See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

196–208 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2017-5638KEVApache Struts Remote Code Execution Vulnerability10.02 Sep 202622:00 UTCStrutsSee original advisory2430 sourcesVerifiedYesCVE-2017-3066KEVAdobe ColdFusion Deserialization Vulnerability10.05 Sep 202612:46 UTCColdFusionSee original advisory229 sourcesVerifiedYesCVE-2017-0199KEVMicrosoft Office and WordPad Remote Code Execution Vulnerability9.311 Sep 202618:30 UTCOffice and WordPadSee original advisory219 sourcesVerifiedYesCVE-2017-0144KEVMicrosoft SMBv1 Remote Code Execution Vulnerability0.09 Sep 202622:00 UTCSMBv1See original advisory1193 sourcesVerifiedYesCVE-2016-7255KEVn/a vulnerability7.810 Sep 202602:17 UTCn/an/a368 sourcesVerifiedYesCVE-2016-5195KEVLinux Kernel Race Condition Vulnerability0.025 Aug 202622:00 UTCKernelSee original advisory4467 sourcesVerifiedYesCVE-2016-4437KEVApache Shiro Code Execution Vulnerability9.813 Sep 202618:39 UTCShiroSee original advisory79 sourcesVerifiedYesCVE-2016-4117KEVn/a vulnerability9.810 Sep 202602:17 UTCn/an/a208 sourcesVerifiedYesCVE-2016-3088KEVApache ActiveMQ Improper Input Validation Vulnerability9.815 Sep 202608:27 UTCActiveMQSee original advisory77 sourcesVerifiedYesCVE-2015-5287KEVRed Hat Automatic Bug Reporting Tool Privilege Escalation Vulnerability0.025 Aug 202622:00 UTCAutomatic Bug Reporting ToolSee original advisory348 sourcesVerifiedYesCVE-2015-3246KEVRed Hat Libuser Race Condition Vulnerability0.025 Aug 202622:00 UTCLibuserSee original advisory249 sourcesVerifiedYesCVE-2014-6271KEVGNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability10.031 Aug 202605:37 UTCBourne-Again Shell (Bash)See original advisory2910 sourcesVerifiedYesCVE-2012-0754KEVAdobe Flash Player Memory Corruption Vulnerability0.011 Sep 202622:00 UTCFlash PlayerSee original advisory72 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.