CVE & Exploit Intelligence Database
Updated 1h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
14 results
Clear all
CVE-2025-68161
4.8
MEDIUM
EPSS 0.00
Apache Log4j Core <2.25.2 - SSL Verification Bypass
CWE-295
Dec 18, 2025
CVE-2023-26464
7.5
HIGH
EXPLOITED
EPSS 0.00
Log4j <2 - DoS
CWE-502
Mar 10, 2023
CVE-2022-23307
8.8
HIGH
EPSS 0.02
Apache Chainsaw < 2.1.0 - Insecure Deserialization
CWE-502
Jan 18, 2022
CVE-2022-23305
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.08
Apache Log4j < 1.2.17 - SQL Injection
CWE-89
Jan 18, 2022
CVE-2022-23302
8.8
HIGH
EPSS 0.01
Apache Log4j < 1.2.17 - Insecure Deserialization
CWE-502
Jan 18, 2022
CVE-2021-44832
6.6
MEDIUM
EXPLOITED
RANSOMWARE
2 PoCs
Analysis
EPSS 0.54
Apache Log4j < 2.3.2 - Injection
CWE-74
Dec 28, 2021
CVE-2021-45105
5.9
MEDIUM
EXPLOITED
RANSOMWARE
10 PoCs
Analysis
EPSS 0.70
Apache Log4j < 2.3.1 - Improper Input Validation
CWE-674
Dec 18, 2021
CVE-2021-45046
9.0
CRITICAL
KEV
RANSOMWARE
14 PoCs
Analysis
NUCLEI
EPSS 0.94
Apache Log4j < 2.12.2 - Remote Code Execution
CWE-917
Dec 14, 2021
CVE-2021-4104
7.5
HIGH
EXPLOITED
3 PoCs
Analysis
EPSS 0.72
Apache Log4j < 12.0.0.4.0 - Insecure Deserialization
CWE-502
Dec 14, 2021
CVE-2021-44228
10.0
CRITICAL
KEV
RANSOMWARE
438 PoCs
Analysis
NUCLEI
EPSS 0.94
Log4Shell HTTP Header Injection
CWE-502
Dec 10, 2021
CVE-2020-9493
9.8
CRITICAL
EPSS 0.00
Apache Chainsaw < 2.1.0 - Insecure Deserialization
CWE-502
Jun 16, 2021
CVE-2020-9488
3.7
LOW
1 PoC
Analysis
EPSS 0.00
Oracle Flexcube Core Banking < 2.3.2 - Improper Certificate Validation
CWE-295
Apr 27, 2020
CVE-2019-17571
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.42
Apache Log4j < 1.2.17 - Insecure Deserialization
CWE-502
Dec 20, 2019
CVE-2017-5645
9.8
CRITICAL
3 PoCs
Analysis
NUCLEI
EPSS 0.94
Apache Log4j < 2.8.2 - Insecure Deserialization
CWE-502
Apr 17, 2017