See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 10:05 UTC 8 of 8 sources healthy

Latest intelligence

106–120 of 434 matching entries · 3145 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2026-16028Protocol::HTTP2 versions before 1.14 for Perl allow memory exhaustion via closed streams that stream_state never removes from the connect...0.07 Sep 202619:17 UTCUnknown productbefore 1.14 (custom)4 sourcesNoneNoCVE-2026-15981SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter0.04 Sep 202622:00 UTCUnknown productSee original advisory95 sourcesVerifiedNoCVE-2026-15253Exploit for CVE-2026-152536.826 Aug 202614:30 UTCEasy Media Replace0 through 0.2.0 (semver)53 sourcesCandidateNoCVE-2026-15013miniOrange 5.4.3 - Unauthenticated Auth Bypass0.031 Aug 202622:00 UTCUnknown productSee original advisory149 sourcesVerifiedNoCVE-2026-14962Exploit for CVE-2026-149628.611 Sep 202616:50 UTCUnknown productSee original advisory50 sourcesVerifiedNoCVE-2026-14620webpack_devserver 5.2.5 - CSRF0.016 Aug 202622:00 UTCUnknown productSee original advisory2 sourcesVerifiedNoCVE-2026-11387CVE-2026-11387 repository0.08 Sep 202622:00 UTCUnknown productSee original advisory55 sourcesCandidateNoCVE-2026-11057CVE-2026-5281-CVE-2026-11057-fullchain6.526 Aug 202608:07 UTCUnknown productSee original advisory102 sourcesCandidateNoCVE-2026-9833Exploit for CVE-2026-98337.111 Sep 202610:00 UTCUnknown productSee original advisory42 sourcesCandidateNoCVE-2026-9830CVE-2026-9830 Proof of Concept0.026 Aug 202612:56 UTCUnknown productSee original advisory207 sourcesCandidateNoCVE-2026-9277shell-quote vulnerability9.214 Sep 202611:19 UTCshell-quote1.1.0 through before 1.8.4 (semver)40 sourcesNoneNoCVE-2026-8732CVE-2026-8732 exploit9.86 Sep 202608:32 UTCUnknown productSee original advisory89 sourcesCandidateNoCVE-2026-5027Langflow 1.8.4 - Path Traversal to Remote Code Execution0.030 Aug 202622:00 UTCUnknown productSee original advisory104 sourcesVerifiedNoCVE-2026-3891WooCommerce 1.5.0 - Unauthenticated Arbitrary File Upload0.020 Aug 202622:00 UTCUnknown productSee original advisory203 sourcesVerifiedNoCVE-2026-3844CVE-2026-38449.826 Aug 202610:21 UTCUnknown productSee original advisory809 sourcesCandidateNo

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.