See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 10:05 UTC 8 of 8 sources healthy

Latest intelligence

2551–2565 of 3145 matching entries · 3145 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2025-32463KEVSudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability9.34 Sep 202616:04 UTCSudoSee original advisory3379 sourcesVerifiedYesCVE-2025-32433KEVErlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability10.05 Sep 202604:27 UTCErlang/OTPSee original advisory512 sourcesCandidateYesCVE-2025-32432KEVCraft CMS Code Injection Vulnerability0.013 Sep 202622:00 UTCCraft CMSSee original advisory223 sourcesVerifiedYesCVE-2025-32370Kentico Xperience 13.0.178 - Cross Site Scripting (XSS)9.87 Sep 202619:12 UTCUnknown productSee original advisory64 sourcesVerifiedNoCVE-2025-31324KEVSAP NetWeaver Unrestricted File Upload Vulnerability0.05 Sep 202622:00 UTCNetWeaverSee original advisory902 sourcesCandidateYesCVE-2025-31161KEVCrushFTP Authentication Bypass Vulnerability9.825 Aug 202602:25 UTCCrushFTPSee original advisory263 sourcesVerifiedYesCVE-2025-31125KEVVite Vitejs Improper Access Control Vulnerability7.58 Sep 202614:40 UTCVitejsSee original advisory103 sourcesCandidateYesCVE-2025-30208Vite 6.2.2 - Arbitrary File Read7.53 Sep 202610:01 UTCUnknown productSee original advisory284 sourcesVerifiedNoCVE-2025-30065TRAI-001-Critical-RCE-Vulnerability-in-Apache-Parquet-CVE-2025-30065-Simulation exploit10.018 Sep 202604:38 UTCUnknown productSee original advisory2 sourcesCandidateNoCVE-2025-30033Automation License Manager V6.0 vulnerability8.58 Sep 202607:17 UTCAutomation License Manager V6.0before * (custom); before V6.2 Upd3 (custom); before V6.9 (custom); before V1.5.5.0 (custom); before V2.0 SP2 (custom); before V5.0 SP4 (custom); before V3.1.0.2 (custom); before V4.1 (custom); before V10.0 SP1 (custom); before V19 Update 4 (custom); before V2.0 Upd3 (custom); before V9.1 SP1 Upd8 (custom); before V2.1 (custom); before V4.1.0.1 (custom); before V5.0.0.1 (custom); before V20.0 Update 1 (custom); before V9.1 SP2 Upd4 (custom); before V9.1 SP2 Upd6 (custom); before V9.1 SP2 Upd2 (custom); before V10.0 SP1 Upd2 (custom); before V9.1 SP2 Upd8 (custom); before V9.1 Upd8 (custom); before V10.0 SP1 UC01 (custom); before V9.1 SP1 UC08 (custom); before V6.0 SP1 (custom); before V9.3 SP1 Upd2 (custom); before V2024 SP1 Upd2 (custom); before V17 Update 9 (custom); before V31.1.5 (custom); before V4.0.1 (custom); before V3.5 SP4 Update 1 (custom); before V7.0 Update 1 (custom); before V20 Update 1 (custom); before V6.0 SP3 (custom); before V21 (custom); before V20 (custom); before V7.5 SP2 Update 20 (custom); before V8.0 Update 8 (custom); before V8.1 Update 3 (custom); before V20 Update 3 (custom); before V4.0 (custom); before V3.1.2.2 (custom); before V3.0.6 (custom); before V2.3 (custom); before V2.2 (custom); before V18 Update 6 (custom); before V20 Update 4 (custom)1 sourcesNoneNoCVE-2025-29972CVE-2025-29972 exploit9.97 Sep 202619:20 UTCUnknown productSee original advisory38 sourcesCandidateNoCVE-2025-29927Next.js Middleware 15.2.2 - Authorization Bypass9.15 Sep 202612:41 UTCUnknown productSee original advisory6066 sourcesVerifiedNoCVE-2025-26790Atlant vulnerability3.714 Sep 202605:17 UTCAtlantbefore Capricorn 2025-01-20_02 (custom)2 sourcesNoneNoCVE-2025-25257KEVFortinet FortiWeb SQL Injection Vulnerability9.84 Sep 202606:47 UTCFortiWebSee original advisory345 sourcesVerifiedYesCVE-2025-25252FortiOS vulnerability4.813 Sep 202602:17 UTCFortiOS7.6.0 through 7.6.2 (semver); 7.4.0 through 7.4.6 (semver); 7.2.0 through 7.2.10 (semver); 7.0.0 through 7.0.16 (semver); 6.4.0 through 6.4.16 (semver)1 sourcesNoneNo

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.