system (3) · clinics patient management system (2) | — | |
| 49 | wavlink | 17 | 3 | · | 10 | NEWNuclei 10PoC 9 | wifi-repeater firmware (5) · wl-wn535k3 firmware (3) · wn535k3 (3) | — | |
| 50 | tenda | 16 | 5 | · | · | NEWPoC 7 | m3 firmware (8) · ax1806 firmware (5) · ax1803 firmware (2) | — |