See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 10:05 UTC 8 of 8 sources healthy

Latest intelligence

316–330 of 1041 matching entries · 3145 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-76904PostGIS SQL Injection GeoTools0.026 Aug 202610:47 UTCUnknown productSee original advisory207 sourcesCandidateNoCVE-2026-76460KEVCisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability0.015 Sep 202622:00 UTCIdentity Services EngineSee original advisory6 sourcesNoneYesCVE-2026-76161Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.0.05 Sep 202621:17 UTCUnknown productSee vendor advisory1 sourcesNoneNoCVE-2026-76160Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.0.05 Sep 202621:17 UTCUnknown productSee vendor advisory1 sourcesNoneNoCVE-2026-75800Frontegg SAML SSO vulnerability9.812 Sep 202614:16 UTCFrontegg SAML SSO0 through 1.0.1 (semver)1 sourcesNoneNoCVE-2026-75793SureCart vulnerability6.56 Sep 202609:18 UTCSureCartbefore 4.7.0 (semver)1 sourcesNoneNoCVE-2026-75604CVE-2026-75604 Next.js Windows RCE poc0.026 Aug 202612:23 UTCUnknown productSee original advisory207 sourcesCandidateNoCVE-2026-75538OTP vulnerability8.28 Sep 202600:17 UTCOTP17.0 through before 27.3.4.17 (otp); 28.0 through before 28.5.0.6 (otp); 29.0 through before 29.0.6 (otp); 6.0 through before 15.2.7.13 (otp); 16.0 through before 16.4.0.6 (otp); 17.0 through before 17.0.6 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before 08e8efdba8500d2d6f54c6b1de1492b228017c9b (git)4 sourcesNoneNoCVE-2026-75501Rejected reason: Vendor could not replicate the vul, and reporter is unavailable to comment.0.015 Sep 202618:17 UTCUnknown productSee vendor advisory1 sourcesNoneNoCVE-2026-74994OTP vulnerability6.08 Sep 202600:17 UTCOTP17.0 through before 27.3.4.17 (otp); 28.0 through before 28.5.0.6 (otp); 29.0 through before 29.0.6 (otp); 5.10 through before 9.3.2.7 (otp); 9.4 through before 9.6.2.3 (otp); 9.7 through before 9.7.2 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before * (git)6 sourcesNoneNoCVE-2026-74933GenieWords vulnerability8.813 Sep 202619:17 UTCGenieWords1.5.27 through 1.5.34 (semver)1 sourcesNoneNoCVE-2026-74835OTP vulnerability8.77 Sep 202623:17 UTCOTP17.0 through before 27.3.4.17 (otp); 28.0 through before 28.5.0.6 (otp); 29.0 through before 29.0.6 (otp); 5.10 through before 9.3.2.7 (otp); 9.4 through before 9.6.2.3 (otp); 9.7 through before 9.7.2 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before * (git)6 sourcesNoneNoCVE-2026-73812OTP vulnerability8.37 Sep 202623:17 UTCOTP17.0 through before 27.3.4.17 (otp); 28.0 through before 28.5.0.6 (otp); 29.0 through before 29.0.6 (otp); 5.10 through before 9.3.2.7 (otp); 9.4 through before 9.6.2.3 (otp); 9.7 through before 9.7.2 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before 591dc00dc99dc2a426167a3b5257c0c94bd45e91 (git)4 sourcesNoneNoCVE-2026-73683Laravel Socialite < 5.29.0 - Facebook OIDC Nonce Replay Authentication Bypass0.020 Aug 202622:00 UTCUnknown productSee original advisory102 sourcesCandidateNoCVE-2026-73570KEVZimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability0.026 Aug 202609:01 UTCZimbra Collaboration Suite (ZCS)See original advisory586 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.