Live Exploited Vulnerability Feed
Evidence-backed KEV intelligence enriched with confidence scoring, exploitation status, CISA KEV status, and sensor telemetry.
| CVE | Product | Vendor | Confidence | Exploitation Status | Sensors | First Seen | Added | Artifacts |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-0204 | GoAnywhere MFT | Fortra | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2019-18394 | Openfire | Ignite Realtime | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-9014 | pgAdmin 4 | pgadmin.org | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2018-11759 | Apache Tomcat Connectors | Apache Software Foundation | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-11305 | Power Control Software | Altenergy | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-25735 | Apollo VX20 | WyreStorm | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-10914 | DNS-320, DNS-320LW, DNS-325, DNS-340L | D-Link | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-0305 | Ncast | Guangzhou Yingke Electronic Technology | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2021-46422 | SDT-CW3B1 | Telesquare | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-27954 | Automatic | WP Automatic | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2019-11248 | Kubernetes | Kubernetes | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2018-10379 | GitLab Community Edition (CE), GitLab Enterprise Edition (EE) | GitLab | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
—
|
| CVE-2023-37679 | Mirth Connect | NextGen Healthcare | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2010-0219 | Axis2 | Apache | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2022-39952 | FortiNAC | Fortinet | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2024-0352 | Likeshop | Likeshop | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2021-21978 | VMware View Planner | VMware | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2021-21307 | Lucee | lucee | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2022-29383 | ProSafe SSL VPN firmware FVS336Gv2 and FVS336Gv3 | NETGEAR | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2025-3102 | OttoKit: All-in-One Automation Platform (Formerly SureTriggers) | brainstormforce | Medium | Exploited | — | about 1 year ago | about 1 year ago |
PoC
Nuclei
Scanner
|
| CVE-2025-2857 | Firefox | Mozilla | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
—
|
| CVE-2025-30355 | synapse | element-hq | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
—
|
| CVE-2025-30349 | IMP | Horde | Medium | Exploited | — | about 1 year ago | about 1 year ago |
PoC
|
| CVE-2025-30259 | WhatsApp cloud service | Meta | Medium | Active exploitation | — | about 1 year ago | about 1 year ago |
—
|
| CVE-2025-21713 | Linux | Linux | Medium | Active exploitation | — | over 1 year ago | over 1 year ago |
—
|