CVE

What each publisher says about a vulnerability, whether working code exists for it, and what is written about it afterwards.

Behind7 sourcesupdated 8h agofresh within 24h
66,157things
8,747named by two sources or more
1,072conflicts
7sources

Only one source knows: Exploit-DB 23133 · GitHub advisories 30 · CISA Known Exploited Vulnerabilities 1004 · Metasploit exploit modules 679 · NVD 12679 · Red Hat 19880 · Write-ups 5

Covers. Every CVE in CISA KEV. Red Hat since 2025-01-01, NVD since 2026-08-01, GitHub since 2026-09-01. Every Exploit-DB entry and Metasploit exploit module naming a CVE. Excludes. Vulnerabilities with no CVE number. Ubuntu, whose list endpoint answers 20 records in thirty seconds and cannot be paged at a useful rate.
Compared · what is held against what, and from which column of each source
PropertyCISA Known Exploited VulnerabilitiesRed HatNVDGitHub advisoriesMetasploit exploit modulesExploit-DBWrite-ups
Cvssnot saidcvss3_scorecve.metrics.cvssMetricV31[].cvssData.baseScorecvss.scorenot saidnot saidnot said
Exploitedconst:yesnot saidnot saidnot saidnot saidnot saidnot said
Severitynot saidseveritynot saidseveritynot saidnot saidnot said

Everything else the sources say is shown side by side, and not compared.

EverythingExploited, and severearticle 10exploit 49396vulnerability 49746

Found

25 things, from 15,904 claims
ThingKindSeverityCvssDate
Linux Kernel < 2.6.14.6 - 'procfs' Kernel Memory Disclosure
CVE-2005-4605 · Exploit-DB · matched kernel
exploit 1 ——2009-08-05
A Deep Dive into the GetProcessHandleFromHwnd API
CVE-2023-41772 · Write-ups · matched kernel
article 1 ——2026-02-26
Microsoft Windows Kernel Privilege Escalation Vulnerability
CVE-2020-0986 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2021-11-03
kernel: netfs: Fix kernel async DIO
CVE-2025-21643 · Red Hat · matched kernel
vulnerability 1 low5.52025-01-19
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing operations to access already freed memory. This issue affects Bifrost GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.
CVE-2026-12387 · NVD · matched kernel
vulnerability 1 —5.12026-09-08
In the Linux kernel, the following vulnerability has been resolved: x86/mm/pat: Allocate split...
CVE-2026-97525 · GitHub advisories, NVD · matched kernel
vulnerability 3 high8.22026-09-25
Linux BPF doubleput UAF Privilege Escalation
CVE-2016-4557 · Metasploit exploit modules, Exploit-DB · matched kernel
exploit 3 ——2016-05-04
Linux Kernel < 2.6.26.4 - SCTP Kernel Memory Disclosure
CVE-2008-4113 · Exploit-DB · matched kernel
exploit 1 ——2008-12-29
Bypassing Windows Administrator Protection
· Write-ups
article 1 ——2026-01-26
kernel: kho: skip KHO for crash kernel
CVE-2026-64167 · Red Hat · matched kernel
vulnerability 1 ——2026-07-19
A race condition vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to cause a denial of service or disclose sensitive information. This issue affects Bifrost GPU Kernel Driver: from r12p0 through r49p5, from r50p0 through r51p0, from r54p1 through r54p2; Valhall GPU Kernel Driver: from r19p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.
CVE-2026-9040 · NVD · matched kernel
vulnerability 1 —7.72026-09-08
Linux Kernel Improper Ownership Management Vulnerability
CVE-2023-0386 · CISA Known Exploited Vulnerabilities, Metasploit exploit modules · matched kernel
vulnerability 1 exploit 1 ——2023-03-22
Throttlestop Kernel Driver - Kernel Out-of-Bounds Write Privilege Escalation
CVE-2025-7771 · Exploit-DB · matched kernel
exploit 1 ——2026-04-22
In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2025-36934 · NVD, Write-ups
vulnerability 1 article 1 —7.42025-12-11
Microsoft Windows Kernel Information Disclosure Vulnerability
CVE-2021-31955 · CISA Known Exploited Vulnerabilities · matched kernel
vulnerability 1 ——2021-11-03
kernel: Linux kernel: Network subsystem memory leak
CVE-2023-53716 · Red Hat · matched kernel
vulnerability 1 low5.52025-10-22
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to gain access to sensitive kernel information. This issue affects Valhall GPU Kernel Driver: from r29p0 through r49p5, from r50p0 through r54p3, r55p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p5, from r50p0 through r54p3, r55p0.
CVE-2026-0860 · NVD · matched kernel
vulnerability 1 —7.52026-09-08
In the Linux kernel, the following vulnerability has been resolved: ksmbd: rate limit unmapped...
CVE-2026-98113 · GitHub advisories, NVD · matched kernel
vulnerability 3 unknown—2026-09-25
Linux Kernel Sendpage Local Privilege Escalation
CVE-2009-2692 · Metasploit exploit modules, Exploit-DB · matched kernel
exploit 9 ——2009-08-13
Apple macOS XNU Kernel - Memory Disclosure due to bug in Kernel API for Detecting Kernel Memory Disclosures
CVE-2017-13865 · Exploit-DB · matched kernel
exploit 1 ——2017-12-11
Bypassing Administrator Protection by Abusing UI Access
· Write-ups
article 1 ——2026-02-12
Linux Kernel Privilege Escalation Vulnerability
CVE-2013-2094 · CISA Known Exploited Vulnerabilities, Exploit-DB · matched kernel
vulnerability 1 exploit 3 ——2013-05-14
kernel: riscv: process: fix kernel info leakage
CVE-2022-49852 · Red Hat · matched kernel
vulnerability 1 ——2025-05-01
Use-After-Free vulnerability in a zircon kernel pager proxy (Fuchsia), which could lead to a Privilege Escalation from Userspace to Kernel (AP)
CVE-2025-36940 · NVD · matched kernel
vulnerability 1 —8.82026-08-24
Windows Capcom.sys Kernel Execution Exploit (x64 only)
· Metasploit exploit modules · matched kernel
exploit 1 ——1999-01-01

Facets

Kind 99152 of 99152 claims

exploit49396

Severity 26286 of 99152 claims

high7180
medium13414
low3898

Exploited 1731 of 99152 claims

yes1731

Sources

CISA Known Exploited Vulnerabilities primary

The only source that says a vulnerability is being exploited right now.

vulnerability · current1731

Red Hat high

Its own severity, and the packages it tracks a vulnerability in.

vulnerability · current22719

NVD high

The CVSS baseline, and an anchor for CVEs the other members never reach.

vulnerability · current19380

GitHub advisories high

The ecosystem packages no distribution ships.

vulnerability · failing5916

Metasploit exploit modules normal

Whether a module exists for the tool an attacker actually runs.

exploit · current2698

Exploit-DB normal

Whether working code exists at all, which is a different question from how severe it is.

exploit · current46698

Write-ups normal

The prose that explains a vulnerability after the advisories have stopped.

article · current10