Recent Initial Access activity

CrushFTP Arbitrary File Read via SSTI was added on Apr, 25 and is found in 1 product.

View more detail on CVE-2024-4040

PAN-OS GlobalProtect Path Traversal and Command Injection was added on Apr, 18 and is found in 1 product.

View more detail on CVE-2024-3400

Fortra FileCatalyst Workflow Path Traversal was added on Mar, 25 and is found in 1 product.

View more detail on CVE-2024-25153

Jenkins Arbitrary File Read was added on Apr, 24 and is found in 1 product.

View more detail on CVE-2024-23897

Progress Kemp Flowmon RCE was added on Apr, 9 and is found in 1 product.

View more detail on CVE-2024-2389

Artica Proxy PHP Deserialization was added on Apr, 7 and is found in 1 product.

View more detail on CVE-2024-2054

Fortinet FortiClient EMS SQL Injection was added on Mar, 31 and is found in 1 product.

View more detail on CVE-2023-48788

CrushFTP File Move to Password Leak was added on Apr, 1 and is found in 1 product.

View more detail on CVE-2023-43177

Home Assistant Supervisor Authentication Bypass was added on Apr, 21 and is found in 1 product.

View more detail on CVE-2023-27482

PHPUnit eval-stdin.php was added on Apr, 3 and is found in 1 product.

View more detail on CVE-2017-9841

Huawei EchoLife HG532 UPNP Command Injection was added on Apr, 7 and is found in 1 product.

View more detail on CVE-2017-17215

13 New Indices

VulnCheck Advisories

VulnCheck advisories contain curated/generated advisory references for a given cve.

Browse the advisories index

Atlassian Vulnerabilities

Atlassian vulnerabilities are official notifications released by Atlassian to address security vulnerabilities and updates in their software products. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems. Security advisories for Atlassian server products are released every Wednesday.

Browse the atlassian-vulns index

Ivanti Security Advisories

Ivanti security advisories are official notifications released by Ivanti to address security vulnerabilities and updates in their software products. These security advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the ivanti-rss index

VulnCheck Configurations

VulnCheck configurations contain curated/generated cpe criteria matches for a given cve based off of the Mitre CVE dataset and NVD dictionary and VulnCheck CPE dictionary.

Browse the vulncheck-config index

Github Security Advisories

Github Security Advisories are official notifications released by Github to address security vulnerabilities and updates. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure security.

Browse the github-security-advisories index

Anchore NVD Data Overrides

Anchore NVD Data Overrides is an index of data overrides for the NVD dataset curated by Anchore that provides additional data that might be missing from NVD.

Browse the anchore-nvd-override index

Atredis Partners Security Advisories

Atredis Partners security advisories are official notifications released by Atredis Partners to address security vulnerabilities and updates in third party products. These security advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the atredis index

The Exploit Database

The Exploit Database (ExploitDB) is an archive of public exploits curated by OffSec.

Browse the exploitdb index

Node.js Security Working Group Advisories

Node.js security working group advisories are official notifications released by the Node.js Security Working Group to address security vulnerabilities and updates in the node and npm software ecosystems. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the node-security index

Japan Vulnerability Notes

Japan vulnerability notes are official notifications released by the Japan CERT (JPCERT) to address security vulnerabilities and updates. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure security.

Browse the jvndb index

Trane Technology Product Security Advisories

Trane Technology product security advisories are official notifications released by Trane Technology to address security vulnerabilities and updates in their software products. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the trane-technology index

Elspec Security Advisories

Elspec security advisories are official notifications released by Elspec to address security vulnerabilities and updates in their software products. These advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the elspec index

Container OS Release Notes

Container OS security advisories are official notifications released by Google to address security vulnerabilities and updates in the container optimized operating system. These security advisories provide important information about the vulnerabilities, their potential impact, and recommendations for users to apply necessary patches or updates to ensure the security of their systems.

Browse the google-container-optimized-os index