⚡
Vulnerability Intelligence
Comprehensive CVE database enriched with CVSS scores, EPSS exploit probability, CISA KEV status, and ransomware association flags. Prioritize patch management with actionable vulnerability intelligence for security teams and SOC analysts.
Global Database
216,864
1,726 in CISA KEV
High EPSS (≥50%)
4,332
across full database
Ransomware-Linked
361
across full database
EPSS vs CVSS1,500 CVEs
Critical / Ransomware
High
Medium / KEV
Low
600 / 1,500 CVEs🔍
CVSS ≥
EPSS ≥
| CVE ID | Vendor / Product | CVSS | EPSS | KEV | Modified | Due Date | Flags |
|---|---|---|---|---|---|---|---|
| CVE-2026-100865 | Heym before 0.0.53 contains multiple independent vulner… | 8.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100864 | heym before 0.0.91 contains a sandbox escape vulnerabil… | 8.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100863 | Heym versions 0.0.90 and earlier contain two server-sid… | 5.0 | — | — | 2026-09-27 | — | |
| CVE-2026-100862 | heym, a workflow automation platform, stores and return… | 4.9 | — | — | 2026-09-27 | — | |
| CVE-2026-100861 | heym before 0.0.105 fails to apply egress guards to int… | 5.0 | — | — | 2026-09-27 | — | |
| CVE-2026-100860 | heym before 0.0.105 does not act on the result of the c… | 5.5 | — | — | 2026-09-27 | — | |
| CVE-2026-100859 | Heym before 0.0.106 contains a credential exfiltration … | 6.5 | — | — | 2026-09-27 | — | |
| CVE-2026-100858 | heym before 0.0.109 contains a server-side request forg… | 6.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100857 | AzuraCast before 0.23.4 contains a code injection vulne… | 8.0 | — | — | 2026-09-27 | — | |
| CVE-2026-100856 | AzuraCast before 0.23.6 contains a code injection vulne… | 8.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100855 | AzuraCast before 0.23.6 contains a missing permission c… | 6.5 | — | — | 2026-09-27 | — | |
| CVE-2026-100854 | AzuraCast before 0.23.6 lacks RequireInternalConnection… | 6.3 | — | — | 2026-09-27 | — | |
| CVE-2026-100853 | In AzuraCast before 0.23.8, the public On-Demand downlo… | 5.9 | — | — | 2026-09-27 | — | |
| CVE-2026-100852 | AzuraCast through 0.23.x contains a command injection v… | 8.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100851 | AzuraCast before 0.23.8 contains a broken access contro… | 7.6 | — | — | 2026-09-27 | — | |
| CVE-2026-100850 | AzuraCast before 0.23.8 contains a server-side request … | 7.7 | — | — | 2026-09-27 | — | |
| CVE-2026-100849 | AzuraCast is a self-hosted web radio management suite. … | 7.1 | — | — | 2026-09-27 | — | |
| CVE-2026-100848 | AzuraCast (Composer package azuracast/azuracast) before… | 7.1 | — | — | 2026-09-27 | — | |
| CVE-2026-100847 | AzuraCast before 0.23.8 contains a DQL injection vulner… | 7.5 | — | — | 2026-09-27 | — | |
| CVE-2026-100846 | MONAI before 1.5.2 contains a deserialization of untrus… | 7.6 | — | — | 2026-09-27 | — | |
| CVE-2026-100845 | MONAI before 1.6.0 contains an unsafe deserialization v… | 7.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100844 | MONAI before 1.6.0 is vulnerable to OS command injectio… | 8.4 | — | — | 2026-09-27 | — | |
| CVE-2026-100843 | MONAI versions before 1.6.0 contain a remote code execu… | 7.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100842 | MONAI through 1.6.0 contains an eval injection vulnerab… | 7.0 | — | — | 2026-09-27 | — | |
| CVE-2026-100841 | In MONAI 1.6.0, PersistentDataset (monai/data/dataset.p… | 7.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100840 | MONAI through 1.6.0 contains a remote code execution vu… | 7.8 | — | — | 2026-09-27 | — | |
| CVE-2026-100839 | Contrast is a confidential-computing runtime for Kubern… | 8.4 | — | — | 2026-09-27 | — | |
| CVE-2026-100838 | Contrast is a confidential-computing runtime for Kubern… | 8.1 | — | — | 2026-09-27 | — | |
| CVE-2026-100837 | Contrast (Edgeless Systems) through 1.20.0 performs una… | 3.7 | — | — | 2026-09-27 | — | |
| CVE-2026-100836 | Contrast through 1.20.0 contains a panic vulnerability … | 4.3 | — | — | 2026-09-27 | — |
Page 1 / 7,229216,864 Records globally