Zetlyn

CVE

What each publisher says about a vulnerability, whether working code exists for it, and what is written about it afterwards.

Behind7 sourcesupdated 1h agofresh within 24h

freeSign in20878 claims are newer than 30 days and need a subscription

65,943things
8,553named by two sources or more
1,057conflicts
7sources

Only one source knows: Exploit-DB 23133 · GitHub advisories 30 · CISA Known Exploited Vulnerabilities 1004 · Metasploit exploit modules 679 · NVD 12654 · Red Hat 19885 · Write-ups 5

Covers. Every CVE in CISA KEV. Red Hat since 2025-01-01, NVD since 2026-08-01, GitHub since 2026-09-01. Every Exploit-DB entry and Metasploit exploit module naming a CVE. Excludes. Vulnerabilities with no CVE number. Ubuntu, whose list endpoint answers 20 records in thirty seconds and cannot be paged at a useful rate.
Compared · what is held against what, and from which column of each source
PropertyCISA Known Exploited VulnerabilitiesRed HatNVDGitHub advisoriesMetasploit exploit modulesExploit-DBWrite-ups
Cvssnot saidcvss3_scorecve.metrics.cvssMetricV31[].cvssData.baseScorecvss.scorenot saidnot saidnot said
Exploitedconst:yesnot saidnot saidnot saidnot saidnot saidnot said
Severitynot saidseveritynot saidseveritynot saidnot saidnot said

Everything else the sources say is shown side by side, and not compared.

platform=linux ✕

EverythingExploited, and severearticle 10exploit 49396vulnerability 49311

Found

1–25 of 314
ThingTypePlatformDate
Linux BPF Sign Extension Local Privilege Escalation
CVE-2017-16995 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux2017-11-12
Linux Kernel - 'mincore()' Uninitialized Kernel Heap Page Disclosure
CVE-2017-16994 · Exploit-DB · matched kernel
doslinux2017-11-24
Linux Nested User Namespace idmap Limit Local Privilege Escalation
CVE-2018-18955 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux2018-11-15
Linux Kernel 4.13 - 'compat_get_timex()' Leak Kernel Pointer
CVE-2018-11508 · Exploit-DB · matched kernel
doslinux2019-01-21
Reliable Datagram Sockets (RDS) rds_atomic_free_op NULL pointer dereference Privilege Escalation
CVE-2018-5333 · Metasploit exploit modules · matched kernel
—Linux2018-11-01
Reliable Datagram Sockets (RDS) rds_atomic_free_op NULL pointer dereference Privilege Escalation
CVE-2019-9213 · Metasploit exploit modules, Exploit-DB · matched kernel
dosLinux / linux2018-11-01
Grsecurity Kernel Patch 1.9.4 (Linux Kernel) - Memory Protection
CVE-2002-1826 · Exploit-DB · matched kernel
locallinux2002-05-17
Linux BPF doubleput UAF Privilege Escalation
CVE-2016-4557 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux2016-05-04
Linux Kernel < 2.6.14.6 - 'procfs' Kernel Memory Disclosure
CVE-2005-4605 · Exploit-DB · matched kernel
locallinux2009-08-05
Linux Kernel Improper Ownership Management Vulnerability
CVE-2023-0386 · CISA Known Exploited Vulnerabilities, Metasploit exploit modules · matched kernel
—Linux2023-03-22
Linux Kernel < 2.6.26.4 - SCTP Kernel Memory Disclosure
CVE-2008-4113 · Exploit-DB · matched kernel
locallinux2008-12-29
Linux Kernel Sendpage Local Privilege Escalation
CVE-2009-2692 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / android / linux2009-08-13
Linux Kernel 2.6.37 - Local Kernel Denial of Service (1)
CVE-2010-4165 · Exploit-DB · matched kernel
doslinux2011-03-02
Linux Kernel Improper Input Validation Vulnerability
CVE-2010-3904 · CISA Known Exploited Vulnerabilities, Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux2010-10-19
Linux Kernel 4.8 (Ubuntu 16.04) - Leak sctp Kernel Pointer
· Exploit-DB · matched kernel
doslinux2018-11-30
Linux eBPF ALU32 32-bit Invalid Bounds Tracking LPE
CVE-2021-3490 · Metasploit exploit modules · matched kernel
—Linux2021-05-11
kernel: "Fragnesia" is a variant of Dirty Frag vulnerability in the ESP/XFRM leading to Local Privilege Escalation (LPE) vulnerability in the Linux kernel
CVE-2026-46300 · Red Hat, Exploit-DB, Metasploit exploit modules · matched kernel
localLinux,Unix / linux2026-05-13
kernel: "Dirty Frag" RxRPC variant is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel
CVE-2026-43500 · Red Hat, Exploit-DB, Metasploit exploit modules · matched kernel
localLinux,Unix / linux2026-05-08
kernel: "Dirty Frag" ESP XFRM variant is a new universal Local Privilege Escalation (LPE) vulnerability in the Linux kernel
CVE-2026-43284 · Red Hat, Exploit-DB, Metasploit exploit modules · matched kernel
localLinux,Unix / linux2026-05-07
Linux Kernel 4.6.3 Netfilter Privilege Escalation
CVE-2016-4997 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux / linux_x862016-06-03
Linux Kernel 4.6.3 Netfilter Privilege Escalation
CVE-2016-4998 · Metasploit exploit modules · matched kernel
—Linux2016-06-03
AF_PACKET packet_set_ring Privilege Escalation
CVE-2017-7308 · Metasploit exploit modules, Exploit-DB · matched kernel
localLinux / linux2017-03-29
Linux Kernel 4.4 (Ubuntu 16.04) - 'snd_timer_user_ccallback()' Kernel Pointer Leak
CVE-2016-4578 · Exploit-DB · matched kernel
doslinux2019-03-11
Rootkit Privilege Escalation Signal Hunter
· Metasploit exploit modules · matched kernel
—Linux2013-11-07
io_uring Same Type Object Reuse Priv Esc
CVE-2022-1043 · Metasploit exploit modules · matched kernel
—Linux2022-03-22
← PreviousPage 1 of 13Next →

Facets

Type 46698 of 98717 claims

local1065
dos831

Platform 49396 of 98717 claims

linux3053

Sources

CISA Known Exploited Vulnerabilities primary

The only source that says a vulnerability is being exploited right now.

vulnerability · current1731

Red Hat high

Its own severity, and the packages it tracks a vulnerability in.

vulnerability · current22689

NVD high

The CVSS baseline, and an anchor for CVEs the other members never reach.

vulnerability · current19161

GitHub advisories high

The ecosystem packages no distribution ships.

vulnerability · failing5730

Metasploit exploit modules normal

Whether a module exists for the tool an attacker actually runs.

exploit · current2698

Exploit-DB normal

Whether working code exists at all, which is a different question from how severe it is.

exploit · current46698

Write-ups normal

The prose that explains a vulnerability after the advisories have stopped.

article · current10