Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE Database & AI Vulnerability Analysis

Browse 382,214+ CVEs from NVD & CNNVD with AI-powered analysis, AI-generated PoCs, KEV/EPSS tracking, and daily security intelligence. Filter by vendor, product, severity, or CWE.

Trusted by security teams 1,150+ security practitioners 550+ company & university domains · security vendors · in-house teams · academia · bug-bounty hunters
CVE ID Title Vendor Product Severity CVSS Score Published At AI Analysis
CVE-2026-94634 Apache Thrift: Python `TJSONProtocol` has a string length limit that is off by default Apache Software Foundation Apache Thrift High 8.2 2026-10-02 10:11:21 Deep Dive
CVE-2026-59665 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 10:10:18 Deep Dive
CVE-2026-103885 Apache Directory LDAP API: Denial of service via crafted telephone number values Apache Software Foundation Apache Directory LDAP API - - 2026-10-02 10:09:52 Deep Dive
CVE-2026-103877 Apache Directory LDAP API: Unsafe loading of Java code from LDAP schema elements Apache Software Foundation Apache Directory LDAP API - - 2026-10-02 10:08:42 Deep Dive
CVE-2026-59662 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 10:07:12 Deep Dive
CVE-2026-103880 Apache Directory LDAP API: Denial of service via excessive bcrypt cost factor in stored passwords Apache Software Foundation Apache Directory LDAP API - - 2026-10-02 10:03:48 Deep Dive
CVE-2026-59664 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 10:02:55 Deep Dive
CVE-2026-103878 Apache Directory LDAP API: Injection of plaintext responses during StartTLS Apache Software Foundation Apache Directory LDAP API - - 2026-10-02 10:02:38 Deep Dive
CVE-2026-59663 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 09:58:52 Deep Dive
CVE-2026-104403 WordPress LearnPress plugin <= 4.4.9 - Insecure Direct Object References (IDOR) vulnerability ThimPress LearnPress Medium 5.3 2026-10-02 09:55:28 Deep Dive
CVE-2026-95662 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 09:51:32 Deep Dive
CVE-2026-103552 Apache Directory LDAP API: A unbound client can send a deeply nested search filter that overflows the stack in the server's decoder Apache Software Foundation Apache Directory LDAP API - - 2026-10-02 09:48:05 Deep Dive
CVE-2026-59661 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 09:47:28 Deep Dive
CVE-2026-59660 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 09:43:53 Deep Dive
CVE-2026-59659 Multiple vulnerabilities in the Repasat application Repasat Repasat application Medium 4.8 2026-10-02 09:41:43 Deep Dive
CVE-2026-94180 WordPress Advanced Ads plugin <= 2.0.26 - Sensitive Data Exposure vulnerability Monetizemore Advanced Ads Medium 4.3 2026-10-02 09:39:21 Deep Dive
CVE-2026-94639 Apache Thrift: Java `TSaslNonblockingServer`: residual of CVE-2026-61373 (thread-death black hole + no cross-connection budget) Apache Software Foundation Apache Thrift High 8.2 2026-10-02 09:33:52 Deep Dive
CVE-2026-94405 WordPress Download Manager plugin <= 3.3.71 - Sensitive Data Exposure vulnerability Shahjada Download Manager Medium 5.3 2026-10-02 09:31:19 Deep Dive
CVE-2026-97652 WP Statistics <= 14.16.14 - Reflected Cross-Site Scripting via REQUEST_URI Query-Parameter Key veronalabs WP Statistics – Simple, privacy-friendly Google Analytics alternative Medium 6.1 2026-10-02 09:25:58 Deep Dive
CVE-2026-85492 All in One SEO <= 5.0.1.1 - Reflected DOM-Based Cross-Site Scripting via URL Pathname smub All in One SEO – AI SEO Plugin to Boost SEO Rankings & Traffic (Schema, Local SEO, Sitemap & SEO Insights) Medium 6.1 2026-10-02 09:25:57 Deep Dive

Frequently Asked Questions

340,000+ CVEs aggregated from NVD and CNNVD, updated daily with AI-generated Chinese translations.

Basic CVE data is completely free. AI PoC generation and premium intelligence features require a Pro or Pro+ subscription.

When a CVE has no public proof-of-concept, Shenlong AI automatically generates exploit code and a technical analysis report based on the vulnerability description and references.

Yes. Shenlong AI has translated NVD English descriptions into Chinese, so you can search CVEs using Chinese keywords directly.