Browse 1,727+ CVEs from NVD & CNNVD with AI-powered analysis, AI-generated PoCs, KEV/EPSS tracking, and daily security intelligence. Filter by vendor, product, severity, or CWE.
| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-87902 KEV 📌 💣 | WordPress 6.7.1 get_page_template 本地文件包含 EPSS 0.46 | WordPress | WordPress | - | - | 2026-09-22 16:44:15 | Deep Dive |
| CVE-2026-94127 KEV | BIG-IP APM OAuth vulnerability | F5 | BIG-IP | Critical | 9.8 | 2026-09-22 14:17:43 | Deep Dive |
| CVE-2026-93616 KEV | Directory Traversal and File upload allows execution of arbitrary script on the Management Server EPSS 0.20 | checkpoint | Quantum Security Management | Critical | 9.8 | 2026-09-22 12:59:01 | Deep Dive |
| CVE-2026-93952 KEV | Security Advisory 0183 | Arista Networks | VeloCloud Orchestrator (VCO) On-Prem | Critical | 10.0 | 2026-09-22 07:37:24 | Deep Dive |
| CVE-2026-87886 KEV | Acronis Backup插件本地提权:不安全文件权限 | Acronis | Acronis Backup plugin for cPanel & WHM | - | - | 2026-09-17 22:57:18 | Deep Dive |
| CVE-2026-76460 KEV | Cisco Identity Services Engine Authentication Bypass Vulnerability EPSS 0.14 | Cisco | Cisco Identity Services Engine Software | Critical | 10.0 | 2026-09-16 20:12:02 | Deep Dive |
| CVE-2026-58704 KEV | Google Android 授权问题漏洞 | Android | 高危 | - | 2026-09-15 18:34:38 | Deep Dive | |
| CVE-2026-76461 KEV 🧪 | Cisco Secure Email Gateway SQL Injection Vulnerability EPSS 0.28 | Cisco | Cisco Secure Email | Critical | 9.8 | 2026-09-14 16:09:08 | Deep Dive |
| CVE-2026-85706 KEV 📌 💣 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in GitLab EPSS 0.93 | GitLab | GitLab | Critical | 10.0 | 2026-09-12 02:46:32 | Deep Dive |
| CVE-2026-85102 KEV | Improper Certificate Validation in Quantum Security Gateway | checkpoint | Quantum Security Gateway | Critical | 9.8 | 2026-09-09 13:00:31 | Deep Dive |
| CVE-2026-87491 KEV | Google Chrome 缓冲区错误漏洞 | Chrome | 高危 | - | 2026-09-09 00:09:38 | Deep Dive | |
| CVE-2026-84869 KEV | ScreenConnect Client: Guest-to-Host File Execution via File-Transfer Actions | ConnectWise | ScreenConnect | Critical | 9.9 | 2026-09-08 19:29:34 | Deep Dive |
| CVE-2026-81963 KEV | Windows Update Stack Elevation of Privilege Vulnerability | Microsoft | Windows 11 version 23H2 | High | 7.8 | 2026-09-08 17:19:13 | Deep Dive |
| CVE-2026-85880 KEV | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability | Microsoft | Windows 10 Version 1607 | High | 7.8 | 2026-09-08 17:14:21 | Deep Dive |
| CVE-2026-75650 KEV | Adobe Commerce | Improper Neutralization of Special Elements Used in a Template Engine (CWE-1336) | Adobe | Adobe Commerce | Critical | 10.0 | 2026-09-07 20:17:17 | Deep Dive |
| CVE-2026-86218 KEV 📌 💣 | pre-authentication remote code execution EPSS 0.13 | N-able | N-central | Critical | 10.0 | 2026-09-06 02:15:29 | Deep Dive |
| CVE-2026-86060 KEV 💣 | SSH session privilege manipulation via a crafted username in Mikrotik RouterOS | Mikrotik | RouterOS | Critical | 9.2 | 2026-09-05 20:00:59 | Deep Dive |
| CVE-2026-67279 KEV | SSH Pre-Authentication Rekey State Bypass in MikroTik RouterOS | Mikrotik | RouterOS | Medium | 6.9 | 2026-09-05 20:00:58 | Deep Dive |
| CVE-2026-67277 KEV | Kernel memory disclosure and denial of service in MikroTik RouterOS btest service | Mikrotik | RouterOS | High | 8.8 | 2026-09-05 20:00:57 | Deep Dive |
| CVE-2026-85046 KEV | Google Chrome 缓冲区错误漏洞 EPSS 0.49 | Chrome | 高危 | - | 2026-09-03 19:26:13 | Deep Dive |