Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-494Definition on MITRE ↗Clear

4 results

CVE-2026-3502
2026-04-02
TrueConf Client Download of Code Without Integrity Check Vulnerability
TrueConf

TrueConf Client contains a download of code without integrity check vulnerability. An attacker who is able to influence the update delivery path can substitute a tampered update payload. If the payload is executed or installed by the updater, this may result in arbitrary code execution in the context of the updating process or user.

CWE-494
Refstrueconf.comtrueconf.comnvd.nist.gov
Federal remediation due 2026-04-16
CVE-2025-15556
2026-02-12
Notepad++ Download of Code Without Integrity Check Vulnerability
Notepad++

Notepad++ when using the WinGUp updater, contains a download of code without integrity check vulnerability that could allow an attacker to intercept or redirect update traffic to download and execute an attacker-controlled installer. This could lead to arbitrary code execution with the privileges of the user.

CWE-494
Refsnotepad-plus-plus.orgcommunity.notepad-plus-plus.orgnvd.nist.gov
Federal remediation due 2026-03-05
CVE-2022-40799
2025-08-05
D-Link DNR-322L Download of Code Without Integrity Check Vulnerability
D-Link

D-Link DNR-322L contains a download of code without integrity check vulnerability that could allow an authenticated attacker to execute OS level commands on the device. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

CWE-494
Refsdlink.comnvd.nist.gov
Federal remediation due 2025-08-26
CVE-2021-44168
2021-12-10
Fortinet FortiOS Arbitrary File Download
Fortinet

Fortinet FortiOS "execute restore src-vis" downloads code without integrity checking, allowing an attacker to arbitrarily download files.

CWE-494
Refsnvd.nist.gov
Federal remediation due 2021-12-24