Track, analyze, and respond to the latest security vulnerabilities and zero-day exploits. Our platform integrates with major CVE databases and provides real-time threat intelligence for security teams.
Search across millions of CVEs, exploits, and security advisories
Latest CVEs with critical and high severity ratings
| CVE ID | Severity | Description | Vendor/Product | Published | Exploit | Action |
|---|---|---|---|---|---|---|
| CVE-2023-4863 | Critical 9.8 | Heap buffer overflow in WebP image library leading to arbitrary code execution | Google Chrome, libwebp | 2023-09-12 | Exploit Available | |
| CVE-2023-38545 | Critical 9.1 | curl SOCKS5 heap buffer overflow vulnerability | curl, libcurl | 2023-10-11 | PoC Available | |
| CVE-2023-22515 | Critical 10.0 | Atlassian Confluence Data Center & Server privilege escalation | Atlassian Confluence | 2023-10-04 | Actively Exploited | |
| CVE-2023-40014 | High 8.8 | .NET and Visual Studio denial of service vulnerability | Microsoft .NET | 2023-09-12 | No Exploit | |
| CVE-2023-29357 | High 8.8 | Microsoft SharePoint Server elevation of privilege vulnerability | Microsoft SharePoint | 2023-06-13 | Exploit Available | |
| CVE-2023-23397 | Critical 9.8 | Microsoft Outlook elevation of privilege vulnerability | Microsoft Outlook | 2023-03-14 | Actively Exploited | |
| CVE-2023-21716 | Critical 9.8 | Windows Graphics Component remote code execution vulnerability | Microsoft Windows | 2023-02-14 | Exploit Available | |
| CVE-2022-41082 | Critical 8.8 | Microsoft Exchange Server elevation of privilege vulnerability | Microsoft Exchange | 2022-11-08 | Actively Exploited | |
| CVE-2022-41352 | High 7.8 | Fortinet FortiNAC path traversal vulnerability | Fortinet FortiNAC | 2022-12-06 | Exploit Available | |
| CVE-2021-44228 | Critical 10.0 | Log4Shell - Apache Log4j remote code execution vulnerability | Apache Log4j | 2021-12-09 | Mass Exploitation |
WebP heap overflow exploit for Chrome < 116.0.5845.187
curl SOCKS5 heap buffer overflow proof of concept
Confluence Server privilege escalation exploit
Windows Graphics Component remote code execution
ZeroHack collaborates with major security organizations and CVE databases:
Official CVE Numbering Authority (CNA) partner for vulnerability assignment and management
Real-time synchronization with NVD for comprehensive vulnerability analysis
Direct integration for exploit availability and proof-of-concept verification
Coordinated vulnerability disclosure and emergency response partnership
Integrate real-time vulnerability intelligence directly into your security tools and workflows.
Real-time vulnerability feeds for your SOC
Subscribe to ZeroHack Vulnerability Intelligence for real-time alerts, exploit analysis, and actionable security intelligence.
Receive daily vulnerability digests and zero-day alerts