CYBERSECURITYTRACKER
TRACKING4,077 stories764 vuln stories
Analyst view

Vulnerabilities and patches

Every tracked Common Vulnerabilities and Exposures (CVE) identifier, ranked into priority tiers that put confirmed exploitation and internet-facing exposure first, then Exploit Prediction Scoring System (EPSS) likelihood, then how much attention it is getting in the news.

13,815 tracked1,665 in CISA KEV356 actively exploited
Skip to ranked Common Vulnerabilities and Exposures (CVE) table
Cloud Vulnerabilities

Cloud provider flaws that never receive a CVE identifier.

From the Open Cloud Vulnerability Database.277 tracked
End of Life

Products past end of support. No patch is coming.

From endoflife.date.632 past end of life
Malicious Packages

Compromised and typosquatted packages.

From OpenSSF and OSV.6,523 tracked
OT & ICS

Advisories for operational technology and industrial control systems.

From CISA.308 tracked
Patch Day

Vendor patches, cross-vendor. Microsoft, Adobe, Cisco, Android.

Exploits

Public exploit code and proof-of-concepts.

From Exploit-DB and VulnCheck.
103 matches

An EPSS percentage is the global 30-day exploitation probability in the wild, not specific to you.

ChangedOur evidence
CVE-2026-65400Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-07Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.ApplemacOSHIGH7.1v3.10%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0534.6Act now798th of 806 tracked, non-rejected CVEs in Act now
CVE-2026-8037NEWPoCAdded to the CISA Known Exploited Vulnerabilities catalog · 2026-08-07Exploit Prediction Scoring System probability jumped · 2026-08-14Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.ProgressLoadMasterCRIT9.6v3.199%CISA · VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.3472.1Act6th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-34908PoCExploit Prediction Scoring System probability jumped · 2026-08-14Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.UbiquitiUniFi OSCRIT10.0v3.185%CISA · VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0470.6Act7th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-48907PoCExploit Prediction Scoring System probability jumped · 2026-08-14Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.Widget FactoryJoomla Content Editor CRIT10.0v4.066%CISA · VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.1469.3Act27th of 4,317 tracked, non-rejected CVEs in Act
CVE-2025-11953PoCExploit Prediction Scoring System probability jumped · 2026-08-14Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.React Native CommunityCLICRIT9.8v3.194%CISA · VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0468.0Act58th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-72898NEWAdded to the CISA Known Exploited Vulnerabilities catalog · 2026-08-11Exploitation status turned active · 2026-08-10Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.MetabaseMetabaseCRIT10.0v4.010%CISA · VulnCheckENISAExploitation in the wild is confirmed by a tracked signal: a ransomware-linked catalog entry, or the CISA Vulnrichment SSVC Exploitation decision point reported as Active. That is one CISA decision point, not a full CISA assessment; the SSVC-style verdict on the CVE panel is computed by this tracker, and its automatability and technical impact inputs are labeled with their source.1466.0Act233rd of 4,317 tracked, non-rejected CVEs in Act
CVE-2025-49132PoCExploit Prediction Scoring System probability jumped · 2026-08-14Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.pterodactylpanelCRIT10.0v3.153%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0463.4Act587th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-26190PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.milvusmilvusCRIT9.8v3.137%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0458.6Act1188th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-55040PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-12Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.MicrosoftOffice SharePointCRIT9.1v3.13%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.7457.2Act1563rd of 4,317 tracked, non-rejected CVEs in Act
CVE-2025-55583PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.D-Linkdir-868l_firmwareCRIT9.8v3.16%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0456.8Act1655th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-55450PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-09Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.langflowlangflowCRIT9.3v3.112%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0454.2Act2258th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-49049PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.joomshaper.comHelix3 extension for JoomlaHIGH7.5v3.118%VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0453.1Act2463rd of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-59310Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-10Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.VMwareCloud FoundationCRIT9.8v3.11%VulnCheckENISAListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.2452.9Act2481st of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-20349NEWAdded to the CISA Known Exploited Vulnerabilities catalog · 2026-08-11Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Exploitation status turned active · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.CiscoSecure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) HIGH8.6v3.11%CISA · VulnCheckENISAExploitation in the wild is confirmed by a tracked signal: a ransomware-linked catalog entry, or the CISA Vulnrichment SSVC Exploitation decision point reported as Active. That is one CISA decision point, not a full CISA assessment; the SSVC-style verdict on the CVE panel is computed by this tracker, and its automatability and technical impact inputs are labeled with their source.2452.2Act2567th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-33497PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.langflowlangflowHIGH8.7v4.020%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0451.5Act2677th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-2652PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-07Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.lfprojectsmlflowHIGH8.6v3.019%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0450.7Act2793rd of 4,317 tracked, non-rejected CVEs in Act
CVE-2025-10123PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.D-Linkdir-823x_firmwareMED5.5v4.04%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0449.7Act2981st of 4,317 tracked, non-rejected CVEs in Act
CVE-2013-3821Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-07Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.Oraclepeoplesoft_productsMED6.4v2.07%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.1445.6Act3597th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-68820NEWAdded to the CISA Known Exploited Vulnerabilities catalog · 2026-08-11Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Exploitation status turned active · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.MicrosoftWindows Ancillary Function Driver for WinSock HIGH7.0v3.10%CISA · VulnCheckENISAExploitation in the wild is confirmed by a tracked signal: a ransomware-linked catalog entry, or the CISA Vulnrichment SSVC Exploitation decision point reported as Active. That is one CISA decision point, not a full CISA assessment; the SSVC-style verdict on the CVE panel is computed by this tracker, and its automatability and technical impact inputs are labeled with their source.4445.4Act3618th of 4,317 tracked, non-rejected CVEs in Act
CVE-2016-20097PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.Weaver Network Co., Ltd.E-cology 8.0HIGH8.7v4.00%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0444.9Act3660th of 4,317 tracked, non-rejected CVEs in Act
CVE-2022-50997PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-11Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.Weaver Network Co., Ltd.E-cology 9.0HIGH8.7v4.00%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0440.7Act3998th of 4,317 tracked, non-rejected CVEs in Act
CVE-2020-9771Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: strongDocumentation coverage only. This is not a statement of vulnerability risk.AppleMacOS XHIGH7.1v3.10%VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0439.0Act4088th of 4,317 tracked, non-rejected CVEs in Act
CVE-2019-25765PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.ASP-CMS ProjectASP-CMSHIGH8.7v4.0VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0437.8Act4149th of 4,317 tracked, non-rejected CVEs in Act
CVE-2024-58374PoCAdded to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.Hongjing Centurye-HRHIGH8.7v4.0VulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0433.7Act4264th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-66443Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-10Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.First tracked Pete NelsonREST API LogN/AVulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0420.1Act4308th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-66441Added to the VulnCheck Known Exploited Vulnerabilities catalog · 2026-08-10Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.First tracked MultiVendorXMultiVendorXN/AVulnCheckListed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal.0420.1Act4309th of 4,317 tracked, non-rejected CVEs in Act
CVE-2026-15413PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.Link FactoryCRIT10.0v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0333.6Attend99th of 187 tracked, non-rejected CVEs in Attend
CVE-2026-18366PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.Events ManagerCRIT9.8v3.1ADP0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0331.1Attend148th of 187 tracked, non-rejected CVEs in Attend
CVE-2026-16538PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.WooCommerceWallet for WooCommerceCRIT9.1v3.1ADP0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0328.6Attend179th of 187 tracked, non-rejected CVEs in Attend
CVE-2026-14182PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.Customer Email Verification for WooCommerceCRIT9.8v3.1ADP0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0327.8Attend182nd of 187 tracked, non-rejected CVEs in Attend
CVE-2026-19771PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-14Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.BaicellsEG3661MHIGH8.6v4.0CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0323.3Attend187th of 187 tracked, non-rejected CVEs in Attend
CVE-2026-15216PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.GitLabGitLab CE/EEHIGH8.7v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0230.0Track*349th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-15217PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.GitLabGitLab CE/EEHIGH8.7v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0230.0Track*350th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-50516A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MicrosoftAzure Kubernetes ServiceCRIT9.4v3.1CNA1%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.1228.0Track*526th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-19001A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBBI Connector ODBC DriverCRIT9.5v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0226.3Track*755th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-19750PoCA vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.TendaCHCRIT9.2v4.0CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0226.1Track*786th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2024-27253A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMDOORS NextCRIT10.0v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0225.7Track*865th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-27544A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.QuarkAQA AnalyticsCRIT10.0v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0221.3Track*1351st of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17485A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.2v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0220.5Track*1389th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-16770A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MITHALDUPDF::WebKitCRIT9.8v3.1ADP0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0220.1Track*1398th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17445A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.2v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0220.0Track*1399th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-18749A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.CERT/CCVINCECRIT9.8v3.1ADP0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0219.4Track*1406th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-28185A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.rtCampLog in with GoogleCRIT9.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.5Track*1414th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-28149A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.miniOrangeHeadless Single Sign OnCRIT9.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.5Track*1415th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-28148A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.miniOrangeHeadless Single Sign OnCRIT9.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.5Track*1416th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-28008A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.miniOrangeOAuth Single Sign On – SSO (OAuth Client)CRIT9.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.5Track*1417th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17482A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMDocumentation OfflineCRIT9.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.5Track*1418th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-14525A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMWebSphere Application Server - LibertyCRIT9.4v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0218.0Track*1422nd of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-19747A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.TendaCH7CRIT9.3v4.0CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0217.9Track*1423rd of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-19297A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMLangflow OSSCRIT9.1v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0217.7Track*1424th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17502A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.6v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0217.0Track*1427th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17272A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.2v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0216.5Track*1430th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17223A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0216.0Track*1432nd of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-16975A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0216.0Track*1433rd of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17069A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.1v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0215.2Track*1440th of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-17045A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.1v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0215.2Track*1441st of 1,443 tracked, non-rejected CVEs in Track*
CVE-2026-19004A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBBI Connector ODBC DriverHIGH8.8v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0125.2Track722nd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19002A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBBIHIGH8.8v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0123.8Track1207th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19656A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.ScadaLTSScadaLTSCRIT9.9v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0123.8Track1213th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18691A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBMongoDB ServerCRIT9.0v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0122.6Track1711th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17276A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiCRIT9.6v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0122.4Track1811th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13105A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMi Access Client SolutionsHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0122.3Track1909th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18099A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMIBM iHIGH8.9v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0121.4Track2314th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-15426A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.AcyMailingAcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPressHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0121.2Track2409th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-12359A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMSecurity Verify AccessHIGH8.1v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0121.0Track2539th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-15606A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.DynamiAppsFrontend AdminHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0120.5Track2748th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19539A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.RoskusProspero Flow CRMHIGH8.6v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0120.3Track2835th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18193A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.9v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.9Track3040th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17082A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.7Track3112th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13361A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMInformixHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.5Track3229th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13433A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMi Access Client SolutionsHIGH8.3v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.4Track3245th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13622A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.KubeVirtvirt-handlerHIGH8.8v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.2Track3327th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17101A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.3v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0119.2Track3349th of 7,037 tracked, non-rejected CVEs in Track
CVE-2025-41770A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.Phoenix ContactPLCnext EngineerHIGH8.7v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.8Track3542nd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18101A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.5Track3656th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17029A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.5Track3657th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-16987A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.5Track3658th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-12004A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMSecurity Verify AccessHIGH8.7v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.5Track3674th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-16908A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.5v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.2Track3840th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13267A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMSecurity Verify AccessHIGH8.1v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.1Track3847th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-10534A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMDb2HIGH8.4v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.1Track3861st of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18249A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.4v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0118.0Track3896th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18509A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.2v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.8Track4004th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18860A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.VelociraptorVelociraptorHIGH8.7v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.6Track4093rd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-18697A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBServerHIGH8.7v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.6Track4100th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-13739A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-11Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.CommvaultCommand CenterHIGH8.8v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.4Track4177th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19293A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.silabs.comWiseConnectHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4232nd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19292A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.silabs.comWiseConnectHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4233rd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19291A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.silabs.comWiseConnectHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4234th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17481A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMDocumentation OfflineHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4235th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-16101A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.silabs.comWiseConnectHIGH8.8v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4236th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19003A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.MongoDBBIHIGH8.4v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.3Track4239th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19426A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.FitSoftPOS SystemHIGH8.8v4.0CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.2Track4266th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19594A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.SnowflakePython APIHIGH8.1v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0117.0Track4327th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-10543A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMDb2HIGH8.2v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.9Track4343rd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-19228A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-12Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.GitLabGitLab EEHIGH8.5v3.1CNA0%Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.6Track4468th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-17206A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.1v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.4Track4521st of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-16867A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.IBMiHIGH8.1v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.4Track4522nd of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-28142A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.ShamalliWeb Directory FreeCRIT9.3v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.2Track4608th of 7,037 tracked, non-rejected CVEs in Track
CVE-2026-28001A vendor or Authorized Data Publisher score of 8.0 or higher arrived · 2026-08-13Our evidence: mixedDocumentation coverage only. This is not a statement of vulnerability risk.WPDirectoryKitWP Directory KitCRIT9.3v3.1CNATracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.0116.2Track4609th of 7,037 tracked, non-rejected CVEs in Track
How scores and priority work

The effective Common Vulnerability Scoring System (CVSS) score uses a strict precedence: the National Vulnerability Database (NVD) score when present (latest version, v4.0 then v3.1, v3.0, and v2.0), else the CVE Numbering Authority (CNA) score from the CVE record, else the Authorized Data Publisher (ADP) score. A CNA or ADP score is labeled with a chip beside the version chip; once NVD publishes its analysis the score is replaced and relabeled. Priority is a tier first and a rank within that tier, never a raw sum, so the number is tier major: the five tiers ascend Track, Track*, Attend, Act, and Act now, and any Act now item outranks any Act item, so a quiet high severity CVE can never outrank one that is actively exploited and internet facing. The tier is set by exploitation first, on a single ladder from proof of concept up through active and ransomware use that the tracked exploitation catalogs and the CISA Vulnrichment exploitation signal feed rather than stack, then a Stakeholder Specific Vulnerability Categorization (SSVC) style decision computed by this tracker, whose foundation is the CISA Vulnrichment program's published SSVC judgments wherever they have been ingested for the CVE, with the automatability and technical impact inputs derived here from CVSS only where no CISA judgment is stored (those two inputs are labeled with their source on the CVE panel), then exposure, then Exploit Prediction Scoring System (EPSS) probability. The exploitation ladder, exposure, and End of Life only ever raise the tier above what that SSVC decision implies, never lower it. Exposure counts as open only when the attack vector is Network and the product is a curated internet facing class such as a firewall, a virtual private network gateway, or an edge router, never from Network alone. End of Life raises the tier by at most one step, and only when the product is both internet facing exposed and actively exploited, never on its own. Within a tier, the rank draws on exploitation, EPSS, whether that EPSS score has been rising over the last thirty days, CVSS, technical impact, the weakness class the CWE identifier names, how mature the public exploit is, exposure, CISA KEV due date proximity, news mentions, tracked catalog corroboration, whether the flaw reaches beyond the affected component, and how many privileges an attacker needs, each counted once. Reaching beyond the component means exploiting it affects resources outside its own security authority. CVSS version 3 states that as Scope; version 4 removed Scope and replaced it with three measures of the impact on a system beyond the vulnerable one, so we read whichever the record provides, and both earn the same amount. When the keyed exposure sources are enabled, the within tier rank also reflects observed mass exploitation, the count of threat internet protocol addresses, and the observed internet facing instance count from Shodan, a blast radius signal that never sets the exposure gate, each likewise a small within tier nudge that never changes the tier itself. The All Tracked view filters on a published-date window: a segment shows only CVEs published within it, so the default view shows what is genuinely new rather than years-old maximum-priority entries; Movers is unchanged. The Published column shows only a date an authority stated (NVD or the CVE record); a CVE tracked here without one shows a dash, with the first-tracked date in the dash's tooltip, and sorts below every dated row. The window segments filter on the CVE's published date, whatever its provenance; recent movement on older CVEs, such as a fresh CISA KEV addition to an old CVE, appears in Movers, not in the windows.

Status values. active: Exploitation in the wild is confirmed by a tracked signal: a ransomware-linked catalog entry, or the CISA Vulnrichment SSVC Exploitation decision point reported as Active. That is one CISA decision point, not a full CISA assessment; the SSVC-style verdict on the CVE panel is computed by this tracker, and its automatability and technical impact inputs are labeled with their source. listed by a tracked exploitation catalog: Listed by a tracked exploitation catalog (CISA KEV, VulnCheck KEV, or ENISA EUVD), meaning exploitation has been observed, without a tracked ransomware link or newer active signal. Dash: Tracked from news, advisories, or scoring feeds with no exploitation signal from any tracked catalog yet.

Due: Due dates are CISA Binding Operational Directive remediation deadlines for US federal agencies, and a useful prioritization signal for everyone else. Rows due within the next 14 days carry a subtle accent; past-due rows render plainly, since most of the catalog is long past its federal deadline and the actionable set is what is still upcoming. PoC: a public proof of concept referenced by the CVE record itself, linking to that single reference. EPSS: An EPSS percentage is the global 30-day exploitation probability in the wild, not specific to you.

What gets tracked. A CVE enters this table when an exploitation catalog lists it (CISA KEV, VulnCheck KEV, or ENISA EU KEV), when GitHub publishes a critical or high severity advisory for it, or when it ships in a Microsoft Patch Tuesday release within the last twelve months. Azure Linux package advisories from those releases are the one documented exception: they stay on the Patch Tuesday page but join this table only when the operator enables them.

Exploitation catalogs: CISA KEV, VulnCheck KEV, and ENISA EU KEV, each with its own badge. Score chips: v-numbers give the CVSS version; CNA or ADP marks a score awaiting NVD analysis. Movers: added to CISA KEV or VulnCheck KEV, turned active, a recent CNA or ADP score at or above 8.0, EPSS up 0.10 or more in about a week (the comparison point is 7 to 14 days old), or 3 or more mentions in 48 hours. Rows added to CISA KEV in the last 7 days are marked NEW.