Critical Alert 2 Active Exploits Detected Today

CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability →
CVE-2025-48595 Android Framework Integer Overflow Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2026-10047
The Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the real-mode hook handler, implemented in napoca/kernel...
UNKNOWNπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-7313
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from 8.0.5700 to 13.3.7652 allows a remote authenticate...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-7312
CWE‑522: Insufficiently Protected Credentials in web services in Progress Sitefinity version from 14.0.7700 to 14.4.8152, and 15.0.8200 to 15.0.8234...
CRITICALπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-7201
CWE-639: Authorization Bypass Through User-Controlled Key in web services in Progress Sitefinity 15.2.x before 15.2.8441, 15.3.x before 15.3.8531, and...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-7198
CWE-284: Improper Access Control in web services in Progress Sitefinity 15.4.8623 before 15.4.8630 allows a remote unauthenticated attacker to access ...
CRITICALπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-7195
CWE-20: Improper Input Validation in web services in Progress Sitefinity 14.1.x through 14.3.x, 14.4.x before 14.4.8152, 15.0.x before 15.0.8234, 15.1...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-49782
Missing Authorization vulnerability in Elementor Elementor Website Builder allows Exploiting Incorrectly Configured Access Control Security Levels. T...
MEDIUMπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-39555
Deserialization of Untrusted Data vulnerability in Elated-Themes Askka allows Object Injection. This issue affects Askka: from n/a through 1.3.1.
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-39553
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes WaveR...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-39552
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Code Supply Co. Blu...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-35717
A stack-based buffer overflow in the export_language.cgi binary in VIVOTEK FD8136 firmware FD8136-VVTK-0300a allows authenticated remote attackers to ...
UNKNOWNπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-32250
NamelessMC is website software for Minecraft servers. A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in version 2.2.4 in the id p...
MEDIUMπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-28116
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Emilia Projects Progress Planner allow...
MEDIUMπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-27351
Missing Authorization vulnerability in Sekander Badsha Crew HRM allows Exploiting Incorrectly Configured Access Control Security Levels. This issue a...
MEDIUMπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-10622
Improper Authentication in REST API in Collibra Agent, allows a remote unauthenticated attacker to access privileged functionality via exposed '/...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2026-10621
Path traversal in restore handler in Collibra Agent, allows an attacker to write arbitrary files via a crafted ZIP archive. Collibra Agent fails to pr...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2025-69369
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Racquet...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2025-68886
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in androThemes Cookite...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2025-58897
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Ferment...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago
CVE-2025-58707
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Axiomthemes Spin al...
HIGHπŸ”’ LOCKED??????????NVD18 hours ago