See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 16:06 UTC 8 of 8 sources healthy

Latest intelligence

451–465 of 1050 matching entries · 3191 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-42978Exploit for Use After Free in Microsoft10.011 Sep 202622:10 UTCUnknown productSee original advisory198 sourcesVerifiedNoCVE-2026-42977Exploit for CVE-2026-42978-PoC-Research7.85 Sep 202613:44 UTCUnknown productSee original advisory43 sourcesCandidateNoCVE-2026-42897KEVMicrosoft Exchange Server Cross-Site Scripting Vulnerability8.115 Sep 202610:56 UTCMicrosoftSee original advisory37 sourcesCandidateYesCVE-2026-42533nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04.0.026 Aug 202613:19 UTCUnknown productSee original advisory1002 sourcesVerifiedNoCVE-2026-42167CVE-2026-42167 - ProFTPD mod_sql post-authentication SQLi - RCE0.024 Aug 202622:00 UTCUnknown productSee original advisory481 sourcesVerifiedNoCVE-2026-41456Bludit CMS 3.20.0 - Reflected Cross-Site Scripting0.01 Sep 202622:00 UTCUnknown productSee original advisory108 sourcesVerifiedNoCVE-2026-41096Exploit for Improper Input Validation in N8N CVE-2025-68613 CVE-2026-20805 CVE-2026-21858 CVE-2026-24291 CVE-210.011 Sep 202622:10 UTCUnknown productSee original advisory105 sourcesVerifiedNoCVE-2026-41089Exploit for Improper Input Validation in N8N CVE-2025-68613 CVE-2026-20805 CVE-2026-21858 CVE-2026-24291 CVE-210.011 Sep 202622:10 UTCUnknown productSee original advisory457 sourcesVerifiedNoCVE-2026-39987KEVMarimo Remote Code Execution Vulnerability0.01 Sep 202622:00 UTCMarimoSee original advisory111 sourcesVerifiedYesCVE-2026-39808KEVFortinet FortiSandbox OS Command Injection Vulnerability0.015 Jul 202622:00 UTCFortiSandboxSee original advisory2 sourcesNoneYesCVE-2026-39031cve-2026-39031-lansweeper-lsrunase2-lsencrypt2 exploit5.56 Sep 202608:29 UTCUnknown productSee original advisory45 sourcesCandidateNoCVE-2026-37065CVE-2026-37065 exploit9.113 Sep 202618:33 UTCUnknown productSee original advisory18 sourcesCandidateNoCVE-2026-36669CVE-2026-36669-FengOffice exploit9.85 Sep 202608:11 UTCUnknown productSee original advisory168 sourcesVerifiedNoCVE-2026-34486KEVApache Tomcat Missing Encryption of Sensitive Data Vulnerability0.03 Aug 202622:00 UTCTomcatSee original advisory2 sourcesNoneYesCVE-2026-33824KEVMicrosoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability0.017 Aug 202622:00 UTCInternet Key Exchange (IKE) Service ExtensionsSee original advisory2 sourcesNoneYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.