Threat brief - top critical CVEs of the last 14 days
Top critical CVEs ranked by exploitation risk
This brief ranks recent critical and high-severity CVEs by a composite score combining CVSS, KEV status, EPSS probability, SSVC decision points (exploitation, automatable, impact), public exploit availability, and known actor exploitation. Default window is 14 days. Override window with ?days=N (1-60). Note: ordering is by NVD publication date, not the CVE ID year - a CVE reserved years ago (e.g. CVE-2020-xxxxx) but only disclosed now is genuinely new, so it can appear here.