Operations Dashboard
Real-time network intelligence and threat monitoring.
Exposed Surface — Shodan
LIVE • Shodan InternetDB
External Dependency Health
LIVE • GitHub Status APILive Malicious URL Stream
LIVE • abuse.ch URLhausCritical CVE Ticker
LIVE • NVD CVE 2.0Public Event Throughput
LIVE • GitHub Events APIMalicious Infra by Country
LIVE • URLhaus + ip-api.comLoading geo data…
Malware URL Activity
LIVE • abuse.ch URLhausEPSS Top Exploit Risk
LIVE • FIRST.org EPSSActive Exploit Queue
LIVE • CISA KEV catalogLatest Exploited Vulnerabilities — CISA KEV
Live • CISA + NVD- ExploitedCISA KEV • 1d ago
CVE-2026-50522 — Microsoft SharePoint: Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Microsoft SharePoint contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.
- ExploitedCISA KEV • 1d ago
CVE-2026-16232 — Check Point SmartConsole: Check Point SmartConsole Improper Authentication Vulnerability
Check Point SmartConsole contains an improper authentication vulnerability which could allow an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.
- ExploitedCISA KEV • 2d ago
CVE-2021-27137 — DD-WRT DD-WRT: DD-WRT Stack-Based Buffer Overflow Vulnerability
DD-WRT contains a stack-based buffer overflow vulnerability that could allow an unauthenticated attacker to overflow an internal buffer used by UPnP and trigger a code execution vulnerability.
- ExploitedCISA KEV • 2d ago
CVE-2026-0770 — Langflow Langflow: Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code on affected installations.
- ExploitedCISA KEV • 2d ago
CVE-2026-63030 — WordPress Core: WordPress Core Interpretation Conflict Vulnerability
WordPress Core contains an interpretation conflict vulnerability that could allow an attacker to perform SQL Injection and achieve Remote Code Execution. This vulnerability can be chained with CVE-2026-60137.
- ExploitedCISA KEV • 2d ago
CVE-2026-60137 — WordPress Core: WordPress Core SQL Injection Vulnerability
WordPress Core contains a SQL injection vulnerability when a plugin or theme passes untrusted input to the parameter. This vulnerability can be chained with CVE-2026-63030 to allow an unauthenticated attacker to gain remote code execution on default WordPress installations.
- ExploitedCISA KEV • 7d ago
CVE-2026-39808 — Fortinet FortiSandbox: Fortinet FortiSandbox OS Command Injection Vulnerability
Fortinet FortiSandbox contains an OS command injection vulnerability that could allow an unauthenticated attacker to execute unauthorized code or commands via crafted HTTP requests.
- ExploitedCISA KEV • 7d ago
CVE-2026-25089 — Fortinet FortiSandbox: Fortinet FortiSandbox OS Command Injection Vulnerability
Fortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests.
Live Surface & Malware Intelligence
Exposed Infrastructure — Shodan
5 hosts scannedRecent Malicious URLs — URLhaus
0 liveURLhaus 401