See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Latest intelligence

2236–2250 of 3248 matching entries · 3248 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-17086ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF vulnerability8.818 Sep 202602:17 UTCShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF0 through 6.5.5 (semver)14 sourcesNoneNoCVE-2026-17059Red Hat build of Keycloak 26.6 vulnerability6.516 Sep 202617:17 UTCRed Hat build of Keycloak 26.6See vendor advisory4 sourcesNoneNoCVE-2026-16876UNIVERGE IX-R/IX-V vulnerability9.37 Sep 202600:17 UTCUNIVERGE IX-R/IX-VAll versions from Ver1.1 through Ver1.3, All versions from Ver1.4.21 through Ver1.4.28 and Ver1.5.231 sourcesNoneNoCVE-2026-16772Akaunting vulnerability8.114 Sep 202620:16 UTCAkaunting0 through 3.1.21 (custom)2 sourcesNoneNoCVE-2026-16730Red Hat Enterprise Linux 10 vulnerability5.510 Sep 202616:17 UTCRed Hat Enterprise Linux 10See vendor advisory6 sourcesNoneNoCVE-2026-16726PANATERM v6 vulnerability6.814 Sep 202604:16 UTCPANATERM v6n/a through 6.0.13.0 (custom); n/a through 6.2.3.1 (custom); n/a through 7.5.0.0 (custom); n/a through 15.0.0.591 (custom)1 sourcesNoneNoCVE-2026-16649Gravity Forms vulnerability7.25 Sep 202605:17 UTCGravity Forms0 through 2.10.5 (semver)2 sourcesNoneNoCVE-2026-16517Red Hat Hardened Images vulnerability2.99 Sep 202604:17 UTCRed Hat Hardened ImagesSee vendor advisory3 sourcesNoneNoCVE-2026-16482rtMedia for WordPress, BuddyPress and bbPress vulnerability7.512 Sep 202606:16 UTCrtMedia for WordPress, BuddyPress and bbPress0 through 4.7.11 (semver)5 sourcesNoneNoCVE-2026-16481MCP Toolbox for Databases (googleapis/mcp-toolbox) vulnerability6.010 Sep 202615:17 UTCMCP Toolbox for Databases (googleapis/mcp-toolbox)0.19.1 through 1.4.0 (semver)1 sourcesNoneNoCVE-2026-16313Red Hat Enterprise Linux 10 vulnerability7.617 Sep 202610:17 UTCRed Hat Enterprise Linux 10See vendor advisory19 sourcesNoneNoCVE-2026-16310MemberDash vulnerability9.86 Sep 202601:17 UTCMemberDash0 through 1.8.5 (semver)2 sourcesNoneNoCVE-2026-16265Exploit for CVE-2026-162656.518 Sep 202616:44 UTCUnknown productSee original advisory2 sourcesCandidateNoCVE-2026-16242multicluster engine for Kubernetes 2.1 vulnerability9.414 Sep 202613:17 UTCmulticluster engine for Kubernetes 2.1See vendor advisory19 sourcesNoneNoCVE-2026-16140Exploit for CVE-2026-161408.815 Sep 202613:17 UTCphosphor-net-ipmid0 through ba6efc502e6b1fabb8ed1ca677ae5eedd64b6361 (git)28 sourcesCandidateNo

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.