CVE & Exploit Intelligence Database
Updated 3h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
821 results
Clear all
CVE-2026-29000
10.0
CRITICAL
1 PoC
Analysis
EPSS 0.00
pac4j-jwt <4.5.9/5.7.9/6.3.3 - Auth Bypass
CWE-347
Mar 04, 2026
CVE-2025-59060
5.3
MEDIUM
1 PoC
Analysis
EPSS 0.00
Apache Ranger <=2.7.0 - Auth Bypass
CWE-297
Mar 03, 2026
CVE-2026-23906
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Apache Druid <36.0.0 - Auth Bypass
CWE-287
Feb 10, 2026
CVE-2026-1529
8.1
HIGH
2 PoCs
Analysis
EPSS 0.00
Org.keycloak Keycloak-services - Signature Verification Bypass
CWE-347
Feb 09, 2026
CVE-2026-1337
5.4
MEDIUM
2 PoCs
Analysis
EPSS 0.00
Neo4j < 2026.01 - XSS
CWE-117
Feb 06, 2026
CVE-2026-25526
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.00
JinJava <2.7.6, <2.8.3 - RCE
CWE-1336
Feb 04, 2026
CVE-2016-15057
9.9
CRITICAL
EXPLOITED
1 PoC
Analysis
EPSS 0.38
Apache Continuum - Command Injection
CWE-77
Jan 26, 2026
CVE-2026-22444
7.1
HIGH
2 PoCs
Analysis
EPSS 0.00
Apache Solr < 9.10.1 - Improper Input Validation
CWE-20
Jan 21, 2026
CVE-2025-68493
8.1
HIGH
2 PoCs
Analysis
EPSS 0.00
Apache Struts <6.1.0 - XML Validation
CWE-611
Jan 11, 2026
CVE-2026-22187
7.8
HIGH
2 PoCs
Analysis
EPSS 0.00
OME Pom-bio-formats - Insecure Deserialization
CWE-502
Jan 07, 2026
CVE-2025-66524
8.8
HIGH
1 PoC
Analysis
EPSS 0.00
Apache NiFi <2.6.0 - Deserialization
CWE-502
Dec 19, 2025
CVE-2025-26866
8.8
HIGH
1 PoC
Analysis
EPSS 0.01
Apache Hugegraph < 1.7.0 - Insecure Deserialization
CWE-502
Dec 12, 2025
CVE-2025-66516
8.4
HIGH
4 PoCs
Analysis
NUCLEI
EPSS 0.01
Apache Tika <3.2.1 - XXE
CWE-611
Dec 04, 2025
CVE-2025-59390
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.00
Apache Druid < 35.0.0 - Authentication Bypass
CWE-338
Nov 26, 2025
CVE-2025-58360
8.2
HIGH
KEV
8 PoCs
Analysis
NUCLEI
EPSS 0.86
GeoServer WMS GetMap XXE Arbitrary File Read
CWE-611
Nov 25, 2025
CVE-2025-55752
7.5
HIGH
3 PoCs
Analysis
EPSS 0.00
Apache Tomcat - Path Traversal
CWE-23
Oct 27, 2025
CVE-2025-52472
EXPLOITED
1 PoC
1 Writeup
Analysis
NUCLEI
EPSS 0.00
Org.xwiki.platform Xwiki-platform-rest-server < 17.4.2 - SQL Injection
CWE-89
Oct 06, 2025
CVE-2025-10492
9.8
CRITICAL
2 PoCs
Analysis
EPSS 0.00
Cloud Jasperreports IO < 4.0.0 - Insecure Deserialization
CWE-502
Sep 16, 2025
CVE-2025-41243
10.0
CRITICAL
1 PoC
Analysis
NUCLEI
EPSS 0.02
Spring Cloud Gateway Server Webflux - Info Disclosure
CWE-917
Sep 16, 2025
CVE-2024-43115
8.8
HIGH
1 PoC
Analysis
EPSS 0.00
Apache DolphinScheduler <3.2.2 - RCE
CWE-20
Sep 03, 2025