The combination of confirmed exploitation, KEV inclusion, very high EPSS and an internet-facing edge product makes this an operational priority despite a CVSS score below 9.0.
Evidence-led prioritisation
Threat Radar
The vulnerabilities and threats worth your attention, ranked by evidence rather than severity alone.
Updated 17 Aug 2026 · 18:42 UTC
Today’s Signal
2Fix now
0Investigate
2Watch
1Low signal
2 New KEV7 EPSS movers
Priority vulnerabilities
5 demonstration results
Why 94?
View CVE
Why 93?
View CVE
KEV inclusion, a public exploit and high exploitation probability combine with the privileged position of mail infrastructure.
Why 47?
View CVE
Critical technical severity and a public proof of concept are meaningful, but confirmed exploitation and KEV evidence are not yet present.
Why 44?
View CVE
The technology is frequently internet-facing, but current evidence does not show exploitation and authentication is required.
Why 18?
View CVE
The theoretical impact is high, but exploitation probability is very low and there is no KEV or active-exploitation evidence.
No matching signals
Try removing a filter or using a broader search.