CPE, which stands for Common Platform Enumeration, is a standardized scheme for naming hardware, software, and operating systems. CPE provides a structured naming scheme to uniquely identify and classify information technology systems, platforms, and packages based on certain attributes such as vendor, product name, version, update, edition, and language.
CWE, or Common Weakness Enumeration, is a comprehensive list and categorization of software weaknesses and vulnerabilities. It serves as a common language for describing software security weaknesses in architecture, design, code, or implementation that can lead to vulnerabilities.
CAPEC, which stands for Common Attack Pattern Enumeration and Classification, is a comprehensive, publicly available resource that documents common patterns of attack employed by adversaries in cyber attacks. This knowledge base aims to understand and articulate common vulnerabilities and the methods attackers use to exploit them.
Services & Price
Help & Info
Search : CVE id, CWE id, CAPEC id, vendor or keywords in CVE
Below, you will find a graph illustrating the TOP vendors with the highest number of vulnerabilities (CVEs) recorded in our database. This ranking allows you to quickly identify the manufacturers whose products have the most reported vulnerabilities, helping you better assess potential risks and make informed decisions regarding cybersecurity.
Vendor
Nb CVE
Microsoft
20,920
Google
13,028
Apple
12,485
Linux
10,377
Oracle
10,027
Debian
9,428
Ibm
7,340
Adobe
6,486
Cisco
6,214
Redhat
5,689
Fedoraproject
5,502
Canonical
4,220
Opensuse
3,372
Mozilla
3,255
Apache
2,444
Netapp
2,417
Hp
2,386
Qualcomm
2,214
Huawei
2,108
Siemens
1,913
Jenkins
1,644
Intel
1,627
Trends since 2000
Below, you will find a graph showing the evolution since the year 2000 of the vendors with the highest number of vulnerabilities (CVEs) recorded in our database for each year. This graph allows you to visualize trends and track the evolution of reported vulnerabilities by vendor over time.
OWASP
2000 Nb CVE
2001 Nb CVE
2002 Nb CVE
2003 Nb CVE
2004 Nb CVE
2005 Nb CVE
2006 Nb CVE
2007 Nb CVE
2008 Nb CVE
2009 Nb CVE
2010 Nb CVE
2011 Nb CVE
2012 Nb CVE
2013 Nb CVE
2014 Nb CVE
2015 Nb CVE
2016 Nb CVE
2017 Nb CVE
2018 Nb CVE
2019 Nb CVE
2020 Nb CVE
2021 Nb CVE
2022 Nb CVE
2023 Nb CVE
2024 Nb CVE
2025 Nb CVE
microsoft*nobr>
303
463
663
811
953
1,146
1,433
1,776
2,109
2,440
3,038
3,553
3,934
4,443
4,968
5,984
7,060
8,357
9,714
11,566
13,449
15,155
16,906
18,864
20,100
20,920
redhat*nobr>
88
136
155
193
244
343
364
422
503
547
598
693
857
1,137
1,433
1,708
2,028
2,417
3,344
4,147
4,501
4,782
5,093
5,444
5,669
5,689
sun*nobr>
80
130
180
241
294
370
472
608
768
986
1,094
1,239
1,355
1,524
1,552
1,566
1,582
1,582
1,582
1,582
1,582
hp*nobr>
53
97
143
185
218
267
308
393
465
543
665
803
896
1,042
1,146
1,256
1,370
1,413
1,725
1,917
2,045
2,105
2,187
2,335
2,366
2,368
freebsd*nobr>
45
81
105
122
139
157
185
199
208
netscape*nobr>
43
57
65
75
81
debian*nobr>
42
77
91
105
140
217
254
320
432
490
573
650
740
862
1,106
1,423
1,870
2,736
4,151
5,331
6,398
7,467
8,431
8,929
9,340
9,428
ibm*nobr>
39
93
130
168
209
288
400
548
696
866
1,066
1,250
1,426
1,816
2,276
2,597
2,986
3,672
4,315
4,787
5,360
5,966
6,389
6,805
7,111
7,340
cisco*nobr>
36
91
144
179
207
270
342
455
549
658
814
981
1,141
1,576
1,945
2,435
2,776
3,270
3,727
4,287
4,855
5,445
5,763
6,029
6,173
6,214
suse*nobr>
36
57
65
67
95
177
194
209
226
256
336
sco*nobr>
32
49
53
openbsd*nobr>
31
58
80
102
130
144
sgi*nobr>
27
33
70
99
148
169
172
173
netbsd*nobr>
24
29
caldera*nobr>
23
24
66
66
linux*nobr>
22
43
47
75
129
261
365
470
568
696
875
1,045
1,272
1,550
1,784
2,187
2,676
3,317
3,599
3,990
4,237
4,663
5,233
5,865
8,115
10,377
mandrakesoft*nobr>
54
59
oracle*nobr>
50
90
123
155
238
405
546
674
843
1,058
1,313
1,708
2,222
2,725
3,348
4,167
5,097
5,914
6,700
7,740
8,643
9,197
9,526
9,862
10,027
apple*nobr>
93
156
297
454
692
919
1,156
1,597
2,005
2,482
2,776
3,207
4,348
5,188
6,102
6,622
7,730
8,426
9,199
10,078
11,043
12,024
12,485
apache*nobr>
87
109
116
201
226
267
281
2,444
mozilla*nobr>
94
202
329
418
520
669
798
921
1,126
1,293
1,415
1,604
1,747
1,756
2,114
2,261
2,441
2,596
2,777
2,975
3,058
3,255
gnu*nobr>
147
172
182
php*nobr>
218
240
252
novell*nobr>
179
241
270
312
395
415
joomla*nobr>
232
377
588
664
707
722
736
drupal*nobr>
281
346
354
563
638
adobe*nobr>
267
474
676
824
972
1,113
1,577
2,144
2,497
2,884
3,453
3,766
4,174
4,635
5,306
6,047
6,486
canonical*nobr>
322
343
686
937
1,281
1,625
1,881
2,764
3,469
4,051
4,086
4,123
4,153
4,236
4,224
google*nobr>
599
1,004
1,256
1,452
1,905
2,872
3,958
4,800
5,698
6,953
8,216
10,024
11,815
12,707
13,028
opensuse*nobr>
743
1,069
1,468
1,584
1,716
2,414
3,200
3,220
3,240
3,251
3,400
3,378
fedoraproject*nobr>
2,420
3,547
4,513
5,054
5,555
5,502
netapp*nobr>
2,360
2,389
TOP 100 Current Vendors
Below, the TOP 100 vendors with the highest number of vulnerabilities (CVEs) recorded in our database. This ranking allows you to quickly identify the manufacturers whose products have the most reported vulnerabilities, helping you better assess potential risks and make informed decisions regarding cybersecurity.