See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

106–120 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2024-4577KEVPHP-CGI OS Command Injection Vulnerability9.84 Sep 202607:30 UTCPHPSee original advisory1585 sourcesVerifiedYesCVE-2024-4040KEVCrushFTP VFS Sandbox Escape Vulnerability10.012 Sep 202615:07 UTCCrushFTPSee original advisory59 sourcesCandidateYesCVE-2023-49105KEVownCloud Improper Authentication Vulnerability0.026 Aug 202622:00 UTCownCloudSee original advisory52 sourcesNoneYesCVE-2023-46805KEVIvanti Connect Secure and Policy Secure Authentication Bypass Vulnerability9.15 Sep 202609:04 UTCConnect Secure and Policy SecureSee original advisory49 sourcesCandidateYesCVE-2023-46604KEVApache ActiveMQ Deserialization of Untrusted Data Vulnerability0.031 Aug 202622:00 UTCActiveMQSee original advisory201 sourcesCandidateYesCVE-2023-42793KEVJetBrains TeamCity Authentication Bypass Vulnerability0.04 Sep 202622:00 UTCTeamCitySee original advisory1159 sourcesVerifiedYesCVE-2023-36025KEVMicrosoft Windows SmartScreen Security Feature Bypass Vulnerability8.87 Sep 202619:19 UTCWindowsSee original advisory73 sourcesCandidateYesCVE-2023-33107KEVQualcomm Multiple Chipsets Integer Overflow Vulnerability8.48 Sep 202614:39 UTCMultiple ChipsetsSee original advisory130 sourcesCandidateYesCVE-2023-27997KEVFortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability9.831 Aug 202622:00 UTCFortiOS and FortiProxy SSL-VPNSee original advisory471 sourcesCandidateYesCVE-2023-23397KEVMicrosoft Office Outlook Privilege Escalation Vulnerability0.027 Aug 202622:00 UTCOfficeSee original advisory1405 sourcesCandidateYesCVE-2023-22518KEVAtlassian Confluence Data Center and Server Improper Authorization Vulnerability10.028 Aug 202608:02 UTCConfluence Data Center and ServerSee original advisory127 sourcesCandidateYesCVE-2023-22515KEVAtlassian Confluence Data Center and Server Broken Access Control Vulnerability10.028 Aug 202608:02 UTCConfluence Data Center and ServerSee original advisory1341 sourcesCandidateYesCVE-2023-21674KEVMicrosoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability8.85 Sep 202616:33 UTCWindowsSee original advisory4 sourcesCandidateYesCVE-2023-20273KEVCisco IOS XE Web UI Command Injection Vulnerability10.04 Sep 202613:57 UTCCisco IOS XE Web UISee original advisory4 sourcesCandidateYesCVE-2023-20198KEVCisco IOS XE Web UI Privilege Escalation Vulnerability10.04 Sep 202613:57 UTCIOS XE Web UISee original advisory4 sourcesCandidateYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.