Known Exploited Vulnerability Feed
Evidence-backed KEV intelligence enriched with confidence scoring, exploitation status, CISA KEV status, and sensor telemetry.
2,682
Total KEVs
Known exploited vulnerabilities tracked in KEVIntel
1,031
Beyond CISA KEV
Additional exploited CVEs tracked beyond CISA KEV
55
KEVs Observed in Sensors (7d)
Tracked KEVs with live exploitation attempts in honeypots
1,831+
Artifacts Available
PoC, Nuclei, and scanner context
| CVE | Product | Vendor | Confidence | Exploitation Status | Sensors | Added | Artifacts |
|---|---|---|---|---|---|---|---|
| CVE-2026-41940 | cPanel, WP Squared, WHM | WebPros | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2026-32202 | Windows 10 Version 1607, Windows 10 Version 1809, Windows 10 Version 21H2, Windows 10 Version 22H2, Windows 11 version 22H3, Windows 11 Version 23H2, Windows 11 Version 24H2, Windows 11 Version 25H2, Windows 11 version 26H1, Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), Windows Server 2016, Windows Server 2016 (Server Core installation), Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows Server 2022, 23H2 Edition (Server Core installation), Windows Server 2025, Windows Server 2025 (Server Core installation) | Microsoft | Confirmed | Active | — | about 2 months ago |
PoC
|
| CVE-2024-1708 | ScreenConnect | ConnectWise | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2025-29635 | DIR-823X | D-Link | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2024-7399 | MagicINFO 9 Server | Samsung Electronics | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2024-57728 | SimpleHelp remote support software | SimpleHelp | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2024-57726 | SimpleHelp remote support software | SimpleHelp | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2026-39987 | marimo | marimo-team | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2026-33825 | Microsoft Defender Antimalware Platform | Microsoft | Confirmed | Active | — | about 2 months ago |
PoC
|
| CVE-2026-20133 | Cisco Catalyst SD-WAN Manager | Cisco | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2026-20128 | Cisco Catalyst SD-WAN Manager | Cisco | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2026-20122 | Cisco Catalyst SD-WAN Manager | Cisco | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2025-48700 | Zimbra Collaboration (ZCS) | Zimbra | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2025-32975 | KACE Systems Management Appliance | Quest | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2025-2749 | Xperience | Kentico | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2023-27351 | NG | PaperCut | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2026-34197 | Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ | Apache Software Foundation | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2026-32201 | Microsoft SharePoint Enterprise Server 2016, Microsoft SharePoint Server 2019, Microsoft SharePoint Server Subscription Edition | Microsoft | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2026-34621 | Acrobat Reader | Adobe | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2026-21643 | FortiClientEMS | Fortinet | Confirmed | Active | — | about 2 months ago |
PoC
Nuclei
|
| CVE-2025-60710 | Windows 11 Version 24H2, Windows 11 Version 25H2, Windows Server 2025, Windows Server 2025 (Server Core installation) | Microsoft | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2023-36424 | Windows 11 version 22H3, Windows Server 2022, 23H2 Edition (Server Core installation), Windows 11 Version 23H2, Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2022, Windows 11 version 21H2, Windows 10 Version 21H2, Windows 11 version 22H2, Windows 10 Version 22H2, Windows 10 Version 1507, Windows 10 Version 1607, Windows Server 2016, Windows Server 2016 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2008 R2 Service Pack 1, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation) | Microsoft | Confirmed | Active | — | about 2 months ago |
PoC
|
| CVE-2023-21529 | Microsoft Exchange Server 2019 Cumulative Update 12, Microsoft Exchange Server 2019 Cumulative Update 11, Microsoft Exchange Server 2013 Cumulative Update 23, Microsoft Exchange Server 2016 Cumulative Update 23 | Microsoft | Confirmed | Active | — | about 2 months ago |
—
|
| CVE-2020-9715 | Adobe Acrobat and Reader | Adobe | Confirmed | Active | — | about 2 months ago |
PoC
|
| CVE-2026-1340 | Endpoint Manager Mobile | Ivanti | Confirmed | Active | — | about 2 months ago |
—
|