Real-Time CVE Alerts & Vulnerability Tracker
Search enriched vulnerability intelligence — EPSS exploitability scores, CVSS severity, CISA KEV status — and get instant alerts to Slack, Telegram, Discord or Google Chat.
213,546 results
No title available
Wavlink WL-WN530H4 internet.cgi snprintf os command injection
No title available
No title available
Unauthenticated execution of arbitrary SQL queries in Sparx Pro Cloud Server
Plaintext Storage of a Password in Sparx Pro Cloud Server.
Sparx Pro Cloud Server reveals sensitive information to an unauthenticated user
Sparx Enterprise Architect Client reveals plaintext OAuth2 client secret
No title available
VideoZen <= 1.0.1 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'VideoZen available subtitles languages' Field
No title available
Aap-mcp-server: aap mcp server: log injection allows social engineering attacks via unsanitized input
No title available
No title available
CMS für Motorrad Werkstätten <= 1.0.0 - Cross-Site Request Forgery
ZTE Red Magic 11 Pro (NX809J) contains a vulnerability that allows non-privileged applications to trigger sensitive operations.
No title available
Canto <= 3.1.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Setting Modification
Unlimited Elements For Elementor <= 2.0.6 - Authenticated (Contributor+) Arbitrary File Read via Path Traversal in Repeater JSON/CSV URL with Path Traversal
Accordion and Accordion Slider 1.4.6 - Injected Backdoor
Never miss a critical vulnerability
Set up free alerts in 60 seconds. Filter by ecosystem, CVSS score or EPSS — get notified to Slack, Telegram, Discord or Google Chat the moment a new CVE matches.
Slack · Telegram · Discord · Google Chat