Rosetta Intel
Datasets/KEV CatalogThreat Actors
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1676 entries·352 Ransomware·Updated 2026-08-25

CWE-693Definition on MITRE ↗Clear

10 results

CVE-2026-32202
2026-04-28
Microsoft Windows Protection Mechanism Failure Vulnerability
Microsoft

Microsoft Windows Shell contains a protection mechanism failure vulnerability that allows an unauthorized attacker to perform spoofing over a network.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2026-05-12
CVE-2025-40536
2026-02-12
SolarWinds Web Help Desk Security Control Bypass Vulnerability
SolarWinds

SolarWinds Web Help Desk contains a security control bypass vulnerability that could allow an unauthenticated attacker to gain access to certain restricted functionality.

CWE-693
Refsdocumentation.solarwinds.comsolarwinds.comnvd.nist.gov
Federal remediation due 2026-02-15
CVE-2026-21513
2026-02-10
Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability
Microsoft / Windows

Microsoft MSHTML Framework contains a protection mechanism failure vulnerability that could allow an unauthorized attacker to bypass a security feature over a network.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2026-03-03
CVE-2026-21510
2026-02-10
Microsoft Windows Shell Protection Mechanism Failure Vulnerability
Microsoft

Microsoft Windows Shell contains a protection mechanism failure vulnerability that could allow an unauthorized attacker to bypass a security feature over a network.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2026-03-03
CVE-2025-0411
2025-02-06
7-Zip Mark of the Web Bypass Vulnerability
7-Zip

7-Zip contains a protection mechanism failure vulnerability that allows remote attackers to bypass the Mark-of-the-Web security feature to execute arbitrary code in the context of the current user.

CWE-693
Refs7-zip.orgnvd.nist.gov
Federal remediation due 2025-02-27
CVE-2024-38226
2024-09-10
Microsoft Publisher Protection Mechanism Failure Vulnerability
Microsoft

Microsoft Publisher contains a protection mechanism failure vulnerability that allows attacker to bypass Office macro policies used to block untrusted or malicious files.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-10-01
CVE-2024-38217
2024-09-10
Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
Microsoft

Microsoft Windows Mark of the Web (MOTW) contains a protection mechanism failure vulnerability that allows an attacker to bypass MOTW-based defenses. This can result in a limited loss of integrity and availability of security features such as Protected View in Microsoft Office, which rely on MOTW tagging.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-10-01
CVE-2024-38213
2024-08-13
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Microsoft

Microsoft Windows SmartScreen contains a security feature bypass vulnerability that allows an attacker to bypass the SmartScreen user experience via a malicious file.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-09-03
CVE-2024-29988
2024-04-30
Microsoft SmartScreen Prompt Security Feature Bypass Vulnerability
Microsoft

Microsoft SmartScreen Prompt contains a security feature bypass vulnerability that allows an attacker to bypass the Mark of the Web (MotW) feature. This vulnerability can be chained with CVE-2023-38831 and CVE-2024-21412 to execute a malicious file.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-05-21
CVE-2024-21412
2024-02-13
Microsoft Windows Internet Shortcut Files Security Feature Bypass VulnerabilityRansomware
Microsoft

Microsoft Windows Internet Shortcut Files contains an unspecified vulnerability that allows for a security feature bypass.

CWE-693
Refsmsrc.microsoft.comnvd.nist.gov
Federal remediation due 2024-03-05