Total CVEs detected worldwide to date.
CVE Threat Dashboard - Common Vulnerabilities and Exposures Database
CVE Database Dashboard – Real-time tracking of cybersecurity threats. Monitor the latest Common Vulnerabilities and Exposures (CVEs), analyze trends, and stay informed with real-time security intelligence, updated every 30 minutes. Be the first to spot emerging vulnerabilities and strengthen your defense. Explore the latest CVEs affecting software, systems, and networks worldwide.
Tracking all new vulnerabilities.
Ongoing analysis for enhanced threat understanding.
Top 10 CVE Newest Entries - Real-Time Updates
Stay ahead of cybersecurity threats with real-time updates on the latest vulnerabilities. This section highlights the top 10 most recently disclosed Common Vulnerabilities and Exposures (CVEs). Explore details, impact assessments, and mitigation strategies to safeguard your systems.
-
CVE-2026-33407 Security Notice
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.7.0, Wallos endpoints/logos/search.php accepts HTTP_PROXY and HTTPS_PROXY environment variables without val...
-
CVE-2026-33401 Technical Report
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.7.0, the patch introduced in commit e8a513591 (CVE-2026-30840) added SSRF protection to notification test e...
-
CVE-2026-33400 Significant Vulnerability Warning
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.7.0, a stored cross-site scripting (XSS) vulnerability in the payment method rename endpoint allows any aut...
-
CVE-2026-33399 Severe Cybersecurity Threat
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)
Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.7.0, the SSRF fix applied in version 4.6.2 for CVE-2026-30839 and CVE-2026-30840 is incomplete. The validat...
-
CVE-2026-33162 Technical Report
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 5.3.0 to before version 5.9.14, an authenticated control panel user with only accessCp can move entries across sections via POST /action...
-
CVE-2026-33161 Security Notice
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.8 and from version 5.0.0-RC1 to before version 5.9.14, a low-privileged authenticated user can call ass...
-
CVE-2026-33160 Vulnerability Insight
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.8 and from version 5.0.0-RC1 to before version 5.9.14, an unauthenticated user can call assets/generate...
-
CVE-2026-33159 Technical Report
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.8 and from version 5.0.0-RC1 to before version 5.9.14, guest users can access Config Sync updater index...
-
CVE-2026-33158 Vulnerability Insight
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.8 and from version 5.0.0-RC1 to before version 5.9.14, a low-privileged authenticated user can read pri...
-
CVE-2026-33157 Vulnerability Insight
Detected on 24 Mar 2026, 18:16 UTC (only 36 minutes ago)⏳ Analysis in Progress
Craft CMS is a content management system (CMS). From version 5.6.0 to before version 5.9.13, a Remote Code Execution (RCE) vulnerability exists in Craft CMS, it can be exploited by any authenticate...
Anticipate and Assess Emerging Threats
With the constant rise of new vulnerabilities, anticipating potential threats is critical to safeguarding your systems. Beyond simply consulting the CVE database, it is essential to understand the potential impact of each vulnerability and maintain a continuous vulnerability management strategy. By quickly identifying the exploits that can affect your resources, you enhance your organization’s security posture in the face of targeted attacks.
- Proactive Monitoring: regularly review bulletins and CVE updates.
- Risk Analysis: prioritize vulnerabilities based on their severity and the affected environment.
- Collaboration: coordinate with business teams to implement timely fixes and mitigate risks.
Recently Updated Vulnerabilities
Keep track of recent changes to existing vulnerabilities. This section highlights the latest modifications to CVE records, ensuring you have the most current information for effective vulnerability management.
Discover the most recent updates to CVEs, including critical vulnerabilities and their revised scores. Stay ahead of threats by accessing updated security details.
-
CVE-2025-41258 Severe Cybersecurity Threat
LibreChat version 0.8.1-rc2 uses the same JWT secret for the user session mechanism and RAG API which compromises the service-level authentication of the RAG API. -
CVE-2026-33482 Immediate Threat Report
WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `sanitizeFFmpegCommand()` function in `plugin/API/standAlone/functions.php` is designed t... -
CVE-2026-33265 Active Exploit Warning
In LibreChat 0.8.1-rc2, a logged-in user obtains a JWT for both the LibreChat API and the RAG API. -
CVE-2026-33483 Exploitable Vulnerability Warning
WWBN AVideo is an open source video platform. In versions up to and including 26.0, the `aVideoEncoderChunk.json.php` endpoint is a completely standalone PHP script with no auth... -
CVE-2026-33485 Critical Security Advisory
WWBN AVideo is an open source video platform. In versions up to and including 26.0, the RTMP `on_publish` callback at `plugin/Live/on_publish.php` is accessible without authenti...
Top Critical CVEs - Highest Severity Risks
Monitor vulnerabilities that are pending detailed examination. This section lists the ten most recent CVEs that are awaiting comprehensive analysis, allowing you to anticipate potential risks.
Discover the Top Critical CVEs
Explore the most critical CVEs with the highest severity scores. Prioritize these vulnerabilities to safeguard your systems against the most dangerous threats.
- CVE-2026-33478 Emergency Security Advisory WWBN AVideo is an open source video platform. In versions up to and including 26.0, multiple vulnerabilities in AVideo's CloneSite plugin chain together to allow a completely un...
- CVE-2026-3587 Critical Vulnerability Alert An unauthenticated remote attacker can exploit a hidden function in the CLI prompt to escape the restricted interface, leading to full compromise of the device.
- CVE-2026-32169 Emergency Security Advisory Server-side request forgery (ssrf) in Azure Cloud Shell allows an unauthorized attacker to elevate privileges over a network.
- CVE-2026-30836 Emergency Security Advisory Step CA is an online certificate authority for secure, automated certificate management for DevOps. Versions 0.30.0-rc6 and below do not safeguard against unauthenticated certif...
- CVE-2026-22557 High-Severity Security Breach A malicious actor with access to the network could exploit a Path Traversal vulnerability found in the UniFi Network Application to access files on the underlying system that co...
Understanding the CVE Landscape
Keeping track of the most recent Common Vulnerabilities and Exposures (CVEs) is essential for businesses aiming to strengthen their cybersecurity posture. By monitoring newly disclosed vulnerabilities, security teams can proactively patch critical flaws, mitigate the risk of exploits, and safeguard critical infrastructures. Our curated list of the Top 10 Latest CVEs reflects real-time updates, ensuring you stay informed about newly released advisories across multiple vendors.
Average CVSS Score Over the Last 30 Days
6.14
Assess the severity of recent vulnerabilities. This section displays the average Common Vulnerability Scoring System (CVSS) score for CVEs reported in the past 30 days, indicating the criticality level of recent threats.
Number of Critical CVSS Scores (Above 9)
17539
Identify the count of highly severe vulnerabilities. This section enumerates the number of CVEs with a CVSS score above 9, signifying critical security issues that require immediate attention.
Assessing Risk Through CVSS Scores
CVSS (Common Vulnerability Scoring System) provides a standardized way to gauge the severity of vulnerabilities. High-severity or critical CVEs often require immediate attention, especially if they affect widely used software components. Failing to address them promptly can lead to unauthorized access, data breaches, and operational disruptions. Our platform not only highlights top-scoring vulnerabilities but also provides direct links to remediation steps and references.
Monthly CVE Growth
10.5 %
Understand the trend of vulnerabilities over the past month. This section presents statistical data on the growth of CVEs in the last 30 days, helping you gauge the current security landscape.
Quarterly CVE Growth
22.2 %
Analyze the increase in vulnerabilities over the past quarter. This section provides insights into the quarterly growth of CVEs, assisting in long-term security planning.
Annual CVE Growth
18.5 %
Review the yearly escalation of reported vulnerabilities. This section offers an overview of the annual growth in CVEs, highlighting the evolving nature of security threats.
Strengthen Remediation and Patch Management
Once critical flaws are identified, deploying fixes swiftly and methodically is essential to minimize the impact of vulnerabilities on your infrastructure. Remediation efforts should be part of an overall patch management program and regular security audits. By optimizing your update process and performing routine tests, you reduce residual risks that attackers could otherwise exploit.
For more information on best practices for vulnerability fixes and improving response time, please visit our dedicated page: How to Fix CVEs .