CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,278 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,568 researchers
2,435 results Clear all
CVE-2021-21341 7.5 HIGH 1 PoC Analysis EPSS 0.27
Netapp Oncommand Insight < 5.15.14 - Insecure Deserialization
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is vulnerability which may allow a remote attacker to allocate 100% CPU time on the target system depending on CPU type or parallel execution of such a payload resulting in a denial of service only by manipulating the processed input stream. No user is affected who followed the recommendation to setup XStream's security framework with a whitelist limited to the minimal required types. If you rely on XStream's default blacklist of the Security Framework, you will have to use at least version 1.4.16.
CWE-502 Mar 23, 2021
CVE-2021-26295 9.8 CRITICAL EXPLOITED 7 PoCs Analysis NUCLEI EPSS 0.94
Apache OFBiz SOAP Java Deserialization
Apache OFBiz has unsafe deserialization prior to 17.12.06. An unauthenticated attacker can use this vulnerability to successfully take over Apache OFBiz.
CWE-502 Mar 22, 2021
CVE-2020-36282 9.8 CRITICAL EPSS 0.02
Rabbitmq Jms Client < 1.15.2 - Insecure Deserialization
JMS Client for RabbitMQ 1.x before 1.15.2 and 2.x before 2.2.0 is vulnerable to unsafe deserialization that can result in code execution via crafted StreamMessage data.
CWE-502 Mar 12, 2021
CVE-2020-29045 9.8 CRITICAL 1 PoC Analysis EPSS 0.35
Fivestarplugins Five Star Restaurant Menu - Insecure Deserialization
The food-and-drink-menu plugin through 2.2.0 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operation on the fdm_cart cookie in load_cart_from_cookie in includes/class-cart-manager.php.
CWE-502 Mar 11, 2021
CVE-2021-21371 5.0 MEDIUM 1 Writeup EPSS 0.00
Tenable Jira Cloud < 1.1.21 - Insecure Deserialization
Tenable for Jira Cloud is an open source project designed to pull Tenable.io vulnerability data, then generate Jira Tasks and sub-tasks based on the vulnerabilities' current state. It published in pypi as "tenable-jira-cloud". In tenable-jira-cloud before version 1.1.21, it is possible to run arbitrary commands through the yaml.load() method. This could allow an attacker with local access to the host to run arbitrary code by running the application with a specially crafted YAML configuration file. This is fixed in version 1.1.21 by using yaml.safe_load() instead of yaml.load().
CWE-502 Mar 10, 2021
CVE-2021-21488 6.5 MEDIUM EPSS 0.01
SAP Netweaver Knowledge Management - Insecure Deserialization
Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deserialize user-controlled data without verification, leading to insecure deserialization which triggers the attacker’s code, therefore impacting Availability.
CWE-502 Mar 09, 2021
CVE-2020-24914 9.8 CRITICAL EXPLOITED EPSS 0.38
Qcubed < 3.1.1 - Insecure Deserialization
A PHP object injection bug in profile.php in qcubed (all versions including 3.1.1) unserializes the untrusted data of the POST-variable "strProfileData" and allows an unauthenticated attacker to execute code via a crafted POST request.
CWE-502 Mar 04, 2021
CVE-2020-24036 8.8 HIGH EPSS 0.01
ForkCMS <5.8.3 - Command Injection
PHP object injection in the Ajax endpoint of the backend in ForkCMS below version 5.8.3 allows an authenticated remote user to execute malicious code.
CWE-502 Mar 04, 2021
CVE-2020-29047 9.8 CRITICAL EXPLOITED NUCLEI EPSS 0.85
Thimpress WP Hotel Booking < 1.10.2 - Insecure Deserialization
The wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operation on the thimpress_hotel_booking_1 cookie in load in includes/class-wphb-sessions.php.
CWE-502 Mar 03, 2021
CVE-2021-20076 8.8 HIGH EPSS 0.03
Tenable.sc < 5.17.0 - Insecure Deserialization
Tenable.sc and Tenable.sc Core versions 5.13.0 through 5.17.0 were found to contain a vulnerability that could allow an authenticated, unprivileged user to perform Remote Code Execution (RCE) on the Tenable.sc server via Hypertext Preprocessor unserialization.
CWE-502 Mar 03, 2021
CVE-2021-26857 7.8 HIGH KEV RANSOMWARE 1 PoC Analysis EPSS 0.45
Microsoft Exchange Server - Insecure Deserialization
Microsoft Exchange Server Remote Code Execution Vulnerability
CWE-502 Mar 03, 2021
CVE-2021-24066 8.8 HIGH EPSS 0.05
Microsoft Sharepoint Enterprise Server - Insecure Deserialization
Microsoft SharePoint Remote Code Execution Vulnerability
CWE-502 Feb 25, 2021
CVE-2021-27335 9.8 CRITICAL EPSS 0.02
KollectApps <4.8.16c - RCE
KollectApps before 4.8.16c is affected by insecure Java deserialization, leading to Remote Code Execution via a ysoserial.payloads.CommonsCollections parameter.
CWE-502 Feb 18, 2021
CVE-2021-22855 9.8 CRITICAL EPSS 0.01
Soar Cloud System - Code Injection
The specific function of HR Portal of Soar Cloud System accepts any type of object to be deserialized. Attackers can send malicious serialized objects to execute arbitrary commands.
CWE-502 Feb 17, 2021
CVE-2021-23338 6.6 MEDIUM EPSS 0.03
qlib - Code Injection
This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function.
CWE-502 Feb 15, 2021
CVE-2021-27213 9.8 CRITICAL 1 Writeup EPSS 0.00
Pystemon < 2021-02-13 - Insecure Deserialization
config.py in pystemon before 2021-02-13 allows code execution via YAML deserialization because SafeLoader and safe_load are not used.
CWE-502 Feb 14, 2021
CVE-2020-27868 9.8 CRITICAL EPSS 0.69
Qognify Ocularis - Insecure Deserialization
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Qognify Ocularis 5.9.0.395. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of serialized objects provided to the EventCoordinator endpoint. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-11257.
CWE-502 Feb 12, 2021
CVE-2021-26915 8.1 HIGH EPSS 0.34
Netmotionsoftware Netmotion Mobility - Insecure Deserialization
NetMotion Mobility before 11.73 and 12.x before 12.02 allows unauthenticated remote attackers to execute arbitrary code as SYSTEM because of Java deserialization in webrepdb StatusServlet.
CWE-502 Feb 08, 2021
CVE-2021-26914 8.1 HIGH 1 PoC Analysis EPSS 0.64
Netmotionsoftware Netmotion Mobility - Insecure Deserialization
NetMotion Mobility before 11.73 and 12.x before 12.02 allows unauthenticated remote attackers to execute arbitrary code as SYSTEM because of Java deserialization in MvcUtil valueStringToObject.
CWE-502 Feb 08, 2021
CVE-2021-26913 8.1 HIGH EPSS 0.35
Netmotionsoftware Netmotion Mobility - Insecure Deserialization
NetMotion Mobility before 11.73 and 12.x before 12.02 allows unauthenticated remote attackers to execute arbitrary code as SYSTEM because of Java deserialization in RpcServlet.
CWE-502 Feb 08, 2021