Critical Alert 2 Active Exploits Detected Today

CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability →
CVE-2025-48595 Android Framework Integer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

🔔 Premium Features
🔍 Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2026-31942
LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.7.6, an Insecure Direct Object Reference...
HIGH🔒 LOCKED??????????NVD6 hours ago
CVE-2026-27145
(*x509.Certificate).VerifyHostname previously called matchHostnames in a loop over all DNS Subject Alternative Name (SAN) entries. This caused strings...
UNKNOWN🔒 LOCKED??????????NVD6 hours ago
CVE-2026-10690
A vulnerability was identified in wonderwhy-er DesktopCommanderMCP 0.2.37. This affects the function readFileFromUrl of the file src/tools/filesystem....
MEDIUM🔒 LOCKED??????????NVD6 hours ago
CVE-2026-40108
GLPI is a free asset and IT management software package. In versions 11.0.0 through 11.0.6, a technician can store an XSS payload in a ITIL costs. Thi...
UNKNOWN🔒 LOCKED??????????NVD6 hours ago
CVE-2026-44654
LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, a shared-agent editor can delete fi...
UNKNOWN🔒 LOCKED??????????NVD6 hours ago
CVE-2026-10688
A vulnerability was determined in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. The impacted element is the function execute_bl...
MEDIUM🔒 LOCKED??????????NVD6 hours ago
CVE-2026-10719
Out of bounds write in openSeaChest’s --showSupportedFormats in Seagate’s openSeaChest v25.05.3 on all supported platforms allows for writing 1 ex...
UNKNOWN🔒 LOCKED??????????NVD7 hours ago
CVE-2026-10718
Out of bounds write in openSeaChest’s Trim/Unmap operation in Seagate’s openSeaChest v26.03.0 on all supported platforms allows for writing extra ...
UNKNOWN🔒 LOCKED??????????NVD7 hours ago
CVE-2026-42029
Rejected reason: This CVE is a duplicate of another CVE.
UNKNOWN🔒 LOCKED??????????NVD7 hours ago
CVE-2026-25861
QloApps through 1.7.0, fixed in commit 64e9722, contains a weak cryptographic algorithm vulnerability that allows attackers to compromise user credent...
MEDIUM🔒 LOCKED??????????NVD7 hours ago
CVE-2026-10717
Out of bounds write and reads in openSeaChest’s --showSCSIDefects in Seagate’s openSeaChest v25.05.3 on all supported platforms allows for wr...
UNKNOWN🔒 LOCKED??????????NVD7 hours ago
CVE-2026-10662
A vulnerability was found in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. The affected element is the function requests.get of...
MEDIUM🔒 LOCKED??????????NVD7 hours ago
CVE-2021-4481
Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that all...
HIGH🔒 LOCKED??????????NVD8 hours ago
CVE-2021-4480
Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that all...
HIGH🔒 LOCKED??????????NVD8 hours ago
CVE-2026-10661
A vulnerability has been found in ahujasid blender-mcp up to 7636d13bded82eca58eb93c3f4cd8708dfdfbe8b. Impacted is the function Open of the file src/b...
MEDIUM🔒 LOCKED??????????NVD8 hours ago
CVE-2026-35212
OpenCTI is an open source platform for managing cyber threat intelligence knowledge and observables. Versions prior to 7.260227.0 are vulnerable to XS...
UNKNOWN🔒 LOCKED??????????NVD8 hours ago
CVE-2025-15653
Dräger Zeus Infinity Empowered (Zeus IE) and Zeus RS C500 anesthesia workstations contain a local security vulnerability that allows unauthorized ind...
MEDIUM🔒 LOCKED??????????NVD8 hours ago
CVE-2024-14036
Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigge...
HIGH🔒 LOCKED??????????NVD8 hours ago
CVE-2026-49448
authentik is an open-source identity provider. Prior to versions 2025.12.6, 2026.2.4, and 2026.5.1, the Source stage can be bypassed by sending an emp...
CRITICAL🔒 LOCKED??????????NVD8 hours ago
CVE-2026-49443
authentik is an open-source identity provider. Prior to versions 2025.12.6, 2026.2.4, and 2026.5.1, an attacker with the ability to change a source co...
HIGH🔒 LOCKED??????????NVD8 hours ago