See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

61–75 of 213 matching entries · 2884 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-20079KEVCisco Secure Firewall Management Center (FMC) vulnerability10.016 Sep 202615:17 UTCCisco Secure Firewall Management Center (FMC)7.0.0; 7.0.0.1; 7.0.1; 7.1.0; 7.0.1.1; 7.1.0.1; 7.0.2; 7.2.0; 7.0.2.1; 7.0.3; 7.1.0.2; 7.2.0.1; 7.0.4; 7.2.1; 7.0.5; 7.3.0; 7.2.2; 7.3.1; 7.2.3; 7.1.0.3; 7.2.3.1; 7.2.4; 7.0.6; 7.2.4.1; 7.2.5; 7.3.1.1; 7.4.0; 7.0.6.1; 7.2.5.1; 7.4.1; 7.2.6; 7.4.1.1; 7.0.6.2; 7.2.7; 7.2.5.2; 7.3.1.2; 7.2.8; 7.6.0; 7.4.2; 7.2.8.1; 7.0.6.3; 7.4.2.1; 7.2.9; 7.0.7; 7.7.0; 7.4.2.2; 7.2.10; 7.6.1; 7.4.2.3; 7.0.8; 7.6.2; 7.7.10; 7.2.10.1; 7.0.8.1; 7.6.2.1; 7.2.10.2; 7.7.10.1; 7.4.2.4; 7.4.3; 7.6.3; 7.7.11; 7.6.4; 10.0.0; 7.4.4; 7.4.5; 7.0.9; 7.2.11; 7.7.12; 7.6.5; 7.4.6; 10.0.1; 7.4.79 sourcesVerifiedYesCVE-2026-19490KEVADC vulnerability9.310 Sep 202602:17 UTCADC14.1 through 73.32 (patch); 13.1 through 63.21 (patch)54 sourcesCandidateYesCVE-2026-18577KEVN-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability0.02 Aug 202622:00 UTCN-centralSee original advisory2 sourcesNoneYesCVE-2026-18556KEVN-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability0.03 Aug 202622:00 UTCN-centralSee original advisory2 sourcesNoneYesCVE-2026-16812KEVArista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability0.026 Jul 202622:00 UTCVeloCloud OrchestratorSee original advisory2 sourcesNoneYesCVE-2026-16232KEVCheck Point SmartConsole Improper Authentication Vulnerability0.021 Jul 202622:00 UTCSmartConsoleSee original advisory2 sourcesNoneYesCVE-2026-15409KEVSonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability10.07 Sep 202619:21 UTCSMA1000 AppliancesSee original advisory100 sourcesCandidateYesCVE-2026-9586KEVSangoma Switchvox SQL Injection Vulnerability0.01 Sep 202622:00 UTCSwitchvoxSee original advisory50 sourcesNoneYesCVE-2026-9198KEVIBM Langflow Code Injection Vulnerability0.01 Sep 202622:00 UTCLangflowSee original advisory147 sourcesVerifiedYesCVE-2026-8452KEVCitrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability0.025 Aug 202622:00 UTCNetScaler ADC and NetScaler GatewaySee original advisory48 sourcesNoneYesCVE-2026-8037KEVProgress LoadMaster Command Injection Vulnerability0.06 Aug 202622:00 UTCLoadMasterSee original advisory2 sourcesNoneYesCVE-2026-5281KEVGoogle Dawn Use-After-Free Vulnerability8.826 Aug 202608:07 UTCDawnSee original advisory420 sourcesCandidateYesCVE-2026-0770KEVLangflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability0.020 Jul 202622:00 UTCLangflowSee original advisory3 sourcesVerifiedYesCVE-2025-68686KEVFortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability0.026 Jul 202622:00 UTCFortiOSSee original advisory2 sourcesNoneYesCVE-2025-68613KEVn8n Improper Control of Dynamically-Managed Code Resources Vulnerability10.011 Sep 202622:10 UTCn8nSee original advisory584 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.