CVE & Exploit Intelligence Database

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,847 CVEs tracked 53,242 with exploits 4,725 exploited in wild 1,540 CISA KEV 3,918 Nuclei templates 37,802 vendors 42,493 researchers
13,513 results Clear all
CVE-2025-70237 9.8 CRITICAL 1 Writeup EPSS 0.00
D-Link DIR-513 v1.10 - Buffer Overflow
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetPortTr.
CWE-121 Mar 03, 2026
CVE-2025-70236 9.8 CRITICAL 1 Writeup EPSS 0.00
D-Link DIR-513 v1.10 - Buffer Overflow
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDomainFilter.
CWE-787 Mar 03, 2026
CVE-2025-66945 9.1 CRITICAL 1 Writeup EPSS 0.00
Zdir Pro 4.x - Path Traversal
A path traversal vulnerability exists in the ZIP extraction API of Zdir Pro 4.x. When a crafted ZIP archive is processed by the backend at /api/extract, files may be written outside the intended directory, leading to arbitrary file overwrite and potentially remote code execution
CWE-787 Mar 03, 2026
CVE-2026-3342 7.2 HIGH EPSS 0.00
WatchGuard Fireware OS - Memory Corruption
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged administrator to execute arbitrary code with root permissions via an exposed management interface. This vulnerability affects Fireware OS 11.9 up to and including 11.12.4_Update1, 12.0 up to and including 12.11.7 and 2025.1 up to and including 2026.1.1.
CWE-787 Mar 03, 2026
CVE-2026-0037 8.4 HIGH EPSS 0.00
ffa.c - Memory Corruption
In multiple functions of ffa.c, there is a possible memory corruption due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-787 Mar 02, 2026
CVE-2026-0035 8.4 HIGH EPSS 0.00
MediaProvider - Privilege Escalation
In createRequest of MediaProvider.java, there is a possible way for an app to gain read/write access to non-existing files due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-125 Mar 02, 2026
CVE-2026-0032 7.8 HIGH EPSS 0.00
mem_protect.c - Privilege Escalation
In multiple functions of mem_protect.c, there is a possible out-of-bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-787 Mar 02, 2026
CVE-2026-0030 8.4 HIGH EPSS 0.00
mem_protect.c - Privilege Escalation
In __host_check_page_state_range of mem_protect.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-787 Mar 02, 2026
CVE-2026-0010 8.4 HIGH EPSS 0.00
IDrmManagerService - Privilege Escalation
In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-787 Mar 02, 2026
CVE-2025-32313 8.4 HIGH EPSS 0.00
UsageEvents - Privilege Escalation
In UsageEvents of UsageEvents.java, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE-787 Mar 02, 2026
CVE-2025-59603 7.8 HIGH EPSS 0.00
Product - Memory Corruption
Memory Corruption when processing invalid user address with nonstandard buffer address.
CWE-787 Mar 02, 2026
CVE-2025-47373 7.8 HIGH EPSS 0.00
TA Invocation - Memory Corruption
Memory Corruption when accessing buffers with invalid length during TA invocation.
CWE-787 Mar 02, 2026
CVE-2026-20444 6.7 MEDIUM EPSS 0.00
Display - Memory Corruption
In display, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10436995; Issue ID: MSV-5721.
CWE-787 Mar 02, 2026
CVE-2026-20441 6.7 MEDIUM EPSS 0.00
MAE - Privilege Escalation
In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10432500; Issue ID: MSV-5803.
CWE-787 Mar 02, 2026
CVE-2026-20440 6.7 MEDIUM EPSS 0.00
MAE - Privilege Escalation
In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10431968; Issue ID: MSV-5824.
CWE-1285 Mar 02, 2026
CVE-2026-20434 7.5 HIGH EPSS 0.00
Modem - Memory Corruption
In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY00782946; Issue ID: MSV-4135.
CWE-787 Mar 02, 2026
CVE-2026-20430 8.8 HIGH EPSS 0.00
wlan AP FW - Privilege Escalation
In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00467553; Issue ID: MSV-5151.
CWE-787 Mar 02, 2026
CVE-2026-20428 6.7 MEDIUM EPSS 0.00
Display - Privilege Escalation
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5536.
CWE-787 Mar 02, 2026
CVE-2026-20427 6.7 MEDIUM EPSS 0.00
Display - Privilege Escalation
In display, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5537.
CWE-787 Mar 02, 2026
CVE-2026-20426 6.7 MEDIUM EPSS 0.00
Display - Privilege Escalation
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5538.
CWE-787 Mar 02, 2026