See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 16:06 UTC 8 of 8 sources healthy

Latest intelligence

376–390 of 1050 matching entries · 3191 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-58138OrkesConductor 3.30.2 - Unauthenticated Remote Code Execution0.09 Aug 202622:00 UTCUnknown productSee original advisory2 sourcesVerifiedNoCVE-2026-58058Nmap 7.99 - Extension Header Integer Underflow0.016 Aug 202622:00 UTCUnknown productSee original advisory2 sourcesVerifiedNoCVE-2026-58037Exploit for CVE-2026-580259.86 Sep 202605:50 UTCUnknown productSee original advisory83 sourcesCandidateNoCVE-2026-57588Tenable Nessus 10.12.1 - SQL Injection0.05 Sep 202622:00 UTCUnknown productSee original advisory167 sourcesVerifiedNoCVE-2026-56395Rejected reason: This record is a duplicate; use CVE-2026-56397 instead.0.017 Sep 202615:16 UTCUnknown productSee vendor advisory1 sourcesNoneNoCVE-2026-56155KEVMicrosoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability0.013 Jul 202622:00 UTCActive Directory Federation ServicesSee original advisory2 sourcesNoneYesCVE-2026-56015Net::IP::LPM versions before 1.11 for Perl allow a heap out-of-bounds read via an unbounded prefix length.9.17 Sep 202617:17 UTCUnknown productbefore 1.11 (custom)4 sourcesNoneNoCVE-2026-55953OTP vulnerability9.17 Sep 202623:17 UTCOTP17.0 through before 27.3.4.15 (otp); 28.0 through before 28.5.0.4 (otp); 29.0 through before 29.0.4 (otp); 5.3.4 through before 11.2.12.11 (otp); 11.3 through before 11.6.0.4 (otp); 11.7 through before 11.7.4 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before * (git)7 sourcesNoneNoCVE-2026-55951OTP vulnerability8.27 Sep 202623:17 UTCOTP17.0 through before 27.3.4.17 (otp); 28.0 through before 28.5.0.6 (otp); 29.0 through before 29.0.6 (otp); 5.10 through before 9.3.2.7 (otp); 9.4 through before 9.6.2.3 (otp); 9.7 through before 9.7.2 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before * (git)6 sourcesNoneNoCVE-2026-55780NanaZip 6.5 - DoS0.016 Aug 202622:00 UTCUnknown productSee original advisory2 sourcesVerifiedNoCVE-2026-55584phpSysInfo 3.4.5 - IP Allowlist Bypass0.016 Aug 202622:00 UTCUnknown productSee original advisory2 sourcesVerifiedNoCVE-2026-55040KEVMicrosoft SharePoint Weak Authentication Vulnerability0.026 Aug 202608:15 UTCSharePointSee original advisory449 sourcesVerifiedYesCVE-2026-54891OTP vulnerability6.37 Sep 202623:17 UTCOTP17.0 through before 27.3.4.14 (otp); 28.0 through before 28.5.0.3 (otp); 29.0 through before 29.0.3 (otp); 5.3.4 through before 11.2.12.10 (otp); 11.3 through before 11.6.0.3 (otp); 11.7 through before 11.7.3 (otp); 84adefa331c4159d432d22840663c38f155cd4c1 through before 07d2d0e93f6aaf7652a81e8df075fc1728da5e96 (git)5 sourcesNoneNoCVE-2026-54647CubeCart 6.7.4 - SQL injection0.030 Aug 202622:00 UTCUnknown productSee original advisory106 sourcesVerifiedNoCVE-2026-54646CubeCart 6.7.4 - SQL0.030 Aug 202622:00 UTCUnknown productSee original advisory106 sourcesVerifiedNo

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.