KEV Intelligence is becoming Previdian.

Beyond CISA KEV

Known Exploited Vulnerabilities Not in CISA KEV

Exploited vulnerabilities attested by Previdian that are not currently listed in the official CISA Known Exploited Vulnerabilities catalog — with confidence scoring and sensor telemetry.

Beyond CISA KEV
1,108
Tracked exploited vulnerabilities not in CISA KEV
Total KEVs
2,795
All known exploited vulnerabilities in Previdian
In CISA KEV
1,687
Also present in the official catalog

Why it matters

Why This List Matters

CISA KEV is the baseline many organisations use for mandatory remediation. Exploitation does not wait for catalog updates.

Previdian surfaces additional known exploited vulnerabilities from public reporting, vendor advisories stating active exploitation, and proprietary sensor observations — so teams can act before (or alongside) official listing.

“Not in CISA KEV” means the CVE is not currently in the CISA catalog when we last reconciled sources. Status can change when CISA adds an entry; Previdian continues to enrich both in-catalog and beyond-catalog KEVs.

Learn more in our CISA KEV comparison and methodology.

Live data

Browse the Live Feed

The live table of known exploited vulnerabilities not in CISA KEV is filtered on the main feed. Open it to search by vendor, product, confidence, and sensor observation.

Recent

Recently Added Beyond CISA KEV

Newest known exploited vulnerabilities tracked by Previdian that are not currently in CISA KEV.

  • CVE-2023-54391

    Proxmox VE 7.0-8.0 Authentication Bypass via tfa-challenge Parameter

    01 Sep 2026

  • CVE-2026-83549

    Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in...

    01 Sep 2026

  • CVE-2026-83548

    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote...

    01 Sep 2026

  • CVE-2026-9586

    Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMB

    01 Sep 2026

  • CVE-2025-40553

    SolarWinds Web Help Desk Deserialization of Untrusted Data Remote Code Execution Vulnerability

    01 Sep 2026

  • CVE-2026-41948

    Dify v1.14.1 Path Traversal via Plugin Daemon Internal API Access

    01 Sep 2026

  • CVE-2026-82329

    Potential authentication bypass leading to administrative access in Artifactory

    01 Sep 2026

  • CVE-2023-7330

    Ruijie Networks NBR Routers Unauthenticated Arbitrary File Upload via fileupload.php

    29 Aug 2026

  • CVE-2026-0768

    Langflow code Code Injection Remote Code Execution Vulnerability

    29 Aug 2026

  • CVE-2026-2614

    Arbitrary File Read via Prompt Tag Source Validation Bypass in mlflow/mlflow

    29 Aug 2026

Beyond CISA KEV

Prioritize What Attackers Are Exploiting

CISA KEV is essential baseline. Open the live feed filter for exploited vulnerabilities not currently in the official catalog — with evidence, confidence, and sensor context where available.