See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Latest intelligence

2821–2835 of 2884 matching entries · 2884 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2017-8056CVE-2017-8056 exploit5.312 Sep 202615:05 UTCUnknown productSee original advisory17 sourcesCandidateNoCVE-2017-8039Spring Web Flow Spring Web Flow 2.4.0 to 2.4.5 and Older unsupported versions are also affected vulnerability5.98 Sep 202615:13 UTCSpring Web Flow Spring Web Flow 2.4.0 to 2.4.5 and Older unsupported versions are also affectedSpring Web Flow Spring Web Flow 2.4.0 to 2.4.5 and Older unsupported versions are also affected4 sourcesNoneNoCVE-2017-7921KEVHikvision Multiple Products Improper Authentication Vulnerability9.824 Aug 202606:32 UTCMultiple ProductsSee original advisory904 sourcesCandidateYesCVE-2017-7269KEVMicrosoft Windows Server Buffer Overflow Vulnerability10.025 Aug 202611:52 UTCInternet Information Services (IIS)See original advisory41 sourcesVerifiedYesCVE-2017-7089Webkit (Safari) - Universal Cross-site Scripting6.115 Sep 202608:35 UTCUnknown productSee original advisory24 sourcesVerifiedNoCVE-2017-6297n/a vulnerability5.916 Sep 202619:17 UTCn/an/a5 sourcesVerifiedNoCVE-2017-5689KEVIntel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability10.08 Sep 202601:13 UTCActive Management Technology (AMT), Small Business Technology (SBT), and Standard ManageabilitySee original advisory128 sourcesVerifiedYesCVE-2017-5638KEVApache Struts Remote Code Execution Vulnerability10.02 Sep 202622:00 UTCStrutsSee original advisory2157 sourcesVerifiedYesCVE-2017-4971Spring Web Flow vulnerability5.98 Sep 202615:13 UTCSpring Web FlowSpring Web Flow6 sourcesNoneNoCVE-2017-3066KEVAdobe ColdFusion Deserialization Vulnerability10.05 Sep 202612:46 UTCColdFusionSee original advisory214 sourcesVerifiedYesCVE-2017-2729Exploit for BootStomp CVE-2017-27299.34 Sep 202619:20 UTCUnknown productSee original advisory47 sourcesCandidateNoCVE-2017-2636Exploit for cve-2017-2636-el CVE-2017-26367.026 Aug 202604:09 UTCUnknown productSee original advisory65 sourcesCandidateNoCVE-2017-0541Exploit for CVE-2017-05419.31 Sep 202614:07 UTCUnknown productSee original advisory37 sourcesCandidateNoCVE-2017-0199KEVMicrosoft Office and WordPad Remote Code Execution Vulnerability9.311 Sep 202618:30 UTCOffice and WordPadSee original advisory189 sourcesVerifiedYesCVE-2017-0144KEVMicrosoft SMBv1 Remote Code Execution Vulnerability0.09 Sep 202622:00 UTCSMBv1See original advisory1073 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.