CVE & Exploit Intelligence Database
Updated 50m agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
1,556 results
Clear all
CVE-2026-3395
7.3
HIGH
3 PoCs
Analysis
EPSS 0.00
MaxSite CMS <109.1 - Code Injection
CWE-94
Mar 01, 2026
CVE-2026-27966
9.8
CRITICAL
2 PoCs
1 Writeup
Analysis
EPSS 0.00
Langflow <1.8.0 - RCE
CWE-94
Feb 26, 2026
CVE-2026-3171
3.5
LOW
1 PoC
Analysis
EPSS 0.00
Patients Waiting Area Queue 1.0 - XSS
CWE-94
Feb 25, 2026
CVE-2026-27574
9.9
CRITICAL
2 PoCs
1 Writeup
Analysis
EPSS 0.00
OneUptime <=9.5.13 - Code Injection
CWE-94
Feb 21, 2026
CVE-2026-26030
9.9
CRITICAL
2 PoCs
Analysis
EPSS 0.00
Microsoft Semantic Kernel <1.39.4 - RCE
CWE-94
Feb 19, 2026
CVE-2025-71243
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.37
SPIP Saisies 5.4.0-5.11.0 - RCE
CWE-94
Feb 19, 2026
CVE-2026-25755
8.1
HIGH
2 PoCs
2 Writeups
Analysis
EPSS 0.00
jsPDF <4.2.0 - Code Injection
CWE-94
Feb 19, 2026
CVE-2026-27174
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.60
MajorDoMo - Unauthenticated RCE
CWE-94
Feb 18, 2026
CVE-2025-70830
9.9
CRITICAL
1 PoC
Analysis
EPSS 0.00
Datart 1.0.0-rc.3 - Code Injection
CWE-94
Feb 17, 2026
CVE-2020-37167
8.4
HIGH
1 PoC
Analysis
EPSS 0.00
ClamAV - Code Injection
CWE-94
Feb 12, 2026
CVE-2020-37186
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Chevereto 3.13.4 Core - RCE
CWE-94
Feb 11, 2026
CVE-2020-37178
7.5
HIGH
1 PoC
Analysis
EPSS 0.00
KeePass Password Safe <2.44 - DoS
CWE-94
Feb 11, 2026
CVE-2026-1560
8.8
HIGH
2 PoCs
Analysis
EPSS 0.00
WordPress Lazy Blocks <4.2.0 - Authenticated RCE
CWE-94
Feb 11, 2026
CVE-2026-25807
8.8
HIGH
2 PoCs
Analysis
EPSS 0.00
ZAI Shell <9.0.3 - RCE
CWE-94
Feb 09, 2026
CVE-2020-37137
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.00
PHP-Fusion 9.03.50 - RCE
CWE-95
Feb 05, 2026
CVE-2020-37052
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
AirControl 1.4.2 - RCE
CWE-94
Jan 30, 2026
CVE-2025-24293
1 PoC
Analysis
EPSS 0.00
Rubygems Activestorage < 8.0.2.1 - Command Injection
CWE-94
Jan 30, 2026
CVE-2026-1340
9.8
CRITICAL
EXPLOITED
3 PoCs
Analysis
EPSS 0.51
Ivanti Endpoint Manager Mobile - Code Injection
CWE-94
Jan 29, 2026
CVE-2026-1281
9.8
CRITICAL
KEV
3 PoCs
Analysis
EPSS 0.65
Ivanti Endpoint Manager Mobile (EPMM) unauthenticated RCE
CWE-94
Jan 29, 2026
CVE-2026-23830
10.0
CRITICAL
2 PoCs
Analysis
EPSS 0.00
SandboxJS <0.8.26 - RCE
CWE-94
Jan 28, 2026