See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

91–105 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2025-14733KEVFireware OS vulnerability9.39 Sep 202602:17 UTCFireware OS2025.1 through before 2025.1.4 (custom); 12.0 through before 12.11.6 (custom); 11.10.2 through 11.12.4+541730 (custom); 12.0 through before 12.3.1+728352 (custom); 12.0 through before 12.5.15 (custom)34 sourcesNoneYesCVE-2025-5777KEVCitrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability9.33 Sep 202621:14 UTCNetScaler ADC and GatewaySee original advisory152 sourcesVerifiedYesCVE-2025-3248KEVLangflow Missing Authentication Vulnerability0.08 Sep 202622:00 UTCLangflowSee original advisory824 sourcesVerifiedYesCVE-2025-0411KEV7-Zip Mark of the Web Bypass Vulnerability7.013 Sep 202618:06 UTC7-ZipSee original advisory29 sourcesCandidateYesCVE-2024-55591KEVFortinet FortiOS and FortiProxy Authentication Bypass Vulnerability9.814 Sep 202604:53 UTCFortiOS and FortiProxySee original advisory42 sourcesCandidateYesCVE-2024-49138KEVMicrosoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability0.01 Sep 202622:00 UTCWindowsSee original advisory518 sourcesVerifiedYesCVE-2024-36401KEVOSGeo GeoServer GeoTools Eval Injection Vulnerability0.014 Sep 202622:00 UTCGeoServerSee original advisory169 sourcesCandidateYesCVE-2024-23897KEVJenkins Command Line Interface (CLI) Path Traversal Vulnerability9.827 Aug 202622:00 UTCJenkins Command Line Interface (CLI)See original advisory1335 sourcesVerifiedYesCVE-2024-21887KEVIvanti Connect Secure and Policy Secure Command Injection Vulnerability9.15 Sep 202609:04 UTCConnect Secure and Policy SecureSee original advisory49 sourcesCandidateYesCVE-2024-21762KEVFortinet FortiOS Out-of-Bound Write Vulnerability0.031 Aug 202622:00 UTCFortiOSSee original advisory99 sourcesCandidateYesCVE-2024-21413KEVMicrosoft Outlook Improper Input Validation Vulnerability0.013 Sep 202622:00 UTCOffice OutlookSee original advisory463 sourcesCandidateYesCVE-2024-13159KEVIvanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability9.811 Sep 202618:30 UTCEndpoint Manager (EPM)See original advisory70 sourcesCandidateYesCVE-2024-12356KEVBeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability0.03 Sep 202622:00 UTCPrivileged Remote Access (PRA) and Remote Support (RS)See original advisory89 sourcesCandidateYesCVE-2024-9680KEVMozilla Firefox Use-After-Free Vulnerability9.811 Sep 202612:40 UTCFirefoxSee original advisory48 sourcesCandidateYesCVE-2024-4885KEVProgress WhatsUp Gold Path Traversal Vulnerability9.815 Sep 202610:56 UTCWhatsUp GoldSee original advisory31 sourcesCandidateYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.