BACK TO EXPLORE INDEX
VULNERABILITY REPOSITORY
CVE Vulnerabilities & Zero-Day Primitives
CRITICAL CVEs: 4
CVE-2026-3819
CVSS 9.80-DAY
Linux Kernel eBPF Verifier Boundary Evasion LPE
Critical vulnerability in the Linux kernel extended Berkeley Packet Filter (eBPF) verifier arithmetic logic allowing local unprivileged containers to break out and execute arbitrary kernel memory code.
EPSS: 89.2%IN THE WILD
CVE-2026-1194
CVSS 10.00-DAY
Telecom SS7/Diameter Core Gateway Packet Deserialization RCE
Flaw in carrier-grade Signalling System 7 (SS7) and Diameter routing gateways enabling remote unauthenticated actors to execute arbitrary code within core cellular interconnects.
EPSS: 94.5%IN THE WILD
CVE-2024-3094
CVSS 10.0
XZ Utils / liblzma Upstream Build Injection Backdoor
Historic multi-year supply chain backdoor inserted into xz/liblzma 5.6.0 and 5.6.1 designed to intercept OpenSSH daemon cryptographic verification routines on glibc-based systems.
EPSS: 81.2%DISCLOSED
CVE-2024-21887
CVSS 9.10-DAY
Ivanti Connect Secure & Policy Secure Command Injection
Command injection in Ivanti web component allowing authenticated administrators (or unauthenticated attackers when chained with CVE-2023-46805) to execute arbitrary commands.
EPSS: 97.4%IN THE WILD