See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

46–60 of 213 matching entries · 2884 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-42016KEVartifactory vulnerability8.112 Sep 202602:16 UTCartifactorybefore 7.133.11 (custom)22 sourcesNoneYesCVE-2026-41940KEVWebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability9.826 Aug 202610:03 UTCcPanel & WHM and WP2 (WordPress Squared)See original advisory1356 sourcesVerifiedYesCVE-2026-39987KEVMarimo Remote Code Execution Vulnerability0.01 Sep 202622:00 UTCMarimoSee original advisory96 sourcesVerifiedYesCVE-2026-39808KEVFortinet FortiSandbox OS Command Injection Vulnerability0.015 Jul 202622:00 UTCFortiSandboxSee original advisory2 sourcesNoneYesCVE-2026-34486KEVApache Tomcat Missing Encryption of Sensitive Data Vulnerability0.03 Aug 202622:00 UTCTomcatSee original advisory2 sourcesNoneYesCVE-2026-33824KEVMicrosoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability0.017 Aug 202622:00 UTCInternet Key Exchange (IKE) Service ExtensionsSee original advisory2 sourcesNoneYesCVE-2026-31431KEVLinux vulnerability7.88 Sep 202613:13 UTCLinux72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before 893d22e0135fa394db81df88697fba6032747667 (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before 19d43105a97be0810edbda875f2cd03f30dc130c (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before 961cfa271a918ad4ae452420e7c303149002875b (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before 3115af9644c342b356f3f07a4dd1c8905cd9a6fc (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before 8b88d99341f139e23bdeb1027a2a3ae10d341d82 (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before fafe0fa2995a0f7073c1c358d7d3145bcc9aedd8 (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before ce42ee423e58dffa5ec03524054c9d8bfd4f6237 (git); 72548b093ee38a6d4f2a19e6ef1948ae05c181f7 through before a664bf3d603dc3bdcf9ae47cc21e0daec706d7a5 (git); 4.14; before * (custom); before V6.0 (custom); before V21 Update 2 SR1 (custom); V3.1.6 through before V3.1.7 (custom); V3.1.5 through before * (custom); before V21 SP2 Update 1 (custom)10135 sourcesVerifiedYesCVE-2026-29711KEVAcme Edge Gateway authentication bypass8.81 Sep 202609:27 UTCEdge Gateway≤ 3.2.4111 sourcesCandidateYesCVE-2026-25089KEVFortinet FortiSandbox OS Command Injection Vulnerability0.015 Jul 202622:00 UTCFortiSandboxSee original advisory2 sourcesNoneYesCVE-2026-24110KEVWindows print service boundary error7.81 Sep 202608:31 UTCWindows Print ServiceServer 2022–20258 sourcesNoneYesCVE-2026-24061KEVGNU InetUtils Argument Injection Vulnerability9.826 Aug 202610:23 UTCInetUtilsSee original advisory1704 sourcesVerifiedYesCVE-2026-21962KEVOracle HTTP Server and Oracle Weblogic Server Proxy Plug-in Improper Access Control Vulnerability0.023 Aug 202622:00 UTCHTTP Server and Oracle Weblogic Server Proxy Plug-inSee original advisory48 sourcesNoneYesCVE-2026-20805KEVMicrosoft Windows Information Disclosure Vulnerability10.011 Sep 202622:10 UTCWindowsSee original advisory104 sourcesVerifiedYesCVE-2026-20349KEVCisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability0.010 Aug 202622:00 UTCSecure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD)See original advisory2 sourcesNoneYesCVE-2026-20316KEVCisco Secure Firewall Management Center (FMC) vulnerability5.316 Sep 202619:17 UTCCisco Secure Firewall Management Center (FMC)7.0.0; 7.0.0.1; 7.0.1; 7.0.1.1; 7.0.2; 7.2.0; 7.0.2.1; 7.0.3; 7.2.0.1; 7.0.4; 7.2.1; 7.0.5; 7.3.0; 7.2.2; 7.3.1; 7.2.3; 7.2.3.1; 7.2.4; 7.0.6; 7.2.4.1; 7.2.5; 7.3.1.1; 7.4.0; 7.0.6.1; 7.2.5.1; 7.4.1; 7.2.6; 7.4.1.1; 7.0.6.2; 7.2.7; 7.2.5.2; 7.3.1.2; 7.2.8; 7.6.0; 7.4.2; 7.2.8.1; 7.0.6.3; 7.4.2.1; 7.2.9; 7.0.7; 7.7.0; 7.4.2.2; 7.2.10; 7.6.1; 7.4.2.3; 7.0.8; 7.6.2; 7.7.10; 7.2.10.1; 7.0.8.1; 7.6.2.1; 7.2.10.2; 7.7.10.1; 7.4.2.4; 7.4.3; 7.6.3; 7.7.11; 7.6.4; 10.0.0; 7.4.4; 7.4.5; 7.0.9; 7.2.11; 7.7.12; 7.6.5; 7.4.6; 10.0.1; 7.4.73 sourcesNoneYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.