Live Exploited Vulnerability Feed
Evidence-backed KEV intelligence enriched with confidence scoring, exploitation status, CISA KEV status, and sensor telemetry.
| CVE | Product | Vendor | Confidence | Exploitation Status | Sensors | First Seen | Added | Artifacts |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-6218 | WinRAR | RARLAB | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-48633 | Android | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
|
| CVE-2025-48572 | Android | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
|
| CVE-2022-37055 | Go-RT-AC750 | D-Link | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-66644 | ArrayOS AG | Array Networks | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2021-26828 | ScadaBR | OpenPLC | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
|
| CVE-2021-26829 | ScadaBR | OpenPLC | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-61757 | Identity Manager | Oracle Corporation | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2025-13223 | Chrome | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
|
| CVE-2025-58034 | FortiWeb | Fortinet | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-64446 | FortiWeb | Fortinet | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2025-62215 | Windows 10 Version 1809, Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 22H3, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025, Windows Server 2025 (Server Core installation) | Microsoft | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-9242 | Fireware OS | WatchGuard | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-12480 | TrioFox | TrioFox | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2025-21042 | Samsung Mobile Devices | Samsung Mobile | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2023-7305 | SmartBI | Guangzhou Smart Software Co., Ltd. | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-9491 | Windows | Microsoft | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-48703 | CentOS Web Panel | centos-webpanel | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2025-11371 | CentreStack and TrioFox | Gladinet | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|
| CVE-2024-13991 | Cloud Video Platform | Huijietong | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-43027 | Genetec Security Center | Genetec Inc. | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-41244 | VCF operations, VMware tools, VMware Aria Operations, VMware Cloud Foundation, VMware Telco Cloud Platform, VMware Telco Cloud Infrastructure | VMware | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2023-7325 | Mingyu Operations and Maintenance Audit and Risk Control System | Anheng Information (Hangzhou DBAPP Security Information Technology Co., Ltd.) | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2021-4461 | Zhiyuan OA Web Application System | Seeyon | Medium | Active exploitation | — | 17 days ago | 17 days ago |
—
|
| CVE-2025-6204 | DELMIA Apriso | Dassault Systèmes | Confirmed | Active exploitation | — | 17 days ago | 17 days ago |
PoC
Nuclei
Scanner
|