Real-Time CVE Alerts & Vulnerability Tracker
Search enriched vulnerability intelligence — EPSS exploitability scores, CVSS severity, CISA KEV status — and get instant alerts to Slack, Telegram, Discord or Google Chat.
288,515 results
Weaver e-Bridge Unauthenticated Arbitrary File Read via saveYZJFile
CodeArt Google MP3 Audio Player 1.0.11 Arbitrary File Read via direct_download.php
H3C CVM Unauthenticated File Upload via fileUpload/upload Token
All in One SEO < 5.0.2.1 - Unauthenticated Arbitrary Shortcode Execution via Search Query
probe-image-size: Quadratic-time Denial of Service in the SVG Parser
Nx: OS command injection in the @nx/docker release pipeline
Apache Traffic Server: SNI to Host header matching policy is not properly enforced
Wasmtime: Preemption and traps during bulk operations enable breaking internal VM state
Apache OpenOffice, Apache OpenOffice: Opening a malicious document can lead to system takeover
LimeSurvey Community Edition 7.4.0 - Stored XSS through the Date/Time date_min question attribute
Nx daemon and plugin worker sockets are accessible to other local users
Nx: Path traversal in nx migrate package-migrations extraction
fsspec: Server-Side Template Injection in ReferenceFileSystem leads to Remote Code Execution
Tinypool: Prototype Pollution Gadget to RCE in run() options
Tinypool: Prototype Pollution gadget in worker options leads to Remote Code Execution
MISP: Soft-Deleted Attributes from Other Organizations Exposed via Attribute Search and Paginated View
No title available
No title available
No title available
No title available
Never miss a critical vulnerability
Set up free alerts in 60 seconds. Filter by ecosystem, CVSS score or EPSS — get notified to Slack, Telegram, Discord or Google Chat the moment a new CVE matches.
Slack · Telegram · Discord · Google Chat