See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

61–75 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-16232KEVCheck Point SmartConsole Improper Authentication Vulnerability0.021 Jul 202622:00 UTCSmartConsoleSee original advisory2 sourcesNoneYesCVE-2026-15409KEVSonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability10.07 Sep 202619:21 UTCSMA1000 AppliancesSee original advisory109 sourcesCandidateYesCVE-2026-9586KEVSangoma Switchvox SQL Injection Vulnerability0.01 Sep 202622:00 UTCSwitchvoxSee original advisory53 sourcesNoneYesCVE-2026-9198KEVIBM Langflow Code Injection Vulnerability0.01 Sep 202622:00 UTCLangflowSee original advisory156 sourcesVerifiedYesCVE-2026-8452KEVCitrix NetScaler ADC and NetScaler Gateway Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability0.025 Aug 202622:00 UTCNetScaler ADC and NetScaler GatewaySee original advisory51 sourcesNoneYesCVE-2026-8037KEVProgress LoadMaster Command Injection Vulnerability0.06 Aug 202622:00 UTCLoadMasterSee original advisory2 sourcesNoneYesCVE-2026-5281KEVGoogle Dawn Use-After-Free Vulnerability8.826 Aug 202608:07 UTCDawnSee original advisory447 sourcesCandidateYesCVE-2026-0770KEVLangflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability0.020 Jul 202622:00 UTCLangflowSee original advisory3 sourcesVerifiedYesCVE-2025-68686KEVFortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability0.026 Jul 202622:00 UTCFortiOSSee original advisory2 sourcesNoneYesCVE-2025-68613KEVn8n Improper Control of Dynamically-Managed Code Resources Vulnerability10.011 Sep 202622:10 UTCn8nSee original advisory698 sourcesVerifiedYesCVE-2025-67038KEVEDS5000 series vulnerability9.38 Sep 202617:00 UTCEDS5000 series0 through 2.1.0.0R3 (custom); before 2.6.0.4R6 (custom); before 3.21.0.0R1 (custom)36 sourcesNoneYesCVE-2025-62593KEVRay-Project Ray Code Injection Vulnerability0.016 Aug 202622:00 UTCRaySee original advisory2 sourcesNoneYesCVE-2025-57819KEVSangoma FreePBX Authentication Bypass Vulnerability10.02 Sep 202622:00 UTCFreePBXSee original advisory693 sourcesVerifiedYesCVE-2025-55182KEVMeta React Server Components Remote Code Execution Vulnerability0.010 Sep 202622:00 UTCReact Server ComponentsSee original advisory460 sourcesVerifiedYesCVE-2025-49113KEVRoundCube Webmail Deserialization of Untrusted Data Vulnerability9.911 Sep 202618:32 UTCWebmailSee original advisory115 sourcesVerifiedYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.