CVE & Exploit Intelligence Database

Updated 1h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
66 results Clear all
CVE-2019-20022 6.5 MEDIUM EPSS 0.00
libsixel <1.8.3 - Memory Corruption
An invalid memory address dereference was discovered in load_pnm in frompnm.c in libsixel before 1.8.3.
CWE-672 Dec 27, 2019
CVE-2019-15691 7.2 HIGH 1 Writeup EPSS 0.04
Tigervnc < 1.10.1 - Remote Code Execution
TigerVNC version prior to 1.10.1 is vulnerable to stack use-after-return, which occurs due to incorrect usage of stack memory in ZRLEDecoder. If decoding routine would throw an exception, ZRLEDecoder may try to access stack variable, which has been already freed during the process of stack unwinding. Exploitation of this vulnerability could potentially result into remote code execution. This attack appear to be exploitable via network connectivity.
CWE-825 Dec 26, 2019
CVE-2019-19480 4.6 MEDIUM 1 Writeup EPSS 0.00
OpenSC <0.20.0-rc3 - Memory Corruption
An issue was discovered in OpenSC through 0.19.0 and 0.20.x through 0.20.0-rc3. libopensc/pkcs15-prkey.c has an incorrect free operation in sc_pkcs15_decode_prkdf_entry.
CWE-672 Dec 01, 2019
CVE-2017-14895 7.8 HIGH EPSS 0.00
Android - Info Disclosure
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, after a subsystem reset, iwpriv is not giving correct information.
CWE-672 Dec 05, 2017
CVE-2017-0544 7.8 HIGH EPSS 0.00
Android <7.1.1 - Privilege Escalation
An elevation of privilege vulnerability in CameraBase could enable a local malicious application to execute arbitrary code. This issue is rated as High because it is a local arbitrary code execution in a privileged process. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-31992879.
CWE-672 Apr 07, 2017
CVE-2009-3547 7.0 HIGH EXPLOITED 5 PoCs Analysis EPSS 0.03
Linux Kernel < 2.6.31.14 - Race Condition
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc/*/fd/ pathname.
CWE-362 Nov 04, 2009