See what became
exploitable.

Latest CVEs, exploit intelligence and public PoC references, updated hourly.

Browse latest
Last sync 22:05 UTC 8 of 8 sources healthy

Known exploited

121–135 of 208 matching entries · 3062 total · live data

CVEVulnerabilityCVSSUpdatedProductPoCKEV
CVE-2023-7028KEVGitLab Community and Enterprise Editions Improper Access Control Vulnerability0.05 Sep 202622:00 UTCGitLab CE/EESee original advisory900 sourcesVerifiedYesCVE-2023-4966KEVCitrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability9.44 Sep 202621:50 UTCNetScaler ADC and NetScaler GatewaySee original advisory109 sourcesCandidateYesCVE-2022-41352KEVn/a vulnerability9.810 Sep 202602:17 UTCn/an/a69 sourcesVerifiedYesCVE-2022-38181KEVArm Mali GPU Kernel Driver Use-After-Free Vulnerability8.811 Sep 202621:04 UTCMali Graphics Processing Unit (GPU)See original advisory185 sourcesVerifiedYesCVE-2022-37969KEVWindows 10 Version 1809 vulnerability7.810 Sep 202602:17 UTCWindows 10 Version 180910.0.17763.0 through before 10.0.17763.3406 (custom); 10.0.0 through before 10.0.17763.3406 (custom); 10.0.0 through before 10.0.19043.2006 (custom); 10.0.20348.0 through before 10.0.20348.1006 (custom); 10.0.0 through before 10.0.19042.2006 (custom); 10.0.0 through before 10.0.22000.978 (custom); 10.0.19043.0 through before 10.0.19044.2006 (custom); 10.0.10240.0 through before 10.0.10240.19444 (custom); 10.0.14393.0 through before 10.0.14393.5356 (custom); 6.1.0 through before 6.1.7601.26115 (custom); 6.3.0 through before 6.3.9600.20571 (custom); 6.0.6003.0 through before 6.0.6003.21666 (custom); 6.1.7601.0 through before 6.1.7601.26115 (custom); 6.2.9200.0 through before 6.2.9200.23865 (custom); 6.3.9600.0 through before 6.3.9600.20571 (custom)32 sourcesNoneYesCVE-2022-36804KEVAtlassian Bitbucket Server and Data Center Command Injection Vulnerability0.020 Aug 202622:00 UTCBitbucket Server and Data CenterSee original advisory836 sourcesVerifiedYesCVE-2022-30190KEVMicrosoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability9.325 Aug 202602:55 UTCWindowsSee original advisory122 sourcesCandidateYesCVE-2022-26923KEVMicrosoft Active Directory Domain Services Privilege Escalation Vulnerability9.012 Sep 202615:06 UTCActive DirectorySee original advisory145 sourcesCandidateYesCVE-2022-26134KEVAtlassian Confluence Server and Data Center Remote Code Execution Vulnerability9.85 Sep 202612:45 UTCConfluence Server/Data CenterSee original advisory1957 sourcesVerifiedYesCVE-2022-24521KEVMicrosoft Windows CLFS Driver Privilege Escalation Vulnerability7.825 Aug 202613:38 UTCWindowsSee original advisory106 sourcesCandidateYesCVE-2022-22965KEVSpring Framework JDK 9+ Remote Code Execution Vulnerability9.828 Aug 202619:19 UTCSpring FrameworkSee original advisory100 sourcesCandidateYesCVE-2022-22963KEVVMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability0.021 Aug 202622:00 UTCSpring CloudSee original advisory1021 sourcesVerifiedYesCVE-2022-22954KEVVMware Workspace ONE Access and Identity Manager Server-Side Template Injection Vulnerability10.011 Sep 202618:30 UTCWorkspace ONE Access and Identity ManagerSee original advisory70 sourcesCandidateYesCVE-2022-22718KEVMicrosoft Windows Print Spooler Privilege Escalation Vulnerability7.813 Sep 202618:32 UTCWindowsSee original advisory31 sourcesCandidateYesCVE-2022-22706KEVArm Mali GPU Kernel Driver Unspecified Vulnerability7.87 Sep 202619:21 UTCMali Graphics Processing Unit (GPU)See original advisory109 sourcesCandidateYes

Signals, not noise.

Every item keeps its source trail. Confidence describes evidence quality; severity describes potential impact. They remain separate throughout the product.

01

Collect

Incremental source connectors preserve timestamps, URLs, and content hashes.

02

Correlate

CVE, GHSA, product, repository, and advisory identifiers are deduplicated.

03

Verify

Source quality, consistency, and independent references form the confidence score.

Get the signal.

Save your watch preferences in this browser. Email delivery is not connected.