Microsoft ranked first in confirmed security vulnerabilities among vendors through the third quarter of 2020, according to the "Vulnerability QuickView Report" from Risk Based Security's VulnDB threat intelligence team. The report indicated that 1,202 Microsoft vulnerabilities were discovered in the first nine months of 2020, which represented a 39 percent year-over-year increase.Along with Microsoft, VulnDB cited the following vendors as its "top" vendors in terms of confirmed security vulnerabilities as of the end of 3Q20:
VulnDB also named the following software as its "top" software in terms of confirmed security vulnerabilities during the time frame:
Other notable findings from VulnDB's report included:
VulnDB also noted that "regular" Patch Tuesdays are approaching volumes comparable to vulnerability Fujiwhara events.
- Oracle
- Red Hat
- SUSE
- openSUSE Leap
- Windows 10
- Windows Server 2019
- Debian Linux
- Windows Server (semi-annual channel)
- 17,129 vulnerabilities were found during the first three quarters of 2020, up 4.6 percent year over year.
- Vulnerability disclosures totaled 4,968 as of the end of 3Q20, down 19.2 percent year over year.
- On average, there were 68 vulnerability disclosures per day through the first nine months of 2020.
- 600 vulnerabilities are still in CVE RESERVED status.
