Exultia.tech

Global Vulnerability & Threat Statistics

Live telemetry and empirical metrics synthesized across 111 synchronized upstream security feeds, 395,000+ CVE records, and actively weaponized exploitation campaigns.

Ingested Records
18.5M+
Across all 111 streams
Active Feeds
111
Authoritative sources
Unique CVEs
395,926
Global CVE Program v5
Exploited in Wild
3,968
~1.44% active weaponization
Tracked CNAs
384
Authorized assigners
Timeline Scope:
Weaponization Rate

Exploited CVE Ratio per Year

CISA KEV / EPSS

While total vulnerability disclosures have climbed past 40,000/year, less than 1.5% are actively weaponized by adversaries in the wild.

2020215 exploited of 19,250 (1.12%)
2021298 exploited of 21,980 (1.36%)
2022382 exploited of 25,100 (1.52%)
2023446 exploited of 29,065 (1.53%)
2024512 exploited of 34,200 (1.5%)
2025580 exploited of 39,800 (1.46%)
2026624 exploited of 43,200 (1.44%)
Upstream Ingestion

Top Ingestion Streams

111 Feeds Total
๐Ÿ‘ฝ
AlienVault Open Threat Exchange (OTX)
Multi-Indicator Hubs & Aggregators
4.50M
โ— Realtime
โ˜ฃ๏ธ
URLhaus (abuse.ch)
Malware, C2 & Botnets
1.65M
โ— Realtime
๐Ÿ‡ฑ๐Ÿ‡บ
CIRCL Open MISP Feed (OSINT)
Multi-Indicator Hubs & Aggregators
1.20M
โ— Realtime
๐Ÿ—„๏ธ
MalwareBazaar (abuse.ch)
Malware, C2 & Botnets
950K
โ— Active
๐ŸŸ
PhishTank (Cisco Talos)
Phishing & Fraud
890K
โ— Active
๐Ÿ—‚๏ธ
ThreatFeeds.io Hub
Multi-Indicator Hubs & Aggregators
850K
โ— Active
๐ŸฆŠ
ThreatFox (abuse.ch)
Malware, C2 & Botnets
820K
โ— Realtime
MITRE Weakness Ranking

Top 10 Most Common CWE Weaknesses

Root Causes
#1 ยท CWE-787CRITICAL
Out-of-bounds Write

Software writes data past the buffer boundary, allowing arbitrary remote code execution.

Occurrences:19,420 CVEs
#2 ยท CWE-79MEDIUM
Improper Neutralization of Input (XSS)

Unvalidated user input rendered in web browsers, enabling session hijacking and credential theft.

Occurrences:18,210 CVEs
#3 ยท CWE-89HIGH
SQL Injection

Improper neutralization in SQL statements, causing complete database unauthorized exfiltration.

Occurrences:14,580 CVEs
#4 ยท CWE-416CRITICAL
Use After Free

Referencing memory pointers after deallocation, leading to heap corruption and RCE.

Occurrences:12,890 CVEs
#5 ยท CWE-20HIGH
Improper Input Validation

Failure to validate data structures and types, allowing parameter tampering and logic bypasses.

Occurrences:11,340 CVEs
#6 ยท CWE-125MEDIUM
Out-of-bounds Read

Reading past memory buffers, exposing cryptographic keys and defeating ASLR mitigations.

Occurrences:9,870 CVEs
#7 ยท CWE-22HIGH
Path Traversal ('../')

Manipulating file paths to read or overwrite critical configuration files outside intended directories.

Occurrences:8,940 CVEs
#8 ยท CWE-352MEDIUM
Cross-Site Request Forgery (CSRF)

Forcing authenticated victim browsers to execute privileged commands without consent.

Occurrences:6,420 CVEs
#9 ยท CWE-476MEDIUM
NULL Pointer Dereference

Dereferencing NULL pointers resulting in denial of service or application process crashes.

Occurrences:5,890 CVEs
#10 ยท CWE-502CRITICAL
Deserialization of Untrusted Data

Executing weaponized payload objects passed to untrusted deserialization libraries.

Occurrences:4,950 CVEs
Vendor Distribution

Top 10 Affected Vendors

Global Share
#1 Linux Foundation / Kernel16,689 (14.2%)
#2 Microsoft Corporation10,808 (9.2%)
#3 Oracle Corporation7,792 (6.6%)
#4 Google LLC6,564 (5.6%)
#5 IBM5,551 (4.7%)
#6 Apple Inc.4,892 (4.2%)
#7 Canonical (Ubuntu)4,310 (3.7%)
#8 Cisco Systems3,950 (3.4%)
#9 Red Hat / Fedora3,620 (3.1%)
#10 Apache Software Foundation3,240 (2.8%)
CNA & GNA Authorities

Top 10 Vulnerability Assigners

Active CNAs
#1 MITRE Corporation (Root)
Global Primary CNA
116,332
ROOT CNA
#2 GitHub Inc.
Open Source Ecosystems
20,207
OPEN SOURCE
#3 Patchstack
Web Application Ecosystem
18,023
WEB ECOSYSTEM
#4 Linux Kernel CNA
Kernel & Core Subsystems
16,822
KERNEL
#5 VulDB CNA Team
Global Vulnerability Catalog
16,719
RESEARCH
#6 Microsoft Corporation
Windows, Azure & DevTools
11,420
ENTERPRISE
#7 Red Hat Product Security
Enterprise Linux & OpenShift
9,840
LINUX DISTRO
#8 Google LLC
Android, Chrome & Cloud
8,750
CLOUD & BROWSER
#9 Canonical Ltd.
Ubuntu Package Ecosystem
7,600
DISTRO
#10 Wordfence (Defiant)
CMS & Plugin Security
7,120
SECURITY VENDOR
Automated Pipelines & Telemetry

Real-time Statistics API Endpoint

Access full JSON statistics directly for your SIEM, vulnerability dashboard, or automated compliance scripts via our high-speed, rate-limit-free endpoint:

GET https://exultia.tech/api/threat-feed/stats?period=all&limit=10
Open Live JSON ResponseExplore Threat Feed Registry