See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

181–195 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2019-1215KEVMicrosoft Windows Privilege Escalation Vulnerability7.88 Sep 202614:29 UTCWindowsSee original advisory162 sourcesVerifiedYesCVE-2019-1068KEVMicrosoft SQL Server Remote Code Execution Vulnerability0.025 Aug 202622:00 UTCSQL ServerSee original advisory51 sourcesNoneYesCVE-2019-0708KEVMicrosoft Remote Desktop Services Remote Code Execution Vulnerability10.017 Jun 202600:08 UTCRemote Desktop Services7 for 32-bit Systems Service Pack 1; 7 for x64-based Systems Service Pack 1; 2008 R2 for x64-based Systems Service Pack 1 (Core installation); 2008 R2 for Itanium-Based Systems Service Pack 1; 2008 R2 for x64-based Systems Service Pack 1; 2008 for 32-bit Systems Service Pack 2 (Core installation); 2008 for Itanium-Based Systems Service Pack 2; 2008 for 32-bit Systems Service Pack 2; 2008 for x64-based Systems Service Pack 2; 2008 for x64-based Systems Service Pack 2 (Core installation)6777 sourcesVerifiedYesCVE-2018-20062KEVThinkPHP "noneCms" Remote Code Execution Vulnerability0.09 Sep 202622:00 UTCnoneCmsSee original advisory203 sourcesVerifiedYesCVE-2018-15982KEVAdobe Flash Player Use-After-Free Vulnerability10.012 Sep 202615:06 UTCFlash PlayerSee original advisory95 sourcesVerifiedYesCVE-2018-14847KEVMikroTik Router OS Directory Traversal Vulnerability0.06 Sep 202622:00 UTCRouterOSSee original advisory645 sourcesVerifiedYesCVE-2018-7602KEVDrupal Core Remote Code Execution Vulnerability9.815 Sep 202610:56 UTCCoreSee original advisory67 sourcesVerifiedYesCVE-2018-7600KEVDrupal Core Remote Code Execution Vulnerability0.029 Aug 202622:00 UTCDrupal CoreSee original advisory531 sourcesVerifiedYesCVE-2018-6961KEVVMware SD-WAN Edge by VeloCloud Command Injection Vulnerability8.115 Sep 202608:27 UTCSD-WAN EdgeSee original advisory36 sourcesVerifiedYesCVE-2018-0824KEVMicrosoft COM for Windows Deserialization of Untrusted Data Vulnerability8.85 Sep 202621:37 UTCWindowsSee original advisory45 sourcesVerifiedYesCVE-2017-11882KEVMicrosoft Office Memory Corruption Vulnerability9.325 Aug 202602:15 UTCOfficeSee original advisory447 sourcesVerifiedYesCVE-2017-9791KEVApache Struts 1 Improper Input Validation Vulnerability9.815 Sep 202608:36 UTCStruts 1See original advisory62 sourcesVerifiedYesCVE-2017-7921KEVHikvision Multiple Products Improper Authentication Vulnerability9.824 Aug 202606:32 UTCMultiple ProductsSee original advisory985 sourcesCandidateYesCVE-2017-7269KEVMicrosoft Windows Server Buffer Overflow Vulnerability10.025 Aug 202611:52 UTCInternet Information Services (IIS)See original advisory62 sourcesVerifiedYesCVE-2017-5689KEVIntel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability10.08 Sep 202601:13 UTCActive Management Technology (AMT), Small Business Technology (SBT), and Standard ManageabilitySee original advisory140 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.