Critical Alert 2 Active Exploits Detected Today

CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability →
CVE-2025-48595 Android Framework Integer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2026-39551
Deserialization of Untrusted Data vulnerability in Elated-Themes TΓΆbel allows Object Injection. This issue affects TΓΆbel: from n/a through 1.8.1.
HIGHπŸ”’ LOCKED??????????NVD20 hours ago
CVE-2026-39550
Deserialization of Untrusted Data vulnerability in Elated-Themes Aperitif allows Object Injection. This issue affects Aperitif: from n/a through 1.6.
HIGHπŸ”’ LOCKED??????????NVD20 hours ago
CVE-2025-58705
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Crafti ...
HIGHπŸ”’ LOCKED??????????NVD20 hours ago
CVE-2025-58024
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in UnboundStudio Accor...
HIGHπŸ”’ LOCKED??????????NVD20 hours ago
CVE-2025-53440
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Confida...
HIGHπŸ”’ LOCKED??????????NVD20 hours ago
CVE-2026-41918
A vulnerability has been identified in RUGGEDCOM RST2428P (6GK6242-6PA00) (All versions < V4.0). The affected applications stores sensitive informa...
MEDIUMπŸ”’ LOCKED??????????NVD21 hours ago
CVE-2026-5422
A path traversal vulnerability exists in jupyter-server version 2.17.0 due to an incorrect root directory boundary check in the _get_os_path() functio...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2026-5191
The Tiled Gallery Carousel Without JetPack plugin for WordPress is vulnerable to stored cross-site scripting via the 'data-image-title' para...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2026-46718
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') vulnerability in Apache Calcite. This issue affects Apac...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2026-41115
An improper authorization vulnerability has been identified in Apache Kafka. The implementation of the CONSUMER_GROUP_DESCRIBE (69) API validates the...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-53346
Missing Authorization vulnerability in ThimPress Thim Core allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affect...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-53345
Missing Authorization vulnerability leading to code execution after installing malicious vulnerable plugin in ThimPress Thim Core. This issue affects...
HIGHπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-53302
Missing Authorization vulnerability in Anton Shevchuk Constructor allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-53209
Incorrect Privilege Assignment vulnerability in Themeisle Masteriyo LMS PRO allows Privilege Escalation. This issue affects Masteriyo LMS PRO: from n...
CRITICALπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-52766
Missing Authorization vulnerability in Printeers Printeers Print & Ship allows Exploiting Incorrectly Configured Access Control Security Levels. ...
MEDIUMπŸ”’ LOCKED??????????NVD22 hours ago
CVE-2025-52759
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UnboundStudio Accordion FAQ allows Ref...
HIGHπŸ”’ LOCKED??????????NVD22 hours ago
???-????-????
??????????????????????????????????
??????????????????????????????????
UNKNOWNπŸ”’ LOCKED??????????SA23 hours ago
CVE-2026-9730
The Remove NoFollow Commenter URL plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0. This is ...
MEDIUMπŸ”’ LOCKED??????????NVD23 hours ago
CVE-2026-9723
The Google Plus One Bottom plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.0.2. This is due t...
MEDIUMπŸ”’ LOCKED??????????NVD23 hours ago
CVE-2026-9722
The Laiser Tag plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.5. This is due to missing or...
MEDIUMπŸ”’ LOCKED??????????NVD23 hours ago