CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
13,708 results Clear all
CVE-2026-21512 6.5 MEDIUM EPSS 0.00
Microsoft Azure Devops Server < 2022.2.0 - SSRF
Server-side request forgery (ssrf) in Azure DevOps Server allows an authorized attacker to perform spoofing over a network.
CWE-918 Feb 10, 2026
CVE-2026-21511 7.5 HIGH EPSS 0.00
Microsoft 365 Apps < 16.0.19127.20518 - Insecure Deserialization
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
CWE-502 Feb 10, 2026
CVE-2026-21510 8.8 HIGH KEV 2 PoCs Analysis EPSS 0.03
Windows Shell < unknown - Privilege Escalation
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
CWE-693 Feb 10, 2026
CVE-2026-21508 7.0 HIGH 1 PoC Analysis EPSS 0.00
Microsoft Windows 10 1607 < 10.0.14393.8868 - Authentication Bypass
Improper authentication in Windows Storage allows an authorized attacker to elevate privileges locally.
CWE-287 Feb 10, 2026
CVE-2026-21261 5.5 MEDIUM EPSS 0.00
Microsoft Office Excel - Info Disclosure
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CWE-125 Feb 10, 2026
CVE-2026-21260 7.5 HIGH EPSS 0.00
Microsoft Office Outlook - Info Disclosure
Exposure of sensitive information to an unauthorized actor in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
CWE-200 Feb 10, 2026
CVE-2026-21259 7.8 HIGH EPSS 0.00
Microsoft Office Excel - Privilege Escalation
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to elevate privileges locally.
CWE-122 Feb 10, 2026
CVE-2026-21258 5.5 MEDIUM EPSS 0.00
Microsoft Office Excel - Info Disclosure
Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CWE-20 Feb 10, 2026
CVE-2026-21257 8.0 HIGH EPSS 0.00
GitHub Copilot & VS - Command Injection
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an authorized attacker to elevate privileges over a network.
CWE-77 Feb 10, 2026
CVE-2026-21256 8.8 HIGH EPSS 0.00
GitHub Copilot & VS - Command Injection
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code over a network.
CWE-94 Feb 10, 2026
CVE-2026-21255 8.8 HIGH EPSS 0.00
Windows Hyper-V - Privilege Escalation
Improper access control in Windows Hyper-V allows an authorized attacker to bypass a security feature locally.
CWE-284 Feb 10, 2026
CVE-2026-21253 7.0 HIGH EPSS 0.00
Mailslot File System < unknown - Use After Free
Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally.
CWE-416 Feb 10, 2026
CVE-2026-21251 7.8 HIGH EPSS 0.00
Windows Cluster Client Failover - Privilege Escalation
Use after free in Windows Cluster Client Failover allows an authorized attacker to elevate privileges locally.
CWE-416 Feb 10, 2026
CVE-2026-21250 7.8 HIGH EPSS 0.00
Windows HTTP.sys - Privilege Escalation
Untrusted pointer dereference in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CWE-822 Feb 10, 2026
CVE-2026-21249 3.3 LOW EPSS 0.00
Windows NTLM - Path Traversal
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing locally.
CWE-73 Feb 10, 2026
CVE-2026-21248 7.3 HIGH EPSS 0.00
Windows Hyper-V - Buffer Overflow
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.
CWE-122 Feb 10, 2026
CVE-2026-21247 7.3 HIGH EPSS 0.00
Windows Hyper-V - Code Injection
Improper input validation in Windows Hyper-V allows an authorized attacker to execute code locally.
CWE-122 Feb 10, 2026
CVE-2026-21246 7.8 HIGH EPSS 0.00
Microsoft Graphics Component - Privilege Escalation
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
CWE-122 Feb 10, 2026
CVE-2026-21245 7.8 HIGH EPSS 0.00
Windows Kernel < unknown - Privilege Escalation
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
CWE-122 Feb 10, 2026
CVE-2026-21244 7.3 HIGH EPSS 0.00
Windows Hyper-V - Buffer Overflow
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.
CWE-122 Feb 10, 2026