Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE Database & AI Vulnerability Analysis

Browse 54+ CVEs from NVD & CNNVD with AI-powered analysis, AI-generated PoCs, KEV/EPSS tracking, and daily security intelligence. Filter by vendor, product, severity, or CWE.

Trusted by security teams 450+security practitioners120+company & university domains· security vendors · in-house teams · academia · bug-bounty hunters
Found 54 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-10152 TaleLin lin-cms-spring-boot book Endpoint BookController.java access control TaleLinlin-cms-spring-boot Medium 6.3 2026-05-30 19:15:09 Deep Dive
CVE-2026-9370 ulisesbocchio jasypt-spring-boot Password Hash SimpleGCMConfig.java getSecretKeySaltGenerator hash predictable salt ulisesbocchiojasypt-spring-boot Low 3.7 2026-05-24 09:15:09 Deep Dive
CVE-2026-40977 VMware Spring Boot 后置链接漏洞 SpringSpring Boot Medium 4.7 2026-04-27 23:36:07 Deep Dive
CVE-2026-40976 VMware Spring Boot 安全漏洞 SpringSpring Boot Critical 9.1 2026-04-27 23:34:51 Deep Dive
CVE-2026-40975 VMware Spring Boot 安全特征问题漏洞 SpringSpring Boot Medium 4.8 2026-04-27 23:32:59 Deep Dive
CVE-2026-40974 VMware Spring Boot 信任管理问题漏洞 SpringSpring Boot Medium 5.0 2026-04-27 23:31:41 Deep Dive
CVE-2026-40973 VMware Spring Boot 安全漏洞 SpringSpring Boot High 7.0 2026-04-27 23:29:52 Deep Dive
CVE-2026-40972 VMware Spring Boot 安全漏洞 SpringSpring Boot High 7.5 2026-04-27 23:15:19 Deep Dive
CVE-2026-40971 VMware Spring Boot 信任管理问题漏洞 SpringSpring Boot Medium 5.0 2026-04-27 22:45:13 Deep Dive
CVE-2026-40970 VMware Spring Boot 信任管理问题漏洞 SpringSpring Boot Medium 5.0 2026-04-27 19:09:59 Deep Dive
CVE-2026-6857 Camel-infinispan: camel-infinispan: remote code execution via unsafe deserialization Red HatRed Hat build of Apache Camel 4.18.1 for Spring Boot 3.5.14 High 7.5 2026-04-22 12:55:01 Deep Dive
CVE-2026-28369 Undertow: undertow: request smuggling via malformed http request headers Red HatRed Hat build of Apache Camel for Spring Boot 4 High 8.7 2026-03-27 16:13:06 Deep Dive
CVE-2026-28367 Undertow: undertow: request smuggling via `\r\r\r` as a header block terminator Red HatRed Hat build of Apache Camel for Spring Boot 4 High 8.7 2026-03-27 16:13:05 Deep Dive
CVE-2026-28368 Undertow: undertow: request smuggling via inconsistent header parsing Red HatRed Hat build of Apache Camel for Spring Boot 4 High 8.7 2026-03-27 16:13:04 Deep Dive
CVE-2026-3260 Undertow: undertow: denial of service due to premature multipart/form-data parsing in get requests Red HatRed Hat build of Apache Camel for Spring Boot 4 Medium 5.9 2026-03-24 04:11:16 Deep Dive
CVE-2026-22731 Authentication Bypass under Actuator Health groups paths SpringSpring Boot High 8.2 2026-03-19 22:36:15 Deep Dive
CVE-2024-4027 Undertow: outofmemoryerror in httpservletrequestimpl.getparameternames() can cause remote dos attacks Red HatOpenShift Serverless High 7.5 2026-01-30 14:25:54 Deep Dive
CVE-2025-12543 Undertow-core: undertow http server fails to reject malformed host headers leading to potential cache poisoning and ssrf Red HatRed Hat build of Apache Camel 4.14.4 for Spring Boot 3.5.11 Critical 9.6 2026-01-07 16:04:22 Deep Dive
CVE-2024-3884 Undertow: outofmemory when parsing form data encoding with application/x-www-form-urlencoded Red HatRed Hat JBoss Enterprise Application Platform High 7.5 2025-12-03 18:40:26 Deep Dive
CVE-2025-9784🧪 Undertow: undertow madeyoureset http/2 ddos vulnerability -- High 7.5 2025-09-02 13:38:00 Deep Dive

Frequently Asked Questions

340,000+ CVEs aggregated from NVD and CNNVD, updated daily with AI-generated Chinese translations.

Basic CVE data is completely free. AI PoC generation and premium intelligence features require a Pro or Pro+ subscription.

When a CVE has no public proof-of-concept, Shenlong AI automatically generates exploit code and a technical analysis report based on the vulnerability description and references.

Yes. Shenlong AI has translated NVD English descriptions into Chinese, so you can search CVEs using Chinese keywords directly.