CVE & Exploit Intelligence Database
Updated 2h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
118 results
Clear all
CVE-2025-8110
8.8
HIGH
KEV
8 PoCs
Analysis
NUCLEI
EPSS 0.20
Gogs < 0.13.3 - Path Traversal
CWE-22
Dec 10, 2025
CVE-2025-55182
10.0
CRITICAL
KEV
RANSOMWARE
473 PoCs
Analysis
NUCLEI
EPSS 0.70
React Server Components <19.2.0 - RCE
CWE-502
Dec 03, 2025
CVE-2025-58360
8.2
HIGH
KEV
8 PoCs
Analysis
NUCLEI
EPSS 0.86
GeoServer WMS GetMap XXE Arbitrary File Read
CWE-611
Nov 25, 2025
CVE-2025-11953
9.8
CRITICAL
KEV
6 PoCs
Analysis
EPSS 0.03
React-native-community React Native C... - OS Command Injection
CWE-78
Nov 03, 2025
CVE-2025-54236
9.1
CRITICAL
KEV
5 PoCs
Analysis
NUCLEI
EPSS 0.74
Magento SessionReaper
CWE-20
Sep 09, 2025
CVE-2025-38352
7.4
HIGH
KEV
7 PoCs
Analysis
EPSS 0.00
Linux Kernel < 5.4.295 - TOCTOU Race Condition
CWE-367
Jul 22, 2025
CVE-2025-54313
7.5
HIGH
KEV
2 PoCs
Analysis
EPSS 0.07
eslint-config-prettier <10.1.7 - Code Injection
CWE-506
Jul 19, 2025
CVE-2025-49113
9.9
CRITICAL
KEV
28 PoCs
Analysis
NUCLEI
EPSS 0.90
Roundcube Webmail < 1.5.10 - Insecure Deserialization
CWE-502
Jun 02, 2025
CVE-2025-35939
5.3
MEDIUM
KEV
EPSS 0.30
Craft CMS - RCE
CWE-472
May 07, 2025
CVE-2024-58136
9.0
CRITICAL
KEV
1 Writeup
NUCLEI
EPSS 0.61
Yii 2 <2.0.52 - RCE
CWE-424
Apr 10, 2025
CVE-2025-3248
9.8
CRITICAL
KEV
32 PoCs
Analysis
NUCLEI
EPSS 0.92
Langflow AI - Unauthenticated Remote Code Execution
CWE-306
Apr 07, 2025
CVE-2025-31125
5.3
MEDIUM
KEV
6 PoCs
Analysis
NUCLEI
EPSS 0.78
Vite Development Server - Path Traversal
CWE-284
Mar 31, 2025
CVE-2025-30154
8.6
HIGH
KEV
1 Writeup
EPSS 0.15
reviewdog/action-setup <v1 - RCE
CWE-506
Mar 19, 2025
CVE-2025-30066
8.6
HIGH
KEV
2 PoCs
Analysis
EPSS 0.87
tj-actions <46 - Info Disclosure
CWE-506
Mar 15, 2025
CVE-2025-24813
9.8
CRITICAL
KEV
60 PoCs
Analysis
NUCLEI
EPSS 0.94
Tomcat Partial PUT Java Deserialization
CWE-502
Mar 10, 2025
CVE-2025-24893
9.8
CRITICAL
KEV
49 PoCs
Analysis
NUCLEI
EPSS 0.94
XWiki Platform - Remote Code Execution
CWE-95
Feb 20, 2025
CVE-2025-24016
9.9
CRITICAL
KEV
10 PoCs
Analysis
NUCLEI
EPSS 0.93
Wazuh server remote code execution caused by an unsafe deserialization vulnerability.
CWE-502
Feb 10, 2025
CVE-2025-23209
8.0
HIGH
KEV
1 Writeup
EPSS 0.19
Craftcms Craft Cms < 4.13.8 - Code Injection
CWE-94
Jan 18, 2025
CVE-2024-53197
7.8
HIGH
KEV
EPSS 0.01
Linux Kernel < 4.19.325 - Out-of-Bounds Write
CWE-787
Dec 27, 2024
CVE-2024-53150
7.1
HIGH
KEV
EPSS 0.01
Debian Linux < 5.4.287 - Out-of-Bounds Read
CWE-125
Dec 24, 2024