目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

Cybersecurity Vulnerability Intelligence: CVE, KEV, EPSS and PoC Tracking

A focused English hub for security teams tracking high-risk vulnerabilities, known exploited CVEs, exploitation probability, public exploit mappings, proof-of-concept availability, affected products and mitigation references.

Vendor Vulnerability Hubs

Recently Published Critical CVEs

12 CVEs
CVE Title CVSS Vendor Published
CVE-2026-40541 CVE-2026-40541 - Synology Chat Server CWE-79 9.0 Synology 2026-08-28
CVE-2026-76581 WPMU DEV Dashboard <= 5.0.1 - Authentication Bypass to Administrator via SSO HMAC Canonicalization Confusion - WPMU DEV Dashboard CWE-347 9.8 wpmudev 2026-08-28
CVE-2026-78032 CVE-2026-78032 - SOY CMS CWE-502 9.3 Tsuyoshi Saito 2026-08-28
CVE-2026-82090 CVE-2026-82090 - Pocket CWE-79 9.2 getpocket 2026-08-28
CVE-2026-82082 Green-Computing|NUMail - OS Command Injection - NUMail CWE-78 9.8 Green-Computing 2026-08-28
CVE-2026-78174 WatchGuard Dimension Session Hijack via Exposed Session Tokens in Diagnostic Logs - Dimension CWE-200 9.3 WatchGuard 2026-08-27
CVE-2026-61800 Wazuh cluster worker file sync allows arbitrary file write under /var/ossec (incomplete fix for CVE-2026-30893) - wazuh CWE-22 9.1 wazuh 2026-08-27
CVE-2026-19315 Fireware OS Pre-Authentication Type Confusion in iked Allows Remote Code Execution - Fireware OS CWE-125 9.3 WatchGuard 2026-08-27
CVE-2026-19318 Fireware OS Pre-Authentication Stack Buffer Overflow in iked Allows Remote Code Execution - Fireware OS CWE-121 9.3 WatchGuard 2026-08-27
CVE-2026-19313 Fireware OS Pre-Authentication Heap Buffer Overflow in iked Allows Remote Code Execution - Fireware OS CWE-122 9.3 WatchGuard 2026-08-27
CVE-2026-13086 Fireware OS Stack-Based Buffer Overflow in Mobile Security epm Endpoint - Fireware OS CWE-121 9.3 WatchGuard 2026-08-27
CVE-2026-76943 Xiiaozet LK100W Authentication Bypass Using an Alternate Path or Channel - Xiiaozet LK100W CWE-288 9.8 Xiiaozet 2026-08-27

Live Vulnerability Queues

How to use this vulnerability intelligence hub

Start with KEV and EPSS when prioritizing emergency patching. Use public exploit mappings and PoC pages to understand exploit availability, then open the CVE detail page for CVSS vectors, affected versions, CWE classification, references, AI deep analysis and mitigation context.