Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
Filter and search through 394 vulnerabilities
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2026-6973 | Ivanti Endpoint Manager Mobile (EPMM) contains an improper input validation vulnerability that allows a remotely authenticated user with administrativ... | 7.2 | 696 | Neutral | Yes |
| Yes |
| CVE-2026-68820 | Microsoft Windows Ancillary Function Driver for WinSock contains a use-after-free vulnerability that allows an authorized attacker to elevate privileg... | 7.0 | 713 | Low | Yes | Yes |
| CVE-2026-42897 | Microsoft Exchange Server contains a cross-site scripting vulnerability during web page generation in Outlook Web Access and when certain interaction ... | 6.1 | 569 | Neutral | Yes | Yes |
| CVE-2026-3502 | TrueConf Client contains a download of code without integrity check vulnerability. An attacker who is able to influence the update delivery path can s... | 7.8 | 718 | Neutral | Yes | Yes |
| CVE-2026-34926 | Trend Micro Apex One (on-premise) contains a directory traversal vulnerability that could allow a pre-authenticated local attacker to modify a key tab... | 6.7 | 653 | Neutral | Yes | Yes |
| CVE-2026-32202 | Microsoft Windows Shell contains a protection mechanism failure vulnerability that allows an unauthorized attacker to perform spoofing over a network. | 4.3 | 396 | Low | Yes | Yes |
| CVE-2026-32201 | Microsoft SharePoint Server contains an improper input validation vulnerability that allows an unauthorized attacker to perform spoofing over a networ... | 6.5 | 598 | Neutral | Yes | Yes |
| CVE-2026-21525 | Microsoft Windows Remote Access Connection Manager contains a NULL pointer dereference that could allow an unauthorized attacker to deny service local... | 6.2 | 477 | Neutral | Yes | Yes |
| CVE-2026-20805 | Microsoft Windows Desktop Windows Manager contains an information disclosure vulnerability that allows an authorized attacker to disclose information ... | 5.5 | 486 | Rising | Yes | Yes |
| CVE-2025-68686 | Fortinet FortiOS contains an exposure of sensitive information to an unauthorized actor vulnerability. This may allow a remote unauthenticated attacke... | 5.9 | 516 | Neutral | Yes | Yes |
| CVE-2025-62215 | Microsoft Windows Kernel contains a race condition vulnerability that allows a local attacker with low-level privileges to escalate privileges. Succes... | 7.0 | 584 | Neutral | Yes | Yes |
| CVE-2025-61932 | Motex LANSCOPE Endpoint Manager contains an improper verification of source of a communication channel vulnerability allowing an attacker to execute a... | 0.0 | 0 | Neutral | Yes | Yes |
| CVE-2025-59689 | Libraesva Email Security Gateway (ESG) contains a command injection vulnerability which allows command injection via a compressed e-mail attachment. | 6.1 | 624 | Neutral | Yes | Yes |
| CVE-2025-55177 | Meta Platforms WhatsApp contains an incorrect authorization vulnerability due to an incomplete authorization of linked device synchronization messages... | 5.4 | 546 | Neutral | Yes | Yes |
| CVE-2025-54313 | Prettier eslint-config-prettier contains an embedded malicious code vulnerability. Installing an affected package executes an install.js file that lau... | 7.5 | 682 | Neutral | Yes | Yes |
| CVE-2025-48633 | Android Framework contains an unspecified vulnerability that allows for information disclosure. | 5.5 | 486 | Neutral | Yes | Yes |
| CVE-2025-47827 | IGEL OS contains a use of a key past its expiration date vulnerability that allows for Secure Boot bypass. The igel-flash-driver module improperly ver... | 4.6 | 405 | Neutral | Yes | Yes |
| CVE-2025-4664 | Insufficient policy enforcement in Loader in Google Chrome prior to 136.0.7103.113 allowed a remote attacker to leak cross-origin data via a crafted H... | 4.3 | 396 | Low | Yes | Yes |
| CVE-2025-4427 | Ivanti Endpoint Manager Mobile (EPMM) contains an authentication bypass vulnerability in the API component that allows an attacker to access protected... | 7.5 | 682 | Neutral | Yes | Yes |
| CVE-2025-43200 | Apple iOS, iPadOS, macOS, watchOS, and visionOS, contain an unspecified vulnerability when processing a maliciously crafted photo or video shared via ... | 4.2 | 481 | Neutral | Yes | Yes |