See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

121–135 of 213 matching entries · 2884 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2023-23397KEVMicrosoft Office Outlook Privilege Escalation Vulnerability0.027 Aug 202622:00 UTCOfficeSee original advisory1315 sourcesCandidateYesCVE-2023-22518KEVAtlassian Confluence Data Center and Server Improper Authorization Vulnerability10.028 Aug 202608:02 UTCConfluence Data Center and ServerSee original advisory118 sourcesCandidateYesCVE-2023-22515KEVAtlassian Confluence Data Center and Server Broken Access Control Vulnerability10.028 Aug 202608:02 UTCConfluence Data Center and ServerSee original advisory1233 sourcesCandidateYesCVE-2023-7028KEVGitLab Community and Enterprise Editions Improper Access Control Vulnerability0.05 Sep 202622:00 UTCGitLab CE/EESee original advisory837 sourcesVerifiedYesCVE-2023-4966KEVCitrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability9.44 Sep 202621:50 UTCNetScaler ADC and NetScaler GatewaySee original advisory100 sourcesCandidateYesCVE-2023-4346KEVKNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability0.014 Jul 202622:00 UTCKNX Protocol Connection Authorization Option 1See original advisory2 sourcesNoneYesCVE-2022-41352KEVn/a vulnerability9.810 Sep 202602:17 UTCn/an/a63 sourcesVerifiedYesCVE-2022-38181KEVArm Mali GPU Kernel Driver Use-After-Free Vulnerability8.811 Sep 202621:04 UTCMali Graphics Processing Unit (GPU)See original advisory161 sourcesVerifiedYesCVE-2022-37969KEVWindows 10 Version 1809 vulnerability7.810 Sep 202602:17 UTCWindows 10 Version 180910.0.17763.0 through before 10.0.17763.3406 (custom); 10.0.0 through before 10.0.17763.3406 (custom); 10.0.0 through before 10.0.19043.2006 (custom); 10.0.20348.0 through before 10.0.20348.1006 (custom); 10.0.0 through before 10.0.19042.2006 (custom); 10.0.0 through before 10.0.22000.978 (custom); 10.0.19043.0 through before 10.0.19044.2006 (custom); 10.0.10240.0 through before 10.0.10240.19444 (custom); 10.0.14393.0 through before 10.0.14393.5356 (custom); 6.1.0 through before 6.1.7601.26115 (custom); 6.3.0 through before 6.3.9600.20571 (custom); 6.0.6003.0 through before 6.0.6003.21666 (custom); 6.1.7601.0 through before 6.1.7601.26115 (custom); 6.2.9200.0 through before 6.2.9200.23865 (custom); 6.3.9600.0 through before 6.3.9600.20571 (custom)29 sourcesNoneYesCVE-2022-36804KEVAtlassian Bitbucket Server and Data Center Command Injection Vulnerability0.020 Aug 202622:00 UTCBitbucket Server and Data CenterSee original advisory770 sourcesVerifiedYesCVE-2022-30190KEVMicrosoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability9.325 Aug 202602:55 UTCWindowsSee original advisory113 sourcesCandidateYesCVE-2022-26923KEVMicrosoft Active Directory Domain Services Privilege Escalation Vulnerability9.012 Sep 202615:06 UTCActive DirectorySee original advisory109 sourcesCandidateYesCVE-2022-26134KEVAtlassian Confluence Server and Data Center Remote Code Execution Vulnerability9.85 Sep 202612:45 UTCConfluence Server/Data CenterSee original advisory1726 sourcesVerifiedYesCVE-2022-24521KEVMicrosoft Windows CLFS Driver Privilege Escalation Vulnerability7.825 Aug 202613:38 UTCWindowsSee original advisory97 sourcesCandidateYesCVE-2022-22965KEVSpring Framework JDK 9+ Remote Code Execution Vulnerability9.828 Aug 202619:19 UTCSpring FrameworkSee original advisory85 sourcesCandidateYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.