CVE & Exploit Intelligence Database
Updated 2h agoSearch and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.
328 results
Clear all
CVE-2026-23744
9.8
CRITICAL
EXPLOITED
2 PoCs
Analysis
NUCLEI
EPSS 0.17
MCPJam inspector <1.4.2 - RCE
CWE-306
Jan 16, 2026
CVE-2026-22036
5.9
MEDIUM
1 PoC
1 Writeup
Analysis
EPSS 0.00
Nodejs Undici < 6.23.0 - Resource Allocation Without Limits
CWE-770
Jan 14, 2026
CVE-2026-22686
10.0
CRITICAL
3 PoCs
Analysis
EPSS 0.00
NPM Enclave-vm < 2.7.0 - Code Injection
CWE-94
Jan 14, 2026
CVE-2026-22812
8.8
HIGH
7 PoCs
Analysis
NUCLEI
EPSS 0.04
OpenCode <1.0.216 - Command Injection
CWE-749
Jan 12, 2026
CVE-2026-22785
9.8
CRITICAL
1 PoC
Analysis
EPSS 0.00
Orval Mcp < 7.18.0 - Command Injection
CWE-77
Jan 12, 2026
CVE-2026-22610
6.1
MEDIUM
1 PoC
Analysis
EPSS 0.00
Angular Compiler < 21.1.0-rc.0 - XSS
CWE-79
Jan 10, 2026
CVE-2025-61686
9.1
CRITICAL
3 PoCs
Analysis
EPSS 0.00
React Router <7.9.3 - Path Traversal
CWE-22
Jan 10, 2026
CVE-2025-59057
7.6
HIGH
1 PoC
Analysis
EPSS 0.00
Shopify React-router < 7.8.2 - XSS
CWE-79
Jan 10, 2026
CVE-2026-21858
10.0
CRITICAL
EXPLOITED
16 PoCs
Analysis
NUCLEI
EPSS 0.07
N8n < 1.121.0 - Improper Input Validation
CWE-20
Jan 08, 2026
CVE-2025-68428
7.5
HIGH
2 PoCs
Analysis
EPSS 0.00
Parall Jspdf < 4.0.0 - Path Traversal
CWE-22
Jan 05, 2026
CVE-2026-21440
5 PoCs
Analysis
EPSS 0.00
Adonisjs Bodyparser < 10.1.2 - Path Traversal
CWE-22
Jan 02, 2026
CVE-2025-69256
7.5
HIGH
1 PoC
Analysis
EPSS 0.00
NPM Serverless < 4.29.3 - Command Injection
CWE-77
Dec 30, 2025
CVE-2025-68668
9.9
CRITICAL
1 PoC
Analysis
EPSS 0.00
n8n <2.0.0 - Command Injection
CWE-693
Dec 26, 2025
CVE-2025-68613
9.9
CRITICAL
EXPLOITED
35 PoCs
Analysis
NUCLEI
EPSS 0.79
n8n Workflow Expression Remote Code Execution
CWE-913
Dec 19, 2025
CVE-2025-67779
7.5
HIGH
1 PoC
Analysis
EPSS 0.00
Facebook React < 14.2.35 - Insecure Deserialization
CWE-502
Dec 12, 2025
CVE-2025-55184
7.5
HIGH
12 PoCs
Analysis
NUCLEI
EPSS 0.24
React Server Components <19.2.1 - DoS
CWE-502
Dec 11, 2025
CVE-2025-55183
5.3
MEDIUM
7 PoCs
Analysis
EPSS 0.23
React Server Components <19.3 - Info Disclosure
Dec 11, 2025
CVE-2025-65964
8.8
HIGH
6 PoCs
Analysis
EPSS 0.00
n8n <1.119.1 - RCE
CWE-829
Dec 09, 2025
CVE-2025-65945
7.5
HIGH
2 PoCs
Analysis
EPSS 0.00
auth0/node-jws <4.0.0 - Improper Signature Verification
CWE-347
Dec 04, 2025
CVE-2025-55182
10.0
CRITICAL
KEV
RANSOMWARE
473 PoCs
Analysis
NUCLEI
EPSS 0.70
React Server Components <19.2.0 - RCE
CWE-502
Dec 03, 2025