CVE

What each publisher says about a vulnerability, whether working code exists for it, and what is written about it afterwards.

Behind7 sourcesupdated 5h agofresh within 24h
66,364things
9,006named by two sources or more
1,118conflicts
7sources

Only one source knows: Exploit-DB 23133 · GitHub advisories 35 · CISA Known Exploited Vulnerabilities 1004 · Metasploit exploit modules 679 · NVD 12674 · Red Hat 19828 · Write-ups 5

Covers. Every CVE in CISA KEV. Red Hat since 2025-01-01, NVD since 2026-08-01, GitHub since 2026-09-01. Every Exploit-DB entry and Metasploit exploit module naming a CVE. Excludes. Vulnerabilities with no CVE number. Ubuntu, whose list endpoint answers 20 records in thirty seconds and cannot be paged at a useful rate.
Compared · what is held against what, and from which column of each source
PropertyCISA Known Exploited VulnerabilitiesRed HatNVDGitHub advisoriesMetasploit exploit modulesExploit-DBWrite-ups
Cvssnot saidcvss3_scorecve.metrics.cvssMetricV31[].cvssData.baseScorecvss.scorenot saidnot saidnot said
Exploitedconst:yesnot saidnot saidnot saidnot saidnot saidnot said
Severitynot saidseveritynot saidseveritynot saidnot saidnot said

Everything else the sources say is shown side by side, and not compared.

EverythingExploited, and severearticle 10exploit 49396vulnerability 50274

Found

25 things, from 15,186 claims
ThingKindSeverityCvssDate
Linux Kernel Privilege Escalation Vulnerability
CVE-2013-2094 · CISA Known Exploited Vulnerabilities, Exploit-DB · matched kernel
vulnerability 1 exploit 3 ——2013-05-14
kernel: riscv: process: fix kernel info leakage
CVE-2022-49852 · Red Hat · matched kernel
vulnerability 1 ——2025-05-01
Use-After-Free vulnerability in a zircon kernel pager proxy (Fuchsia), which could lead to a Privilege Escalation from Userspace to Kernel (AP)
CVE-2025-36940 · NVD · matched kernel
vulnerability 1 —8.82026-08-24
Microsoft Windows Kernel Privilege Escalation Vulnerability
CVE-2016-3309 · CISA Known Exploited Vulnerabilities, Exploit-DB · matched kernel
vulnerability 1 exploit 1 ——2017-10-06
kernel: net: better track kernel sockets lifetime
CVE-2025-21884 · Red Hat · matched kernel
vulnerability 1 low3.32025-03-27
Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU processing operations to access already freed memory. This issue affects Valhall GPU Kernel Driver: from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r50p0 through r54p3, r55p0.
CVE-2026-5729 · NVD · matched kernel
vulnerability 1 —7.82026-09-08
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel-mode color transform...
CVE-2026-47506 · GitHub advisories, NVD · matched kernel
vulnerability 2 medium5.52026-09-30
Linux Kernel Use-After-Free Vulnerability
CVE-2023-0266 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2023-03-30
kernel: Linux kernel dpaa2-switch: Kernel memory corruption via out-of-bounds write
CVE-2026-43205 · Red Hat · matched kernel
vulnerability 1 medium6.72026-05-06
A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by...
CVE-2026-13043 · GitHub advisories, NVD · matched kernel
vulnerability 2 critical—2026-10-01
Linux Kernel Incorrect Resource Transfer Between Spheres Vulnerability
CVE-2026-31431 · CISA Known Exploited Vulnerabilities, Red Hat, Metasploit exploit modules · matched kernel
vulnerability 2 exploit 1 high7.82026-04-22
kernel: Linux kernel: Memory Corruption and Kernel Crashes via IOMMU SVA coherency issue
CVE-2025-71202 · Red Hat · matched kernel
vulnerability 1 medium6.52026-02-14
Attacker model / Preconditions: a loaded `TXM_MODULE_USER_MODE | TXM_MODULE_MEMORY_PROTECTION` module issuing kernel dispatch calls, on a build with `TX_ENABLE_EVENT_TRACE`. A user-mode, memory-protected module can register an arbitrary function pointer as the global trace-full callback. The kernel calls it directly — no validation, no trampoline — from privileged kernel code when the trace buffer wraps. An invalid pointer faults the kernel (DoS). A pointer into the module's own code was observed running with kernel privilege (`CONTROL.nPRIV = 0`), confirmed at runtime with a register capture inside that code.
CVE-2026-102710 · NVD, GitHub advisories · matched kernel
vulnerability 2 critical—2026-09-29
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer...
CVE-2026-47555 · GitHub advisories, NVD, Red Hat · matched kernel
vulnerability 3 medium5.52026-09-30
Microsoft Windows Kernel Privilege Escalation Vulnerability
CVE-2020-17087 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2021-11-03
kernel: Linux kernel (erofs): Kernel stack overflow due to excessive file system stacking
CVE-2025-68361 · Red Hat · matched kernel
vulnerability 1 medium4.72025-12-24
In the Linux kernel, the following vulnerability has been resolved: timers/itimer: Zero-init old itimerval before copy to userspace On native sparc64, struct __kernel_old_timeval contains a four-byte hole after tv_usec because tv_sec is 64-bit while __kernel_suseconds_t is 32-bit. put_itimerval() fills only the named fields in a stack-allocated __kernel_old_itimerval and copies the entire object to userspace, so getitimer() can expose the two padding holes. Zero-initialize the aggregate before assigning the fields so implicit padding is deterministic before it crosses the user/kernel boundary.
CVE-2026-89765 · NVD, Red Hat · matched kernel
vulnerability 2 low5.52026-09-11
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an...
CVE-2026-47566 · GitHub advisories, NVD, Red Hat · matched kernel
vulnerability 3 medium5.52026-09-30
Microsoft Windows Kernel Privilege Escalation Vulnerability
CVE-2021-33771 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2021-11-03
kernel: dm-integrity: fix leaking uninitialized kernel memory
CVE-2026-72101 · Red Hat · matched kernel
vulnerability 1 medium5.52026-08-15
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a...
CVE-2026-47568 · GitHub advisories, NVD, Red Hat · matched kernel
vulnerability 3 medium5.52026-09-30
Microsoft Windows Kernel Privilege Escalation Vulnerability
CVE-2021-31979 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2021-11-03
kernel: ieee802154: fix kernel-infoleak in dgram_recvmsg()
CVE-2026-72441 · Red Hat · matched kernel
vulnerability 1 medium5.52026-08-15
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a...
CVE-2026-47562 · GitHub advisories, NVD, Red Hat · matched kernel
vulnerability 3 medium4.42026-09-30
Android Kernel Use-After-Free Vulnerability
CVE-2021-1048 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2022-05-23

Facets

Kind 99680 of 99680 claims

exploit49396

Severity 26560 of 99680 claims

high7302
medium13517
low3915

Exploited 1733 of 99680 claims

yes1733

Sources

CISA Known Exploited Vulnerabilities primary

The only source that says a vulnerability is being exploited right now.

vulnerability · current1733

Red Hat high

Its own severity, and the packages it tracks a vulnerability in.

vulnerability · current22765

NVD high

The CVSS baseline, and an anchor for CVEs the other members never reach.

vulnerability · current19632

GitHub advisories high

The ecosystem packages no distribution ships.

vulnerability · failing6144

Metasploit exploit modules normal

Whether a module exists for the tool an attacker actually runs.

exploit · current2698

Exploit-DB normal

Whether working code exists at all, which is a different question from how severe it is.

exploit · current46698

Write-ups normal

The prose that explains a vulnerability after the advisories have stopped.

article · current10