Live Exploited Vulnerability Feed
Evidence-backed KEV intelligence enriched with confidence scoring, exploitation status, CISA KEV status, and sensor telemetry.
| CVE | Product | Vendor | Confidence | Exploitation Status | Sensors | First Seen | Added | Artifacts |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-43027 | Genetec Security Center | Genetec Inc. | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2023-7325 | Mingyu Operations and Maintenance Audit and Risk Control System | Anheng Information (Hangzhou DBAPP Security Information Technology Co., Ltd.) | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2021-4461 | Zhiyuan OA Web Application System | Seeyon | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2024-58274 | CSMP iSecure Center | Hikvision | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2023-53691 | CSMP iSecure Center | Hikvision | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2016-15048 | Hotel Broadband Operation System (HiBOS) | Anmei Century (Beijing) Technology Co., Ltd. | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2018-25118 | GV-BX1500, GV-MFD1501, GeoVision embedded IP devices | GeoVision Inc. | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2017-20207 | Flickr Gallery | Dan Coulter | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2017-20206 | Appointments | wpmudev | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2011-10033 | is-human WordPress Plugin | is-human WordPress Plugin | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-6264 | Velociraptor | Rapid7 | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2022-4980 | Crypto Application Server (CAS) | General Bytes | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-50983 | Readarr | Readarr | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2023-44976 | Rentdrv2 | Hangzhou Shunwang | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2014-125123 | Kloxo | LXCenter | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-34130 | DVR Firmware | Merit LILIN | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-34129 | DVR Firmware | Merit LILIN | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-49831 | conjur | cyberark | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-48925 | service | TeleMessage | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-52572 | Hikka | hikariatama | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-55346 | — | — | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-1302 | jsonpath-plus | JSONPath-Plus | Medium | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2025-34037 | E4200, E3200, E3000, E2500 v1/v2, E2100L v1, E2000, E1550, E1500 v1, E1200 v1, E1000 v1, E900 v1 | Linksys | High | Active exploitation | — | 21 days ago | 21 days ago |
—
|
| CVE-2018-9205 | avatar_uploader | Robbin Zhao | Medium | Active exploitation | — | 22 days ago | 22 days ago |
PoC
Nuclei
Scanner
|
| CVE-2022-2414 | Dogtag Certificate System | Dogtag PKI | Medium | Exploited | — | 23 days ago | 23 days ago |
PoC
Nuclei
Scanner
|