<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/categories/web-middleware.xml</id>
  <title>Exploit Radar: Web and application servers</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities in the “Web and application servers” category (indicative classification).</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/categories/web-middleware.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/produits/web-middleware/"/>
  <updated>2026-09-24T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-5430/</id>
    <title>CVE-2026-5430 — WSO2 API Manager, Identity Server, Integrator</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-5430/"/>
    <updated>2026-09-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from WSO2; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on September 24, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-21962/</id>
    <title>CVE-2026-21962 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-21962/"/>
    <updated>2026-08-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 24, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-34486/</id>
    <title>CVE-2026-34486 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-34486/"/>
    <updated>2026-08-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on August 4, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-48282/</id>
    <title>CVE-2026-48282 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-48282/"/>
    <updated>2026-07-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. Start with internet-facing devices. CISA also asks you to hunt for signs of compromise: patching is not enough if the device has already been breached. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on July 7, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-54420/</id>
    <title>CVE-2026-54420 — LiteSpeed cPanel Plugin</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-54420/"/>
    <updated>2026-06-15T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from LiteSpeed; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on June 15, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-21182/</id>
    <title>CVE-2024-21182 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-21182/"/>
    <updated>2026-06-01T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. For cloud services, follow the guidance from Oracle. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on June 1, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-48172/</id>
    <title>CVE-2026-48172 — LiteSpeed cPanel Plugin</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-48172/"/>
    <updated>2026-05-26T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from LiteSpeed; if none are available, stop using the product. For cloud services, follow the guidance from LiteSpeed. CISA deadline: 3 days. Added to CISA’s catalog of exploited vulnerabilities on May 26, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-41940/</id>
    <title>CVE-2026-41940 — cPanel (WebPros) cPanel &amp; WHM (WP Squared)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-41940/"/>
    <updated>2026-04-30T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from cPanel (WebPros); if none are available, stop using the product. For cloud services, follow the guidance from cPanel (WebPros). CISA deadline: 3 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 30, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-34197/</id>
    <title>CVE-2026-34197 — Apache ActiveMQ</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-34197/"/>
    <updated>2026-04-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. For cloud services, follow the guidance from Apache. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on April 16, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-48703/</id>
    <title>CVE-2025-48703 — CWP (Control Web Panel / CentOS Web Panel) Control Web Panel</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-48703/"/>
    <updated>2025-11-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from CWP (Control Web Panel / CentOS Web Panel); if none are available, stop using the product. For cloud services, follow the guidance from CWP (Control Web Panel / CentOS Web Panel). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on November 4, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-38475/</id>
    <title>CVE-2024-38475 — Apache HTTP Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-38475/"/>
    <updated>2025-05-01T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. For cloud services, follow the guidance from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 1, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-24813/</id>
    <title>CVE-2025-24813 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-24813/"/>
    <updated>2025-04-01T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. For cloud services, follow the guidance from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on April 1, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-3066/</id>
    <title>CVE-2017-3066 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-3066/"/>
    <updated>2025-02-24T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 24, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-2883/</id>
    <title>CVE-2020-2883 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-2883/"/>
    <updated>2025-01-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 7, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-20767/</id>
    <title>CVE-2024-20767 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-20767/"/>
    <updated>2024-12-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on December 16, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-51378/</id>
    <title>CVE-2024-51378 — CyberPanel (CyberPersons) CyberPanel</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-51378/"/>
    <updated>2024-12-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from CyberPanel (CyberPersons); if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on December 4, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-16278/</id>
    <title>CVE-2019-16278 — Nostromo nhttpd</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-16278/"/>
    <updated>2024-11-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Nostromo; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on November 7, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-51567/</id>
    <title>CVE-2024-51567 — CyberPanel (CyberPersons) CyberPanel</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-51567/"/>
    <updated>2024-11-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from CyberPanel (CyberPersons); if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on November 7, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-14644/</id>
    <title>CVE-2020-14644 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-14644/"/>
    <updated>2024-09-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 18, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-3506/</id>
    <title>CVE-2017-3506 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-3506/"/>
    <updated>2024-06-03T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on June 3, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-29300/</id>
    <title>CVE-2023-29300 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-29300/"/>
    <updated>2024-01-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on January 8, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-38203/</id>
    <title>CVE-2023-38203 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-38203/"/>
    <updated>2024-01-08T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on January 8, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-2551/</id>
    <title>CVE-2020-2551 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-2551/"/>
    <updated>2023-11-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on November 16, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-46604/</id>
    <title>CVE-2023-46604 — Apache ActiveMQ</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-46604/"/>
    <updated>2023-11-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on November 2, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-44487/</id>
    <title>CVE-2023-44487 — Protocoles (IETF) HTTP/2</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-44487/"/>
    <updated>2023-10-10T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Protocoles (IETF); if none are available, stop using the product. For cloud services, follow the guidance from Protocoles (IETF). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on October 10, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-33246/</id>
    <title>CVE-2023-33246 — Apache RocketMQ</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-33246/"/>
    <updated>2023-09-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Apache; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 6, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-26359/</id>
    <title>CVE-2023-26359 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-26359/"/>
    <updated>2023-08-21T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 21, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-29298/</id>
    <title>CVE-2023-29298 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-29298/"/>
    <updated>2023-07-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 20, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-38205/</id>
    <title>CVE-2023-38205 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-38205/"/>
    <updated>2023-07-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Adobe; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 20, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-8735/</id>
    <title>CVE-2016-8735 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-8735/"/>
    <updated>2023-05-12T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 12, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-21839/</id>
    <title>CVE-2023-21839 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-21839/"/>
    <updated>2023-05-01T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 1, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-26360/</id>
    <title>CVE-2023-26360 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-26360/"/>
    <updated>2023-03-15T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 15, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-44877/</id>
    <title>CVE-2022-44877 — CWP (Control Web Panel / CentOS Web Panel) Control Web Panel</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-44877/"/>
    <updated>2023-01-17T00:00:00Z</updated>
    <summary type="text">Apply the security update from CWP (Control Web Panel / CentOS Web Panel). CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 17, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-2628/</id>
    <title>CVE-2018-2628 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-2628/"/>
    <updated>2022-09-08T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 8, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-24112/</id>
    <title>CVE-2022-24112 — Apache APISIX</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-24112/"/>
    <updated>2022-08-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2012-1710/</id>
    <title>CVE-2012-1710 — Oracle Fusion Middleware</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2012-1710/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-1428/</id>
    <title>CVE-2010-1428 — Red Hat JBoss Application Server / EAP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-1428/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Red Hat. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-0738/</id>
    <title>CVE-2010-0738 — Red Hat JBoss Application Server / EAP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-0738/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Red Hat. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-29464/</id>
    <title>CVE-2022-29464 — WSO2 API Manager, Identity Server, Integrator</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-29464/"/>
    <updated>2022-04-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from WSO2. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on April 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-2861/</id>
    <title>CVE-2010-2861 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-2861/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-15107/</id>
    <title>CVE-2019-15107 — Webmin</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-15107/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Webmin. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-12615/</id>
    <title>CVE-2017-12615 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-12615/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-12617/</id>
    <title>CVE-2017-12617 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-12617/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0625/</id>
    <title>CVE-2013-0625 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0625/"/>
    <updated>2022-03-07T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 184 days. Added to CISA’s catalog of exploited vulnerabilities on March 7, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0629/</id>
    <title>CVE-2013-0629 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0629/"/>
    <updated>2022-03-07T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 184 days. Added to CISA’s catalog of exploited vulnerabilities on March 7, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0631/</id>
    <title>CVE-2013-0631 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0631/"/>
    <updated>2022-03-07T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 184 days. Added to CISA’s catalog of exploited vulnerabilities on March 7, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0632/</id>
    <title>CVE-2013-0632 — Adobe ColdFusion</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0632/"/>
    <updated>2022-03-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-1938/</id>
    <title>CVE-2020-1938 — Apache Tomcat</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-1938/"/>
    <updated>2022-03-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-3088/</id>
    <title>CVE-2016-3088 — Apache ActiveMQ</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-3088/"/>
    <updated>2022-02-10T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 181 days. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-10271/</id>
    <title>CVE-2017-10271 — Oracle WebLogic Server</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-10271/"/>
    <updated>2022-02-10T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 181 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 10, 2022.</summary>
  </entry>
</feed>
