WordPress
WordPress
- Attempts
- 911
- Attackers
- 43
- Sensors
- 2
Exploitation intelligence
Sensor-backed exploitation attempts against internet-facing services, mapped to CVEs and reviewed for confidence. See where attacker activity is concentrating before severity scores alone tell the story.
Seven-day activity, grouped by observation date · 08 Aug–15 Aug 2026 UTC
Exploitation Attempts
Seven-day activity, grouped by observation date
Click a day to filter stats and tables to that date.
The highest-volume CVEs in this snapshot, ranked by mapped exploitation attempts—not theoretical severity.
WordPress
NoneCms
ThinkPHP
Apache Software Foundation
Microsoft
Meta
Search the highest-volume records in the selected window. Each row shows activity breadth and recency alongside raw volume.
How to Read the Signal
Attempts indicate volume. Unique IPs and sensors indicate breadth. First and last seen show persistence. Use the linked CVE record for evidence and remediation context.
WordPress
WordPress
NoneCms
NoneCms
ThinkPHP Framework
ThinkPHP
Apache HTTP Server
Apache Software Foundation
Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription Edition
Microsoft
react-server-dom-webpack, react-server-dom-turbopack, react-server-dom-parcel
Meta
Langflow OSS
IBM
LoadMaster, ECS Connections Manager, Object Scale Connection Manager, MOVEit WAF
Progress Software
Langflow
Langflow
Microsoft Exchange Server 2013 Cumulative Update 23, Microsoft Exchange Server 2016 Cumulative Update 22, Microsoft Exchange Server 2019 Cumulative Update 11, Microsoft Exchange Server 2019 Cumulative Update 12, Microsoft Exchange Server 2016 Cumulative Update 23
Microsoft
Sentry
ivanti
GPON home routers
Dasan
DGN1000
NETGEAR
ColdFusion
Adobe
Gravity SMTP
RocketGenius
Fortinet FortiOS, FortiProxy
Fortinet
P660HN-T1A v1 TCLinux Fw
ZyXEL
Cisco Adaptive Security Appliance (ASA) Software
Cisco
gogs
gogs
BIG-IP
F5
Splunk Enterprise
Splunk
Flowise
Flowise
jsonpath-plus
JSONPath-Plus
dompdf
dompdf
Struts
Apache
cacti
Cacti
Helix3 extension for Joomla
joomshaper.com
WebLogic Server
Oracle Corporation
SDK
Realtek
ColdFusion
Adobe
Cisco Identity Services Engine Software
Cisco
UniFi OS Server, UDM, UDM-Pro, UDM-SE, UDM-Pro-Max, UDM-Beast, EFG, UDW, UDR, UDR7, UDR-5G, Express 7, UNVR, UNVR-Pro, UNVR-Instant, UNVR-G2, UNVR-G2-Pro, ENVR, ENVR-Core, UNAS-2, UNAS-4, UNAS-Pro, UNAS-Pro-4, UNAS-Pro-8, UCKP, UCK, UCK-Enterprise, UCG-Ultra, UCG-Max, UCG-Fiber, UCG-Industrial
Ubiquiti Inc
PeopleSoft Products
Oracle
SAP NetWeaver (Visual Composer development server)
SAP_SE
ADC, Gateway
NetScaler
Check Point Quantum Gateway, Spark Gateway and CloudGuard Network
checkpoint
Web Applications Desktop Integrator
Oracle Corporation
Flowise
FlowiseAI
WebLogic Server
Oracle Corporation
windmill
windmill-labs
langflow
langflow-ai
Langflow
langflow-ai
langflow
langflow-ai
NetScaler ADC, NetScaler Gateway
Citrix
Age Gate
philsbury
D1000 modem
Eir
Cisco Identity Services Engine Software
Cisco
WebLogic Server
Oracle Corporation
PeopleSoft Enterprise PeopleTools
Oracle Corporation
SMA1000
SonicWall
Showing 50 of 50 highest-volume records · 08 Aug–15 Aug 2026 UTC
Early warning alerts
Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.