CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityPoCActively ExploitedSourceDate
???-????-????
??????????????????????????????????
??????????????????????????????????
HIGH??????????SA11 hours ago
???-????-????
??????????????????????????????????
??????????????????????????????????
Unknown??????????SA2 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
CRITICAL??????????SA2 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
Unknown??????????SA3 days ago
???-????-????
??????????????????????????????????
??????????????????????????????????
HIGH??????????SA3 days ago
CVE-2026-6274
Improper Authentication, Missing authentication for critical function, Weak Authentication vulnerability in DTS Electronics Industry and Trade Ltd. Co...
CRITICAL??????????NVD1 hour ago
CVE-2026-49777
Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allows Malicious Software Imp...
CRITICAL??????????NVD1 hour ago
CVE-2026-11332
A flaw was found in ansible-core. The ansible-galaxy role install command processes dependency specifications from a role's meta/requirements.yml...
HIGH??????????NVD1 hour ago
CVE-2026-9088
A flaw was found in org.keycloak.services. An administrator with delegated access to read group memberships and users can bypass user profile permissi...
LOW??????????NVD2 hours ago
CVE-2026-48907
A vulnerability in the JCE editor extension for Joomla allows the creation of new editor profiles for unauthenticated users, ultimately resulting in P...
UNKNOWN??????????NVD3 hours ago
CVE-2026-21826
HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection. Β An attacker can manipulate the Host headerΒ...
MEDIUM??????????NVD3 hours ago
CVE-2026-21825
HCL Digital Experience Compose is affected by a reflected cross-site scripting (XSS) vulnerability in the search center.Β  An attacker could execute a...
MEDIUM??????????NVD3 hours ago
CVE-2026-21837
HCL Digital Experience is affected by an OS command injection vulnerability in the Digital Asset Management API.Β  An attacker may execute arbitrary o...
UNKNOWN??????????NVD5 hours ago
CVE-2026-10732
All versions of the package decompress are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) when extracting a ZIP archive containi...
MEDIUM??????????NVD5 hours ago
CVE-2026-50593
Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset ...
HIGH??????????NVD6 hours ago
CVE-2026-7763
A heap-based buffer overflow vulnerability in the morse.ko HaLow Wi-Fi kernel driver in Morse Micro HaLowLink 2 software versions prior to 2.11.13 all...
UNKNOWN??????????NVD8 hours ago
CVE-2026-7762
A heap-based buffer overflow vulnerability in the dot11ah.ko HaLow Wi-Fi kernel driver in Morse Micro HaLowLink 2 software versions prior to 2.11.13 a...
UNKNOWN??????????NVD8 hours ago
CVE-2026-50592
In Znuny LTS before 6.5.21 and Znuny before 7.3.3, there is reflected XSS in AdminCommunicationLog (aka the communication log administration view).
MEDIUM??????????NVD8 hours ago
CVE-2026-50591
In Znuny LTS before 6.5.21 and Znuny before 7.3.3, XSS can occur via stored user preferences.
MEDIUM??????????NVD8 hours ago
CVE-2026-50590
In Mimecast Incydr before 2.6.0, arbitrary file access can occur.
MEDIUM??????????NVD8 hours ago
CVE-2026-41567
Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uplo...
HIGH??????????NVD8 hours ago
CVE-2026-11326
OpenAI Atlas before 1.2025.288.15 exposed privileged browser APIs to web content on *.openai.com origins. A cross-site scripting vulnerability in foru...
UNKNOWN??????????NVD8 hours ago
CVE-2026-11312
A vulnerability was found in bytedance InfiniStore up to 0.2.33. The impacted element is the function purge_kv_map in the library /src/infinistore.h o...
LOW??????????NVD10 hours ago
CVE-2026-11309
Insufficient policy enforcement in History in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform UI spoofing via a crafted HTML...
UNKNOWN??????????NVD10 hours ago
CVE-2026-50589
In OpenStack Ironic 32 through 35.0.1, an unauthenticated malicious user could submit a crafted JSON string to some endpoints on the API or JSON-RPC s...
MEDIUM??????????NVD10 hours ago