CVE Watchtower

🔍 Filter Threats
🎁7-Day Free Trial — Try Pro or Team, no card required.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
📈EPSS Spike Alerts — Catch rising risk before it peaks.
🎯Custom EPSS/CVSS — Filter noise, focus on risk.
🛡️Exploit Intel — A 2nd confirmed-exploit signal beyond KEV.
🐙GitHub Issues — Auto-tracked, no duplicates.
📬Weekly Digest — One clean summary, not inbox spam.
🏷️Watchlist Groups — Tag alerts by team (Infra/AppSec/SOC).
💬Webhooks — Slack & Teams integration.
🔀Smart Routing — Critical alerts to one channel, rest to another.
🚫Ad-Free — Uninterrupted experience.
🎁7-Day Free Trial — Try Pro or Team, no card required.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
📈EPSS Spike Alerts — Catch rising risk before it peaks.
🎯Custom EPSS/CVSS — Filter noise, focus on risk.
🛡️Exploit Intel — A 2nd confirmed-exploit signal beyond KEV.
🐙GitHub Issues — Auto-tracked, no duplicates.
📬Weekly Digest — One clean summary, not inbox spam.
🏷️Watchlist Groups — Tag alerts by team (Infra/AppSec/SOC).
💬Webhooks — Slack & Teams integration.
🔀Smart Routing — Critical alerts to one channel, rest to another.
🚫Ad-Free — Uninterrupted experience.
Title
SeverityPoCActively ExploitedSourceDate
CVE-2026-25274
Memory Corruption when processing concurrent DMA buffer allocation and deallocation commands without proper synchronization.
MEDIUM??????????NVD23 hours ago
CVE-2026-25273
Memory Corruption when processing camera operations due to out-of-bounds write during driver updates.
MEDIUM??????????NVD23 hours ago
CVE-2026-25272
Memory Corruption when processing camera CRE driver operations with improper handling of buffer limits during hardware update preparation.
MEDIUM??????????NVD23 hours ago
CVE-2026-25270
Memory corruption when processing command buffer requests with invalid length parameters in the Android Camera driver.
MEDIUM??????????NVD23 hours ago
CVE-2026-25269
Memory corruption when processing camera requests with excessive batch and IO buffer configurations exceeds allocated memory size.
MEDIUM??????????NVD23 hours ago
CVE-2026-25267
Memory corruption when non-secure loader rewrites page tables before secure memory initialization.
HIGH??????????NVD23 hours ago
CVE-2026-25263
Memory corruption while processing IOCTL command called from user space to the kernel with invalid parameters.
MEDIUM??????????NVD23 hours ago
CVE-2026-105701
The ACPT (Premium) plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.66 via the render function. T...
HIGH??????????NVD23 hours ago
CVE-2026-85153
This vulnerability exists in the Schmooze app due to the use of hardcoded credentials and cryptographic keys in the client application. An unauthentic...
CRITICAL??????????NVD23 hours ago
CVE-2026-59357
Insufficient verification of data authenticity (CWE-345) in the external OIDC login callback in Cloud Foundry UAA v4.5.0 to v79.6.0 (inclusive) allows...
MEDIUM??????????NVD23 hours ago
CVE-2026-59358
Improper authentication (CWE-287) in the OAuth token endpoint in Cloud Foundry UAA allows a remote, authenticated attacker holding a valid user access...
HIGH??????????NVD1 day ago
CVE-2026-105778
A vulnerability has been found in Tenda AC5 02.03.01.111_multi. Affected by this issue is some unknown functionality of the file /goform/setWifi of th...
CRITICAL??????????NVD1 day ago
CVE-2026-94293
An unauthenticated remote attacker can modify Asset Administration Shell submodel data via PATCH requests and can read all data exposed by the GET end...
CRITICAL??????????NVD1 day ago
CVE-2026-97300
Unauthenticated Broken Access Control in WP Event Solution <= 4.1.25 versions.
MEDIUM??????????NVD1 day ago
CVE-2026-41563
Unauthenticated Sensitive Data Exposure in Sitemovr <= 1.0.1 versions.
HIGH??????????NVD1 day ago
CVE-2026-41558
Subscriber Bypass Vulnerability in WP Migration Plugin DB & Files – WP Synchro <= 1.16.1 versions.
HIGH??????????NVD1 day ago
CVE-2026-39789
Unauthenticated Broken Access Control in Fluent Affiliate Pro <= 1.6.4 versions.
HIGH??????????NVD1 day ago
CVE-2026-39760
Unauthenticated Cross Site Scripting (XSS) in Real 3D FlipBook <= 5.5 versions.
HIGH??????????NVD1 day ago
CVE-2026-75962
The Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, Alerts, Backup SMTP & Mobile App plugin for WordPress is vulner...
HIGH??????????NVD1 day ago
CVE-2026-39723
Unauthenticated Broken Access Control in Morning for WooCommerce <= 2.4.1 versions.
HIGH??????????NVD1 day ago
🎁7-Day Free Trial — Try Pro or Team, no card required.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
📈EPSS Spike Alerts — Catch rising risk before it peaks.
🎯Custom EPSS/CVSS — Filter noise, focus on risk.
🛡️Exploit Intel — A 2nd confirmed-exploit signal beyond KEV.
🐙GitHub Issues — Auto-tracked, no duplicates.
📬Weekly Digest — One clean summary, not inbox spam.
🏷️Watchlist Groups — Tag alerts by team (Infra/AppSec/SOC).
💬Webhooks — Slack & Teams integration.
🔀Smart Routing — Critical alerts to one channel, rest to another.
🚫Ad-Free — Uninterrupted experience.
🎁7-Day Free Trial — Try Pro or Team, no card required.
📧Email Delivery — Threat intel straight to your inbox.
♾️Unlimited Vendors — Track your entire stack.
🚨All New CVEs — Be the first to know.
📈EPSS Spike Alerts — Catch rising risk before it peaks.
🎯Custom EPSS/CVSS — Filter noise, focus on risk.
🛡️Exploit Intel — A 2nd confirmed-exploit signal beyond KEV.
🐙GitHub Issues — Auto-tracked, no duplicates.
📬Weekly Digest — One clean summary, not inbox spam.
🏷️Watchlist Groups — Tag alerts by team (Infra/AppSec/SOC).
💬Webhooks — Slack & Teams integration.
🔀Smart Routing — Critical alerts to one channel, rest to another.
🚫Ad-Free — Uninterrupted experience.