Beyond CISA KEV

Known Exploited Vulnerabilities Not in CISA KEV

Exploited vulnerabilities attested by Previdian that are not currently listed in the official CISA Known Exploited Vulnerabilities catalog — with confidence scoring and sensor telemetry.

Beyond CISA KEV
1,141
Tracked exploited vulnerabilities not in CISA KEV
Total KEVs
2,846
All known exploited vulnerabilities in Previdian
In CISA KEV
1,705
Also present in the official catalog

Why it matters

Why This List Matters

CISA KEV is the baseline many organisations use for mandatory remediation. Exploitation does not wait for catalog updates.

Previdian surfaces additional known exploited vulnerabilities from public reporting, vendor advisories stating active exploitation, and proprietary sensor observations — so teams can act before (or alongside) official listing.

“Not in CISA KEV” means the CVE is not currently in the CISA catalog when we last reconciled sources. Status can change when CISA adds an entry; Previdian continues to enrich both in-catalog and beyond-catalog KEVs.

Learn more in our CISA KEV comparison and methodology.

Live data

Browse the Live Feed

The live table of known exploited vulnerabilities not in CISA KEV is filtered on the main feed. Open it to search by vendor, product, confidence, and sensor observation.

Recent

Recently Added Beyond CISA KEV

Newest known exploited vulnerabilities tracked by Previdian that are not currently in CISA KEV.

  • CVE-2022-0169

    Photo Gallery by 10Web < 1.6.0 - Unauthenticated SQL Injection

    10 Sep 2026

  • CVE-2024-31982

    XWiki Platform: Remote code execution as guest via DatabaseSearch

    10 Sep 2026

  • CVE-2024-50340

    Ability to change environment from query in symfony/runtime

    10 Sep 2026

  • CVE-2019-10232

    Teclib GLPI through 9.3.3 has SQL injection via the "cycle" parameter in /scripts/unlock_tasks.php.

    10 Sep 2026

  • CVE-2024-5276

    SQL Injection Vulnerability in FileCatalyst Workflow 5.1.6 Build 135 (and earlier)

    10 Sep 2026

  • CVE-2026-45695

    Kopia: Unauthenticated RCE via SSH ProxyCommand Injection when --insecure --without-password is used

    10 Sep 2026

  • CVE-2024-36412

    SuiteCRM unauthenticated SQL Injection

    10 Sep 2026

  • CVE-2022-1057

    Pricing Deals for WooCommerce <= 2.0.2.02 - Unauthenticated SQLi

    10 Sep 2026

  • CVE-2026-42018

    Anonymous user token generation exposure in JFrog Artifactory

    10 Sep 2026

  • CVE-2026-42016

    Incorrect authorization validation of user token in JFrog Artifactory allows Privilege Escalation

    10 Sep 2026

Beyond CISA KEV

Prioritize What Attackers Are Exploiting

CISA KEV is essential baseline. Open the live feed filter for exploited vulnerabilities not currently in the official catalog — with evidence, confidence, and sensor context where available.