Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE Database & AI Vulnerability Analysis

Browse 358,164+ CVEs from NVD & CNNVD with AI-powered analysis, AI-generated PoCs, KEV/EPSS tracking, and daily security intelligence. Filter by vendor, product, severity, or CWE.

Track malicious packages and archived sample intelligenceExplore malicious packages
Trusted by security teams 900+security practitioners390+company & university domains· security vendors · in-house teams · academia · bug-bounty hunters
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-5917 libgit2 v0.27.0-v1.9.0 Shell Command Injection via ssh_libssh2 Backend libgit2libgit2 Critical 9.6 2026-08-11 21:40:29 Deep Dive
CVE-2026-73245 Kestra: Unauthenticated management/actuator endpoints exposed on port 8081 (/env, /loggers) bypass API basic-auth kestra-iokestra Medium 6.5 2026-08-11 21:36:15 Deep Dive
CVE-2026-66875 Mira Hormone Monitor, Mira Android App Missing authentication for critical function Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware High 8.8 2026-08-11 21:31:43 Deep Dive
CVE-2026-29036 cJSON 1.7.19 Wrong-Key Modification via JSON Pointer Escape Decoding DaveGamblecJSON High 7.5 2026-08-11 21:30:02 Deep Dive
CVE-2026-66098 Mira Hormone Monitor, Mira Android App Missing authentication for critical function Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Medium 6.5 2026-08-11 21:28:44 Deep Dive
CVE-2026-67558 Mira Hormone Monitor, Mira Android App Authentication bypass by spoofing Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware High 7.4 2026-08-11 21:27:03 Deep Dive
CVE-2026-67568 Mira Hormone Monitor, Mira Android App Use of Hard-coded Credentials Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Critical 9.1 2026-08-11 21:25:11 Deep Dive
CVE-2026-19560 Chrome <151.0.7922.137 越权释放漏洞 GoogleChrome--2026-08-11 21:23:55 Deep Dive
CVE-2026-19559 Chrome<151.0.7922.137 HTML使用后释放漏洞 GoogleChrome--2026-08-11 21:23:54 Deep Dive
CVE-2026-19558 Google Chrome 扩展程序使用后释放漏洞 GoogleChrome--2026-08-11 21:23:54 Deep Dive
CVE-2026-19556 Google Chrome < 151.0.7922.137 V8堆释放后使用漏洞 GoogleChrome--2026-08-11 21:23:53 Deep Dive
CVE-2026-19557 Chrome <151.0.7922.137 Mac UAF导致沙箱逃逸 GoogleChrome--2026-08-11 21:23:53 Deep Dive
CVE-2026-68067 Mira Hormone Monitor, Mira Android App Weak Authentication Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Critical 9.8 2026-08-11 21:23:06 Deep Dive
CVE-2026-66340 Mira Hormone Monitor, Mira Android App Improper restriction of excessive authentication attempts Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Medium 5.3 2026-08-11 21:20:58 Deep Dive
CVE-2026-64934 Mira Hormone Monitor, Mira Android App Reliance on untrusted inputs in a security decision Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Medium 4.3 2026-08-11 21:15:13 Deep Dive
CVE-2026-48763 TypeBot has Arbitrary S3 Object Write in deprecated public upload endpoint via attacker-controlled filePath baptisteArnotypebot.io High 8.2 2026-08-11 20:51:25 Deep Dive
CVE-2026-66832 Mira Hormone Monitor, Mira Android App Use of GET request method with sensitive query strings Quanovate Tech Inc. (operating as Mira / Mira Care)Mira Firmware Medium 6.5 2026-08-11 20:49:57 Deep Dive
CVE-2026-19550 Freeipa: ipa: freeipa: trust-fetch-domains uses trust-read aci to gate a privileged ad trust refresh, allowing unauthorized ldap writes Red HatRed Hat Enterprise Linux 10 Medium 4.3 2026-08-11 20:46:42 Deep Dive
CVE-2026-14863 FileRun 2026.2.0 RCE via Thumbnail Generation Command Injection FileRunFileRun High 8.8 2026-08-11 20:41:36 Deep Dive
CVE-2026-48762 TypeBot Vulnerable to Server-Side Request Forgery (SSRF) in OpenAI Transcription Handler baptisteArnotypebot.io Medium 5.4 2026-08-11 20:40:32 Deep Dive

Frequently Asked Questions

340,000+ CVEs aggregated from NVD and CNNVD, updated daily with AI-generated Chinese translations.

Basic CVE data is completely free. AI PoC generation and premium intelligence features require a Pro or Pro+ subscription.

When a CVE has no public proof-of-concept, Shenlong AI automatically generates exploit code and a technical analysis report based on the vulnerability description and references.

Yes. Shenlong AI has translated NVD English descriptions into Chinese, so you can search CVEs using Chinese keywords directly.