Skip to main content

32-Month Update with CISA KEV

·188 words·1 min
Posts cisa kev vulnmgmt
zd
Author
zd
cli-geek, strategist
Table of Contents
CISA_KEV - This article is part of a series.
Part 6: This Article

CISA KEV has been released 32 months. Today, there are total of 1126 (+23) CVE been added to CISA KEV catalog.

CISA Catalog of Known Exploited Vulnerabilities [ 2024.06.26/1126 ]

Updates
#

As of today, there are total of 1118 CVE have overdue, and another 8 will due in July 2024.

Highlights (within CISA KEV catalog):

  • The top-5 vendors with highest number of vulnerabilities remain the same (total 179 vendors).
  • The top-5 vendors hold 558 (around 49%) of all the 1126 CVEs.
  • The top-5 vulnerable products remain the same (total 463 products).
  • There are 242 (or ~21%) CVE found at the top-5 vulnerable products.
  • The mean value increases to 93.83 (was 91.92).
  • The top-5 months where distribution of KEV is higher than mean remain the same (Mar, Apr, May Jun, Nov).

Current State
#

MicrosoftAppleCiscoAdobeGoogleothers
28775716758568

WindowsMultiple Products (Apple)Internet ExplorerChromium V8Flash Playerothers
11438313029884

mean_val=93.83333333333333

JanFebMarAprMayJunJulAugSepOctNovDec
28321321642411606646474512540
CISA_KEV - This article is part of a series.
Part 6: This Article

Related

30-Month Update with CISA KEV
·188 words·1 min
Posts cisa kev vulnmgmt
Analysis updates of CISA KEV catalog.
State of KEV After 28 months
·187 words·1 min
Posts cisa kev vulnmgmt
Analysis of CISA KEV catalog.
State of KEV After 26 months
·184 words·1 min
Posts cisa kev vulnmgmt
Summarize CISA KEV cataglog by end of 2023.