Palo Alto Networks Discloses More Details on Critical PANThe Hacker News·Apr 20, 13:04 UTC · Apr 20, 2024Exploit / PoC in the wildCVE-2024-340060
17,000+ Microsoft Exchange servers in Germany are vulnerable to attack, BSI warnsHelp Net Security·Mar 26, 00:00 UTC · Mar 26, 2024Exploit / PoC in the wildCVE-2024-21410CVE-2024-2619860
Ivanti warns of a new auth bypass flaw in its Connect Secure, Policy Secure, and ZTA gateway devicesSecurity Affairs·Feb 9, 08:17 UTC · Feb 9, 2024Exploit / PoC in the wildCVE-2024-22024CVE-2023-46805CVE-2024-21887+2 CVEs60
Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass ExploitationThe Hacker News·Feb 6, 14:36 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2024-21887CVE-2023-36661+1 CVEs60
Latest Ivanti Zero Day Exploited By Scores of IPsInfosecurity Magazine·Feb 6, 11:00 UTC · Feb 6, 2024Exploit / PoC in the wildCVE-2024-21893CVE-2023-46805CVE-2024-21887+2 CVEs60
Critical Zero-Day in Apache OfBiz ERP System Exposes Businesses to AttackThe Hacker News·Jan 9, 06:04 UTC · Jan 9, 2024Exploit / PoC in the wildCVE-2023-51467CVE-2023-4907060
Alert: F5 Warns of Active Attacks Exploiting BIGThe Hacker News·Nov 1, 14:39 UTC · Nov 1, 2023Exploit / PoC in the wildCVE-2023-46747CVE-2023-4674860
Citrix NetScaler ADC and Gateway Devices Under Attack: CISA Urges Immediate ActionThe Hacker News·Sep 7, 03:22 UTC · Sep 7, 2023Exploit / PoC in the wildCVE-2023-351960
PoC for no-auth RCE on Juniper firewalls releasedHelp Net Security·Aug 28, 00:00 UTC · Aug 28, 2023Exploit / PoC in the wildCVE-2023-36846CVE-2023-36847CVE-2023-36844+1 CVEs60
Ivanti zero-day exploited to target Norwegian government (CVE-2023-35078)Help Net Security·Jul 31, 13:19 UTC · Jul 31, 2023Exploit / PoC in the wildCVE-2023-3507860
Major Security Flaw Discovered in Metabase BI SoftwareThe Hacker News·Jul 28, 05:46 UTC · Jul 28, 2023Exploit / PoC in the wildCVE-2023-3864660
Thousands of Citrix Servers Exposed to ZeroInfosecurity Magazine·Jul 24, 10:00 UTC · Jul 24, 2023Exploit / PoCCVE-2023-3519CVE-2023-3466CVE-2023-346760
CISA's KEV Catalog Updated with 3 New Flaws Threatening IT Management SystemsThe Hacker News·Mar 11, 06:26 UTC · Mar 11, 2023Exploit / PoC in the wildCVE-2022-35914CVE-2022-33891CVE-2022-28810+3 CVEs60
U.S. Cybersecurity Agency CISA Adds Three New Vulnerabilities in KEV CatalogThe Hacker News·Feb 22, 12:38 UTC · Feb 22, 2023Exploit / PoC in the wildCVE-2022-47986CVE-2022-41223CVE-2022-40765+3 CVEs60
PoC for critical ManageEngine bug to be released, so get patching! (CVE-2022-47966)Help Net Security·Feb 21, 17:23 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-4796660
PoC exploit, IoCs for Fortinet FortiNAC RCE released (CVE-2022-39952)Help Net Security·Feb 21, 00:00 UTC · Feb 21, 2023Exploit / PoC in the wildCVE-2022-3995260
CISA adds Oracle, SugarCRM bugs to its Known Exploited Vulnerabilities CatalogSecurity Affairs·Feb 4, 18:45 UTC · Feb 4, 2023Exploit / PoC in the wildCVE-2022-21587CVE-2023-2295260
Most internetSecurity Affairs·Jan 14, 21:24 UTC · Jan 14, 2023Exploit / PoC in the wildCVE-2022-4616960
Over 17000 Fortinet devices exposed online are very likely vulnerable to CVE-2022Security Affairs·Oct 18, 07:56 UTC · Oct 18, 2022Exploit / PoC in the wildCVE-2022-4068460
PoC exploits for Atlassian CVE-2022Security Affairs·Jun 5, 18:11 UTC · Jun 5, 2022Exploit / PoC in the wildCVE-2022-2613460
Matt's Guide to Vendor ResponseCisco Talos·Dec 30, 17:56 UTC · Dec 30, 2009Exploit / PoC in the wild60