month report
September 2025
Data as of Jun 4, 2026, 13:26 UTCSnapshot v1 Sources NVD+CISA KEV+EPSS+Nuclei templates Methodology →
September 2025 closed with 4,664 published CVEs. 278 criticals, 16 added to CISA KEV (1 ransomware-linked). linux led volume, mostly via linux. Biggest breakout: itsourcecode at ×13.8 their 12-month median. Top weakness class — CWE-79 (696 CVE). 10 vendors cracked the top-100 for the first time.
Total CVEs
4,664
— MoM— YoY
Severity mix
278 / 1,422
critical / high
KEV added
16
1 ransomware-linked
Nuclei coverage
18.5%
862 CVEs with templates
Time to exploit
How fast the community ships detection after a CVE drops.
Days → Nuclei (median)
165.1
n=862
Within 7 days
0.0%
Within 30 days
0.0%
Days → KEV (median)
16
n=14
Detection gap
KEV pressure, no Nuclei coverage
September 2025 · vendors with active exploitation listed by CISA but no public detection template.
- KEV 4google inc86 CVE
- KEV 2ооо «русбитех-астра»288 CVE
- KEV 2google178 CVE
- KEV 2samsung mobile40 CVE
- KEV 2samsung39 CVE
- KEV 1ао «ивк»174 CVE
- KEV 1debian139 CVE
- KEV 1ао «сбертех»126 CVE
Weakness × Vendor
What's spreading where in September 2025
Cells shaded by share of vendor's hottest weakness. Click any cell to open the CWE history.
79XSS89SQL Injection74Injection862Missing Authorization476NULL Pointer Dereference352CSRF401CWE-401416Use After Free94Code Injection284CWE-284linux14112479сообщество свободного программного обеспечения329469622ооо «русбитех-астра»1143382611red hat inc.384333canonical ltd.1264120google2111103ао «ивк»1258191debian25513ооо «ред софт»222191ао «сбертех»24717microsoft corp2918npm1112163
Breakout vendors
CVE count ≥3× their own 12-period median.
- 13.8×itsourcecode55 CVE
- 11.6×debian139 CVE
- 7.8×fabian31 CVE
- 5.4×angeljudesuarez27 CVE
- 5.0×tenda45 CVE
- 3.8×phpgurukul49 CVE
- 3.1×google inc86 CVE
- 3.0×d-link24 CVE
- 3.0×linuxfoundation24 CVE
First time in top-100
Vendors never in top-100 in the prior 24 periods.
- #27vasion41 CVE
- #33apprain32 CVE
- #45portabilis26 CVE
- #54akinsoft21 CVE
- #57wavlink19 CVE
- #63wavlink technology ltd.16 CVE
- #73dragonflyoss11 CVE
- #74jeecg11 CVE
- #77bmc10 CVE
- #78copeland lp10 CVE
Top vendors
Ranked by distinct CVE count this period.
- 737 CVECVSS 6.1PoC 3linux (737) · linux kernel (737)
- 540 CVE9 critCVSS 6.2Nuclei 2PoC 13linux (484) · debian gnu/linux (292) · pytorch (12)
- 288 CVE6 critCVSS 6.5KEV 2PoC 10astra linux special edition (280) · astra linux common edition (42) · parsec (31)
- 256 CVE3 critCVSS 6.3Nuclei 1PoC 2red hat enterprise linux (251) · openshift container platform (2) · red hat virtualization (2)
- 198 CVE1 critCVSS 6.2PoC 2ubuntu (198)
- 178 CVE9 critCVSS 7.0KEV 2PoC 3android (164) · chrome (12) · tensorflow (2)
- 174 CVE2 critCVSS 6.4KEV 1PoC 5альт сп 10 (174) · альт 8 сп (57)
- 139 CVECVSS 6.4×11.6KEV 1PoC 3debian linux (139)
- 133 CVE7 critCVSS 6.1KEV 2Nuclei 1PoC 15ред ос (133) · ред база данных (4)
- 126 CVECVSS 6.2KEV 1PoC 7platform v sberlinux os server (126)
- 106 CVE5 critCVSS 7.1KEV 1PoC 6windows server 2025 (server core installation) (59) · windows server 2025 (59) · windows server 2022, 23h2 edition (server core installation) (57)
- 100 CVE12 critCVSS 7.5Nuclei 5PoC 33flowise (6) · @anthropic-ai/claude-code (4) · express-xss-sanitizer (2)
- 99 CVE4 critCVSS 7.1PoC 5windows server 2025 (server core installation) (59) · windows server 2025 (59) · windows server 2022 23h2 (57)
- 90 CVE6 critCVSS 6.1Nuclei 4PoC 1com.liferay.portal:release.portal.bom (8) · com.liferay.portal:com.liferay.portal.impl (5) · org.jenkins-ci.main:jenkins-core (3)
- 86 CVE2 critCVSS 7.1×3.1KEV 4PoC 2android (68) · google chrome (13) · android studio (4)
- 83 CVE6 critCVSS 6.4macos (75) · ios and ipados (29) · ipados (28)
- 72 CVECVSS 6.8PoC 72online learning management system (18) · grocery sales and inventory system (15) · computer sales and inventory system (10)
- 69 CVECVSS 6.6PoC 67pet grooming management software (20) · online student file management system (8) · student grading system (7)
- 56 CVE4 critCVSS 6.9Nuclei 2PoC 10picklescan (6) · ethyca-fides (4) · transformers (3)
- 55 CVE11 critCVSS 6.8Nuclei 4PoC 8github.com/dragonflyoss/dragonfly (11) · d7y.io/dragonfly/v2 (11) · github.com/mattermost/mattermost/server/v8 (6)
- 55 CVECVSS 6.4×13.8PoC 54pos point of sale system (9) · student information management system (8) · open source job portal (7)
- 50 CVECVSS 5.9dxp (50) · portal (49) · digital experience platform (49)
- 49 CVE9 critCVSS 7.1×3.8PoC 34online fire reporting system (9) · beauty parlour management system (9) · small crm (5)
- 47 CVE6 critCVSS 7.3KEV 1PoC 4осон основа оnyx (47)
- 45 CVE2 critCVSS 7.4×5.0PoC 22g3 firmware (13) · f3 firmware (5) · ac18 firmware (4)
- 44 CVECVSS 5.7concert software (7) · concert (7) · watsonx.data (4)
- 41 CVE19 critCVSS 8.5NEWPoC 19virtual appliance application (41) · virtual appliance host (41) · print virtual appliance host (41)
- 40 CVECVSS 5.7KEV 2samsung mobile devices (28) · s assistant (3) · samsung calendar (1)
- 40 CVE2 critCVSS 7.5PoC 19tenda g3 (13) · tenda f3 (5) · tenda ac9 (3)
- 39 CVECVSS 6.0KEV 2android (26) · sassistant (3) · notes (2)
- 36 CVE1 critCVSS 5.7nvidia cuda toolkit (12) · cuda toolkit (10) · triton inference server (5)
- 34 CVECVSS 6.5PoC 32hostel management system (8) · simple scheduling system (6) · online bidding system (6)
- 32 CVE3 critCVSS 5.8NEWapprain (32) · apprain cmf (32)
- 32 CVE2 critCVSS 6.2KEV 3Nuclei 1PoC 32cisco ios xe software (14) · ios (5) · cisco ios xr software (4)
- 31 CVECVSS 6.7×7.8PoC 29online bidding system (6) · simple scheduling system (6) · online hotel reservation system (5)
- 30 CVE5 critCVSS 6.6ipados (23) · ios (23) · macos (22)
- 30 CVECVSS 7.8cobalt (22) · graphite (8)
- 30 CVECVSS 7.8cobalt (22) · graphite (8)
- 28 CVECVSS 5.7amd ryzen™ 7030 series mobile processors with radeon™ graphics (12) · amd ryzen™ 5000 series mobile processors with radeon™ graphics (12) · amd ryzen™ 4000 series mobile processors with radeon™ graphics (11)
- 28 CVE1 critCVSS 5.8nvidia cuda toolkit (12) · megatron-lm (4) · nvidia triton inference server (4)
- 28 CVE1 critCVSS 6.0KEV 1Nuclei 2PoC 4mautic/core (4) · typo3/cms-core (3) · typo3/cms-backend (3)
- 27 CVECVSS 6.7×5.4PoC 26hostel management system (9) · open source job portal (7) · sports management system (6)
- 27 CVECVSS 6.7PoC 22dir-823x (12) · dir-852 (4) · di-8003g (2)
- 26 CVE1 critCVSS 5.3KEV 2Nuclei 1PoC 26cisco ios xe (5) · cisco evolved programmable network manager (3) · cisco ios xr (3)
- 26 CVECVSS 5.2NEWPoC 24i-educar (26)
- 25 CVECVSS 6.9PoC 20dir-823x firmware (12) · dir-852 firmware (4) · dir-825 firmware (2)
- 25 CVECVSS 5.8ibm security verify information queue (3) · diamondback tape (2) · ibm license metric tool (2)
- 24 CVE2 critCVSS 6.9KEV 1Nuclei 3adobe experience manager (7) · experience manager (7) · substance3d - viewer (3)
- 24 CVECVSS 6.7×3.0PoC 19dir-823x (11) · dir-852 (4) · di-8003g (2)
- 24 CVE2 critCVSS 6.4×3.0pytorch (12) · dragonfly (11) · yocto (1)
| # | Vendor | CVEs | Crit | KEV | Nuclei | Signals | Top products | Δ | |
|---|---|---|---|---|---|---|---|---|---|
| 1 | linux | 737 | · | · | · | PoC 3 | linux (737) · linux kernel (737) | — | |
| 2 | сообщество свободного программного обеспечения | 540 | 9 | · | 2 | Nuclei 2PoC 13 | linux (484) · debian gnu/linux (292) · pytorch (12) | — | |
| 3 | ооо «русбитех-астра» | 288 | 6 | 2 | · | KEV 2PoC 10 | astra linux special edition (280) · astra linux common edition (42) · parsec (31) | — | |
| 4 | red hat inc. | 256 | 3 | · | 1 | Nuclei 1PoC 2 | red hat enterprise linux (251) · openshift container platform (2) · red hat virtualization (2) | — | |
| 5 | canonical ltd. | 198 | 1 | · | · | PoC 2 | ubuntu (198) | — | |
| 6 | 178 | 9 | 2 | · | KEV 2PoC 3 | android (164) · chrome (12) · tensorflow (2) | — | ||
| 7 | ао «ивк» | 174 | 2 | 1 | · | KEV 1PoC 5 | альт сп 10 (174) · альт 8 сп (57) | — | |
| 8 | debian | 139 | · | 1 | · | ×11.6KEV 1PoC 3 | debian linux (139) | — | |
| 9 | ооо «ред софт» | 133 | 7 | 2 | 1 | KEV 2Nuclei 1PoC 15 | ред ос (133) · ред база данных (4) | — | |
| 10 | ао «сбертех» | 126 | · | 1 | · | KEV 1PoC 7 | platform v sberlinux os server (126) | — | |
| 11 | microsoft corp | 106 | 5 | 1 | · | KEV 1PoC 6 | windows server 2025 (server core installation) (59) · windows server 2025 (59) · windows server 2022, 23h2 edition (server core installation) (57) | — | |
| 12 | npm | 100 | 12 | · | 5 | Nuclei 5PoC 33 | flowise (6) · @anthropic-ai/claude-code (4) · express-xss-sanitizer (2) | — | |
| 13 | microsoft | 99 | 4 | · | · | PoC 5 | windows server 2025 (server core installation) (59) · windows server 2025 (59) · windows server 2022 23h2 (57) | — | |
| 14 | maven | 90 | 6 | · | 4 | Nuclei 4PoC 1 | com.liferay.portal:release.portal.bom (8) · com.liferay.portal:com.liferay.portal.impl (5) · org.jenkins-ci.main:jenkins-core (3) | — | |
| 15 | google inc | 86 | 2 | 4 | · | ×3.1KEV 4PoC 2 | android (68) · google chrome (13) · android studio (4) | — | |
| 16 | apple | 83 | 6 | · | · | macos (75) · ios and ipados (29) · ipados (28) | — | ||
| 17 | campcodes | 72 | · | · | · | PoC 72 | online learning management system (18) · grocery sales and inventory system (15) · computer sales and inventory system (10) | — | |
| 18 | sourcecodester | 69 | · | · | · | PoC 67 | pet grooming management software (20) · online student file management system (8) · student grading system (7) | — | |
| 19 | pypi | 56 | 4 | · | 2 | Nuclei 2PoC 10 | picklescan (6) · ethyca-fides (4) · transformers (3) | — | |
| 20 | go | 55 | 11 | · | 4 | Nuclei 4PoC 8 | github.com/dragonflyoss/dragonfly (11) · d7y.io/dragonfly/v2 (11) · github.com/mattermost/mattermost/server/v8 (6) | — | |
| 21 | itsourcecode | 55 | · | · | · | ×13.8PoC 54 | pos point of sale system (9) · student information management system (8) · open source job portal (7) | — | |
| 22 | liferay | 50 | · | · | · | dxp (50) · portal (49) · digital experience platform (49) | — | ||
| 23 | phpgurukul | 49 | 9 | · | · | ×3.8PoC 34 | online fire reporting system (9) · beauty parlour management system (9) · small crm (5) | — | |
| 24 | ао "нппкт" | 47 | 6 | 1 | · | KEV 1PoC 4 | осон основа оnyx (47) | — | |
| 25 | tenda | 45 | 2 | · | · | ×5.0PoC 22 | g3 firmware (13) · f3 firmware (5) · ac18 firmware (4) | — | |
| 26 | ibm | 44 | · | · | · | concert software (7) · concert (7) · watsonx.data (4) | — | ||
| 27 | vasion | 41 | 19 | · | · | NEWPoC 19 | virtual appliance application (41) · virtual appliance host (41) · print virtual appliance host (41) | — | |
| 28 | samsung mobile | 40 | · | 2 | · | KEV 2 | samsung mobile devices (28) · s assistant (3) · samsung calendar (1) | — | |
| 29 | shenzhen tenda technology co., ltd. | 40 | 2 | · | · | PoC 19 | tenda g3 (13) · tenda f3 (5) · tenda ac9 (3) | — | |
| 30 | samsung | 39 | · | 2 | · | KEV 2 | android (26) · sassistant (3) · notes (2) | — | |
| 31 | nvidia | 36 | 1 | · | · | nvidia cuda toolkit (12) · cuda toolkit (10) · triton inference server (5) | — | ||
| 32 | code-projects | 34 | · | · | · | PoC 32 | hostel management system (8) · simple scheduling system (6) · online bidding system (6) | — | |
| 33 | apprain | 32 | 3 | · | · | NEW | apprain (32) · apprain cmf (32) | — | |
| 34 | cisco | 32 | 2 | 3 | 1 | KEV 3Nuclei 1PoC 32 | cisco ios xe software (14) · ios (5) · cisco ios xr software (4) | — | |
| 35 | fabian | 31 | · | · | · | ×7.8PoC 29 | online bidding system (6) · simple scheduling system (6) · online hotel reservation system (5) | — | |
| 36 | apple inc. | 30 | 5 | · | · | ipados (23) · ios (23) · macos (22) | — | ||
| 37 | ashlar | 30 | · | · | · | cobalt (22) · graphite (8) | — | ||
| 38 | ashlar-vellum | 30 | · | · | · | cobalt (22) · graphite (8) | — | ||
| 39 | amd | 28 | · | · | · | amd ryzen™ 7030 series mobile processors with radeon™ graphics (12) · amd ryzen™ 5000 series mobile processors with radeon™ graphics (12) · amd ryzen™ 4000 series mobile processors with radeon™ graphics (11) | — | ||
| 40 | nvidia corp. | 28 | 1 | · | · | nvidia cuda toolkit (12) · megatron-lm (4) · nvidia triton inference server (4) | — | ||
| 41 | packagist | 28 | 1 | 1 | 2 | KEV 1Nuclei 2PoC 4 | mautic/core (4) · typo3/cms-core (3) · typo3/cms-backend (3) | — | |
| 42 | angeljudesuarez | 27 | · | · | · | ×5.4PoC 26 | hostel management system (9) · open source job portal (7) · sports management system (6) | — | |
| 43 | d-link corp. | 27 | · | · | · | PoC 22 | dir-823x (12) · dir-852 (4) · di-8003g (2) | — | |
| 44 | cisco systems inc. | 26 | 1 | 2 | 1 | KEV 2Nuclei 1PoC 26 | cisco ios xe (5) · cisco evolved programmable network manager (3) · cisco ios xr (3) | — | |
| 45 | portabilis | 26 | · | · | · | NEWPoC 24 | i-educar (26) | — | |
| 46 | dlink | 25 | · | · | · | PoC 20 | dir-823x firmware (12) · dir-852 firmware (4) · dir-825 firmware (2) | — | |
| 47 | ibm corp. | 25 | · | · | · | ibm security verify information queue (3) · diamondback tape (2) · ibm license metric tool (2) | — | ||
| 48 | adobe | 24 | 2 | 1 | 3 | KEV 1Nuclei 3 | adobe experience manager (7) · experience manager (7) · substance3d - viewer (3) | — | |
| 49 | d-link | 24 | · | · | · | ×3.0PoC 19 | dir-823x (11) · dir-852 (4) · di-8003g (2) | — | |
| 50 | linuxfoundation | 24 | 2 | · | · | ×3.0 | pytorch (12) · dragonfly (11) · yocto (1) | — |