Endpoint security (EDR and XDR)
Kaspersky advisories: every record the registers tie to its products
In one line
23 advisories are attributed to Kaspersky products in this record, covering December 2017 to November 2025, and none of them appears in the CISA catalogue of known exploited vulnerabilities. A further 3 register entries mention Kaspersky without naming one of its products as affected, and are excluded rather than counted. Each entry below links to the register that published it.
Attributed
23
tied to a named product
Known exploited
0
in the CISA catalogue
Rated critical
0
by the register
Last checked
Jul 17, 2026
sources re-queried
Why this list is shorter than a CVE mirror
The registers are searched by keyword, so a search for a company name returns advisories that merely mention it. A mirror publishes those. This page does not: an entry appears only when the register itself ties it to a product of Kaspersky, through a reference on the vendor's own domain, the vendor named as the assigning authority, or the affected product list naming it.
3 entries did not clear that bar and are not shown. That is the difference, and it is deliberate: a page that lists another company's vulnerability under this heading is wrong in the way that matters most.
4 of the 23 records carry a CVSS base score from the register. Where none is published, none is shown, and no score is estimated.
The full list, most recently exploited and most recent first
Records held by several registers are folded into one entry with a link to each, so the same vulnerability is not counted twice. Entries listed in the CISA catalogue of known exploited vulnerabilities are shown first, because that is the one flag on this page that changes what a reader should do next.
- CVE-2025-64984mediumCVSS 5.1Nov 20, 2025
Kaspersky has fixed a security issue in Kaspersky Endpoint Security for Linux (any version with anti-virus databases prior to 18.11.2025), Kaspersky Industrial CyberSecurity for Linux Nodes…
- WID-SEC-2025-0293mediumCVSS 5.3Feb 07, 2025
Affected products: Kaspersky Anti-Virus, Kaspersky Internet Security
- CVE-2024-13614mediumCVSS 5.3Feb 06, 2025
Kaspersky has fixed a security issue in Kaspersky Anti-Virus SDK for Windows, Kaspersky Security for Virtualization Light Agent, Kaspersky Endpoint Security for Windows, Kaspersky Small…
- CVE-2023-23349lowCVSS 2.2Mar 22, 2024
Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recover the auto-filled credentials from a memory dump when the KPM…
- CVE-2019-8271Mar 09, 2019
UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer handler, which can potentially result code execution.
- CVE-2019-8280Mar 09, 2019
UltraVNC revision 1203 has out-of-bounds access vulnerability in VNC client inside RAW decoder, which can potentially result code execution.
- CVE-2019-8264Mar 09, 2019
UltraVNC revision 1203 has out-of-bounds access vulnerability in VNC client inside Ultra2 decoder, which can potentially result in code execution.
- CVE-2019-8266Mar 09, 2019
UltraVNC revision 1207 has multiple out-of-bounds access vulnerabilities connected with improper usage of ClientConnection::Copybuffer function in VNC client code, which can potentially…
- CVE-2019-8273Mar 09, 2019
UltraVNC revision 1211 has a heap buffer overflow vulnerability in VNC server code inside file transfer request handler, which can potentially result in code execution.
- CVE-2019-8269Mar 09, 2019
UltraVNC revision 1206 has stack-based Buffer overflow vulnerability in VNC client code inside FileTransfer module, which leads to a denial of service (DoS) condition.
- CVE-2019-8275Mar 09, 2019
UltraVNC revision 1211 has multiple improper null termination vulnerabilities in VNC server code, which result in out-of-bound data being accessed by remote users.
- CVE-2019-8268Mar 09, 2019
UltraVNC revision 1206 has multiple off-by-one vulnerabilities in VNC client code connected with improper usage of ClientConnection::ReadString function, which can potentially result code…
- CVE-2019-8263Mar 05, 2019
UltraVNC revision 1205 has stack-based buffer overflow vulnerability in VNC client code inside ShowConnInfo routine, which leads to a denial of service (DoS) condition.
- CVE-2019-8279Mar 02, 2019
Multiple stored XSS in Vanilla Forums before 2.5 allow remote attackers to inject arbitrary JavaScript code into any message on forum.
- CVE-2018-20026Feb 19, 2019
Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
- CVE-2018-15125Aug 13, 2018
Sensitive Information Disclosure in Zipato Zipabox Smart Home Controller allows remote attacker get sensitive information that expands attack surface.
- CVE-2018-15124Aug 13, 2018
Weak hashing algorithm in Zipato Zipabox Smart Home Controller BOARD REV - 1 with System Version -118 allows unauthenticated attacker extract clear text passwords and get root access on the…
- CVE-2018-6306Apr 19, 2018
Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager versions before 8.0.6.538.
- CVE-2018-6288Feb 06, 2018
Cross-site Request Forgery leading to Administrative account takeover in Kaspersky Secure Mail Gateway version 1.1.
- CVE-2018-6290Feb 06, 2018
Local Privilege Escalation in Kaspersky Secure Mail Gateway version 1.1.
- CVE-2018-6289Feb 06, 2018
Configuration file injection leading to Code Execution as Root in Kaspersky Secure Mail Gateway version 1.1.
- CVE-2018-6291Feb 06, 2018
WebConsole Cross-Site Scripting in Kaspersky Secure Mail Gateway version 1.1.
- CVE-2017-12823Dec 08, 2017
Kernel pool memory corruption in one of drivers in Kaspersky Embedded Systems Security version 1.2.0.300 leads to local privilege escalation.
Which registers contributed
| Register | Operated by | Entries | Latest |
|---|---|---|---|
| European Vulnerability Database | ENISA, European Union | 25 | Mar 27, 2026 |
| CERT-Bund security advisories | BSI, Federal Republic of Germany | 1 | Feb 07, 2025 |
The entry counts here are the raw register totals for Kaspersky, before attribution. They are larger than the list above for exactly that reason.
Questions this page answers
How many vulnerabilities does Kaspersky have?
23 advisories in this record are tied by a register to a product of Kaspersky. That is not the same as the number of vulnerabilities the products contain, and no public source knows that number. It is the count of what has been found, disclosed and published, which depends on how much the products are examined and how openly the vendor discloses.
Are any Kaspersky vulnerabilities being actively exploited?
None of the 23 records here appears in the CISA catalogue of known exploited vulnerabilities. That catalogue is not exhaustive: it lists what CISA has confirmed as exploited, so absence from it is not proof that nothing has been exploited.
Why does this page show fewer CVEs for Kaspersky than other sites?
Because a keyword search for a company name returns advisories about other companies' products that mention it in passing, and this page excludes those. 3 register entries name Kaspersky without naming one of its products as affected. A mirror that lists them produces a longer page and a wrong number.
Where do the Kaspersky advisories on this page come from?
From European Vulnerability Database (ENISA, European Union); CERT-Bund security advisories (BSI, Federal Republic of Germany). Every entry links back to the register that published it, and carries the date that register states. Where the same vulnerability is held by several registers it is shown once with a link to each, rather than counted twice.
Does a long advisory list mean Kaspersky is insecure?
No. A register records what researchers found and what the vendor disclosed, so a widely deployed product with a working disclosure process accumulates more entries than one nobody examines. A short list can equally mean a small install base or a vendor that publishes little. This page reports the record and does not rate the vendor, because whether this is acceptable depends on your risk appetite, your compliance scope and the alternatives you are weighing.
A list of advisories is not a risk assessment
What matters is which of these touch the components you actually run, in the configuration you actually run them in, and whether that is acceptable next to the alternatives on your shortlist. DecisionOS reads the same pool against the criteria of a real decision and produces a memo that holds up in front of a board and an auditor.
The full Kaspersky record, including sources and open questions
