Home/Threat brief
Brief

Threat brief - top critical CVEs of the last 14 days

Top critical CVEs ranked by exploitation risk
This brief ranks recent critical and high-severity CVEs by a composite score combining CVSS, KEV status, EPSS probability, SSVC decision points (exploitation, automatable, impact), public exploit availability, and known actor exploitation. Default window is 14 days. Override window with ?days=N (1-60). Note: ordering is by NVD publication date, not the CVE ID year - a CVE reserved years ago (e.g. CVE-2020-xxxxx) but only disclosed now is genuinely new, so it can appear here.
No critical or high-severity CVEs found in this window. Try ?days=30 for a wider lookback.
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin