LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

Vulnerability Intelligence

Track trending vulnerabilities and active exploitation signals in real-time.

Last updated: April 5, 2026 at 04:03 AM
Total
2,447
critical
748
high
1,315
medium
329
low
32
KEV
13
POCs
867
Remote
2,151

Showing 50 of 2447 vulnerabilities

CVE-2018-25251HighNEWSnes9K - Buffer Overflow
CVSS: 8.4Age: today
Click to expand
CVE-2018-25254CriticalNEWNICO-FTP - Remote Code Execution
CVSS: 9.8Age: today
Click to expand
CVE-2018-25255HighNEW10-Strike LANState - Buffer Overflow
CVSS: 8.4Age: today
Click to expand
CVE-2016-20052CriticalNEWSnews CMS - Unrestricted File Upload
CVSS: 9.8Age: today
Click to expand
CVE-2026-3666HighNEWwpForo Forum - Arbitrary File Deletion
CVSS: 8.8Age: today
Click to expand
CVE-2026-4896HighNEWWCFM Frontend Manager for WooCommerce - Broken Access Control
CVSS: 8.1Age: today
Click to expand
CVE-2026-35616CriticalNEWFortinet FortiClientEMS - Command Injection
CVSS: 9.8Age: 1 day
KEVPoCRemote
Click to expand
CVE-2026-34780HighNEWElectron - Context Isolation Bypass
CVSS: 8.3Age: 1 day
Click to expand
CVE-2026-34955HighNEWPraisonAI - Command Injection
CVSS: 8.8Age: 1 day
Click to expand
CVE-2026-34774HighNEWElectron - Use After Free
CVSS: 8.1Age: 1 day
Click to expand
CVE-2026-34938CriticalNEWPraisonAI praisonai-agents - Command Injection
CVSS: 10.0Age: 1 day
Click to expand
CVE-2026-34953CriticalNEWPraisonAI - Authentication Bypass
CVSS: 9.1Age: 1 day
Click to expand
CVE-2026-34952CriticalNEWPraisonAI - Broken Access Control
CVSS: 9.1Age: 1 day
Click to expand
CVE-2026-34954HighNEWPraisonAI - Server Side Request Forgery
CVSS: 8.6Age: 1 day
Click to expand
CVE-2026-34934CriticalNEWPraisonAI - SQL Injection
CVSS: 9.8Age: 1 day
Click to expand
CVE-2026-34935CriticalNEWPraisonAI - Command Injection
CVSS: 9.8Age: 1 day
Click to expand
CVE-2026-34612CriticalNEWKestra - SQL Injection & Remote Code Execution
CVSS: 9.9Age: 1 day
Click to expand
CVE-2021-4477CriticalNEWHirschmann HiLCOS OpenBAT & BAT450 - Firewall Bypass
CVSS: 9.1Age: 1 day
Click to expand
CVE-2018-25236CriticalNEWHirschmann HiOS & HiSecOS - Authentication Bypass
CVSS: 9.8Age: 1 day
Click to expand
CVE-2017-20235CriticalNEWProSoft Technology ICX35-HWC - Authentication Bypass
CVSS: 9.1Age: 1 day
Click to expand
CVE-2017-20236CriticalNEWProSoft Technology ICX35-HWC - Command Injection
CVSS: 9.8Age: 1 day
Click to expand
CVE-2017-20234CriticalNEWGarrettCom Magnum - Authentication Bypass
CVSS: 9.8Age: 1 day
Click to expand
CVE-2026-33175HighNEWOAuthenticator - Authentication Bypass
CVSS: 8.8Age: 1 day
Click to expand
CVE-2016-15058HighNEWHirschmann HiLCOS Classic Platform - Credential Exposure
CVSS: 8.1Age: 1 day
Click to expand
CVE-2018-25237CriticalNEWHirschmann HiSecOS - Buffer Overflow
CVSS: 9.8Age: 1 day
Click to expand
CVE-2015-10148HighNEWHirschmann HiLCOS - Weak Cryptography
CVSS: 8.2Age: 1 day
Click to expand
CVE-2026-32662MediumNEWCVE-2026-32662
CVSS: 5.3Age: 1 day
PoCRemote
Click to expand
CVE-2026-32646HighNEWDevice Management - Broken Access Control
CVSS: 7.5Age: 1 day
PoCRemote
Click to expand
CVE-2026-28767MediumNEWUnspecified Product - Broken Access Control
CVSS: 5.3Age: 1 day
PoCRemote
Click to expand
CVE-2026-28766CriticalNEWGardyn - Broken Access Control
CVSS: 9.3Age: 1 day
PoCRemote
Click to expand
CVE-2026-22665HighNEWprompts.chat - Authentication Bypass
CVSS: 8.1Age: 1 day
Click to expand
CVE-2026-25197CriticalNEWGeneric Product - Broken Access Control
CVSS: 9.1Age: 1 day
PoCRemote
Click to expand
CVE-2025-10681HighNEWMobile App & Device Firmware - Hardcoded Credentials
CVSS: 8.6Age: 1 day
PoCRemote
Click to expand
CVE-2026-22661HighNEWprompts.chat - Path Traversal & Remote Code Execution
CVSS: 8.1Age: 1 day
Click to expand
CVE-2017-20237CriticalNEWHirschmann Industrial HiVision - Authentication Bypass
CVSS: 9.8Age: 1 day
Click to expand
CVE-2026-25726HighNEWCloudreve - Authentication Bypass
CVSS: 8.1Age: 1 day
Click to expand
CVE-2026-28798CriticalNEWZimaOS - Authentication Bypass
CVSS: 9.0Age: 1 day
Click to expand
CVE-2026-0545CriticalNEWmlflow/mlflow - Authentication Bypass
CVSS: 9.1Age: 1 day
Click to expand
CVE-2026-28373CriticalNEWStackfield Desktop App - Path Traversal
CVSS: 9.6Age: 1 day
Click to expand
CVE-2026-35216CriticalNEWBudibase - Remote Code Execution
CVSS: 9.0Age: 1 day
Click to expand
CVE-2026-35218HighNEWBudibase - Stored XSS
CVSS: 8.7Age: 1 day
Click to expand
CVE-2026-35214HighNEWBudibase - Path Traversal
CVSS: 8.7Age: 1 day
Click to expand
CVE-2026-31818CriticalNEWBudibase - Server-Side Request Forgery
CVSS: 9.6Age: 1 day
Click to expand
CVE-2025-59711HighNEWBiztalk360 - Directory Traversal
CVSS: 8.3Age: 1 day
Click to expand
CVE-2026-25773HighNEWFocalboard - SQL Injection
CVSS: 8.1Age: 1 day
Click to expand
CVE-2026-4350HighNEWPerfmatters WordPress Plugin - Path Traversal
CVSS: 8.1Age: 1 day
Click to expand
CVE-2026-5463HighNEWpymetasploit3 - Command Injection
CVSS: 8.6Age: 1 day
Click to expand
CVE-2026-33105CriticalNEWMicrosoft Azure Kubernetes Service - Broken Access Control
CVSS: 10.0Age: 2 days
Click to expand
CVE-2026-33107CriticalNEWAzure Databricks - Privilege Escalation & Server Side Request Forgery
CVSS: 10.0Age: 2 days
Click to expand
CVE-2026-26135CriticalNEWAzure Custom Locations Resource Provider - Server Side Request Forgery
CVSS: 9.6Age: 2 days
Click to expand

Check Your Domain for Exposed Credentials

Use our free scanner to check if credentials associated with your domain have been exposed in recent leaks or breaches.

Scan Your Domain