N-day Feed Updates

Exploits Feed

Below is the list of vulnerabilities and CVEs that have been thoroughly analysed by Crowdfense and are now part of our N-day Vulnerabilities Feed.

Each entry includes a comprehensive technical report, featuring:

  • In-depth root cause analysis

  • Exploitation context and impact assessment

A fully weaponised exploit accompanies most vulnerabilities, while others include a crash trigger or minimal proof-of-concept (PoC) to demonstrate exploitability.

With an increasing number of CVEs being reported every year, the vulnerability landscape is vast. Not every vulnerability poses the same level of risk, and others may be practically unexploitable.

Our process draws on sources such as CISA’s KEV catalogue, and we continuously track and analyse vulnerabilities exploited in the wild by APT groups, ransomware operators, and other cybercriminals. To determine whether an exploit is worth developing, we consider which attacks are most critical from an attacker’s perspective, which newly disclosed vulnerabilities are most likely to be used in real-world scenarios, and which exploits would provide the greatest value to our clients.

IDCVE YearCVEDescriptionVendorCapabilityStatusCISA KEVReleased Year
12020CVE-2020-17096Microsoft Windows NTFS (ntfs.sys) Memory Corruption - Denial of Service (DoS)MicrosoftDoSpocFalse2024
22021CVE-2021-31956Microsoft Windows NTFS (ntfs.sys) Heap Buffer Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2024
32021CVE-2021-40466Microsoft Windows Common Log File System Driver (clfs.sys) Heap Buffer Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2024
42023CVE-2023-36845Juniper Firewall/VPN (JunOS) PHP External Variable Modification - Remote Code Execution (RCE)Juniperpre-auth RCEweaponizedTrue2024
52024CVE-2024-114777-Zip Zstandard Decompression Integer Underflow - Unexploitable7-ZipunexploitablepocFalse2024
62024CVE-2024-21338Microsoft Windows AppLocker (appid.sys) Untrusted Pointer Dereference - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2024
72024CVE-2024-30078Microsoft Windows Wi-Fi Driver (nwifi.sys) OOB Write - Denial of Service (DoS)MicrosoftDoSpocFalse2024
82024CVE-2024-30085Microsoft Windows Cloud Files Mini Filter (cldflt.sys) Heap Buffer Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2024
92024CVE-2024-30088Microsoft Windows Kernel TOCTOU Race Condition - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2024
102024CVE-2024-35250Microsoft Windows Kernel Streaming (ks.sys and ksthink.sys) Untrusted Pointer Dereference - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2025
112024CVE-2024-38054Microsoft Windows Kernel Streaming WOW Thunk Service (ksthunk.sys) Heap Based Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2024
122024CVE-2024-38077Microsoft Windows Remote Desktop Licensing Service (TermServLicensing) Heap Overflow (madlicense) - Remote Code Execution (RCE)Microsoftpre-auth RCEweaponizedFalse2024
132024CVE-2024-38080Microsoft Windows Hyper-V Integer Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2024
142024CVE-2024-38193Microsoft Windows Ancillary Function Driver for WinSock (afd.sys) Use After Free - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2024
152024CVE-2024-43572Microsoft Windows Management Console - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2024
162024CVE-2024-43639Microsoft Windows KDC Proxy (kpssvc.dll) Numeric Truncation Error - UnexploitableMicrosoftunexploitablepocFalse2024
172024CVE-2024-46740Google Android (Linux Binder) Use After Free - Local Privilege Escalation (LPE)GoogleLPEweaponizedFalse2025
182024CVE-2024-47575Fortinet Fortimanager Missing Authentication - Remote Code Execution (RCE)Fortinetpre-auth RCEweaponizedTrue2024
192024CVE-2024-7965Google Chrome Android TurboFan Instruction Selection Bug - Remote Code Execution (RCE)GoogleRCEweaponizedTrue2024
202024CVE-2024-43511Microsoft Windows Kernel TOCTOU Race Condition - UnexploitableMicrosoftunexploitablepocFalse2024
212024CVE-2024-38178Microsoft Windows Scripting Engine (JScript9.dll) Internet Explorer/Edge Chakra Engine Type Confusion - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2025
222024CVE-2024-49090Microsoft Windows Common Log File System Driver (clfs.sys) Untrusted Pointer Dereference - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2025
232025CVE-2025-21298Microsoft Windows OLE Double Free - UnexploitableMicrosoftunexploitablepocFalse2025
242025CVE-2025-9491Microsoft Windows LNK File UI Misrepresentation (ZDI-CAN-25373) - Remote Code Execution (RCE)MicrosoftRCEweaponizedFalse2025
252024CVE-2024-38189Microsoft Project Improper Input Validation - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2025
262024CVE-2024-43454Microsoft Windows Remote Desktop Licensing Service (TermServLicensing) Relative Path Traversal - Arbitrary File DeletionMicrosoftArbitrary File DeletionweaponizedFalse2025
272025CVE-2025-21293Active Directory Domain Services Improper Access Control - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2025
282020CVE-2020-9054Zyxel NAS and Firewall Devices Command Injection - Remote Code Execution (RCE)ZyXelpre-auth RCEweaponizedTrue2025
292025CVE-2025-24054Microsoft Windows File Explorer Spoofing Vulnerability - NTLM Hash DisclosureMicrosoftNTLM Hash DisclosureweaponizedTrue2025
302021CVE-2021-21551Dell DBUtil Driver (dbutil_2_3.sys) Insufficient Access Control - Local Privilege Escalation (LPE)DellLPEweaponizedTrue2025
312023CVE-2023-36205Zemana AntiMalware/AntiLogger Driver (zamguard64.sys, zam64.sys) Incorrect Access Control - Local Privilege Escalation (LPE), Arbitrary Process Termination (PPL)ZemanaLPE, Arbitrary Process Termination (PPL)weaponizedFalse2025
322025CVE-2025-24985Microsoft Windows Fast FAT File System Driver Heap Buffer Overflow - Denial of Service (DoS)MicrosoftDoSpocTrue2025
3320250DAY-2025-0001Microsoft Management Console (MMC) - NTLM Hash DisclosureMicrosoftNTLM Hash DisclosureweaponizedFalse2025
342025CVE-2025-26633Microsoft Management Console (MMC) Security Feature Bypass - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2025
352025CVE-2025-21333Microsoft Windows Hyper-V NT Kernel Integration VSP Driver (vkrnlintvsp.sys) Heap-based Buffer Overflow - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2025
3620250DAY-2025-0002Flexense Computing System SyncBreeze - Remote Code Execution (RCE)Flexense Computing Systempre-auth RCEweaponizedFalse2025
372025CVE-2025-21375Microsoft Windows Kernel Streaming WOW Thunk Service Driver (ksthunk.sys) Buffer Overflow - Denial of Service (DoS)MicrosoftDoSpocFalse2025
382025CVE-2025-29824Microsoft Windows Common Log File System driver (CLFS.sys) Use After Free - Denial of Service (DoS)MicrosoftDoSpocTrue2025
392025CVE-2025-32756Fortinet multiple products API Stack-based Buffer Overflow - Remote Code Execution (RCE)Fortinetpre-auth RCEweaponizedTrue2025
402025CVE-2025-47955Microsoft Windows Remote Access Connection Manager (RasMan) Improper Privilege Management - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2025
412025CVE-2025-1758Progress Kemp LoadMaster Stack-based Buffer Overflow - UnexploitableProgressunexploitablepocFalse2025
422024CVE-2024-51324Baidu Antivirus BdApiUtil64.sys Driver Incorrect Access Control - Arbitrary Process Termination (PPL)BaiduArbitrary Process Termination (PPL)weaponizedFalse2025
432025CVE-2025-25257Fortinet FortiWeb SQL Injection and Command Injection - Remote Code Execution (RCE)Fortinetpre-auth RCEweaponizedTrue2025
4420250DAY-2025-0003Asus MyAsus Arbitrary File Write - Local Privilege Escalation (LPE)AsusLPEweaponizedFalse2025
452025CVE-2025-8088RARLAB WinRAR Directory Traversal - Remote Code Execution (RCE)RARLABRCEweaponizedTrue2025
462025ZDI-CAN-26372Microsoft Windows Theme File Parsing Improper Input Validation - NTLM Hash DisclosureMicrosoftNTLM Hash DisclosureweaponizedFalse2025
472025CVE-2025-50154Microsoft Windows File Explorer Spoofing Vulnerability - NTLM Hash DisclosureMicrosoftNTLM Hash DisclosureweaponizedFalse2025
482025CVE-2025-33053Internet Shortcut Files - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2025
4920250DAY-2025-0004SQLite3 Command Injection Vulnerability - Remote Code Execution (RCE)SQLiteRCEweaponizedFalse2025
502025CVE-2025-53136Microsoft Windows NT OS Kernel Information Disclosure Vulnerability -KASLR BypassMicrosoftKASLR Bypass (Info Disclosure)weaponizedFalse2025
512025CVE-2025-30397Microsoft Windows Scripting Engine (JScript9.dll) Internet Explorer/Edge Chakra Engine Type Confusion - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2025
522025CVE-2025-59287Microsoft Windows Server Update Service (WSUS) Unsafe Deserialization - Remote Code Execution (RCE)Microsoftpre-auth RCEweaponizedTrue2025
532025CVE-2025-24893XWiki Unauthenticated Groovy Injection via SolrSearch Macro - Remote Code Execution (RCE)XWikipre-auth RCEweaponizedTrue2025
542025CVE-2025-64446Fortinet Fortiweb Path Traversal and Command Injection - Remote Code Execution (RCE)Fortinetpre-auth RCEweaponizedTrue2025
552025CVE-2025-62221Microsoft Windows Cloud Files Mini Filter Driver (cldflt.sys) Use After Free - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedTrue2025
562025CVE-2025-26666Microsoft Windows Media Heap-based Buffer Overflow - Denial of Service (DoS)MicrosoftDoSpocFalse2026
572025CVE-2025-49113Roundcube Webmail PHP Object Deserialization - Remote Code Execution (RCE)Roundcubepost-auth RCEweaponizedTrue2026
582025CVE-2025-52691SmarterTools SmarterMail Arbitrary File Upload - Remote Code Execution (RCE)SmarterToolspre-auth RCEweaponizedTrue2026
592026CVE-2026-23760SmarterTools SmarterMail Authentication Bypass - Remote Code Execution (RCE)SmarterToolspre-auth RCEweaponizedTrue2026
602025CVE-2025-61882Oracle E-Business Suite (EBS) Authentication Bypass and XSLT Code Execution - Remote Code Execution (RCE)Oraclepre-auth RCEweaponizedTrue2026
612026CVE-2026-24423SmarterTools SmarterMail Authentication Bypass - Remote Code Execution (RCE)SmarterToolspre-auth RCEweaponizedTrue2026
622026CVE-2026-20941Host Process for Windows Tasks (taskhostw.exe) Improper Link Resolution - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2026
6320260DAY-2026-0001Microsoft Visual Studio - NTLM Hash DisclosureMicrosoftNTLM Hash DisclosureweaponizedFalse2026
6420260DAY-2026-0002Microsoft Windows Media Buffer Over-read Vulnerability - Denial of Service (DoS)MicrosoftDoSpocFalse2026
6520260DAY-2026-0003Microsoft Windows Driver Verifier Extension (VerifierExt.sys) Arbitrary Kernel Write via Unvalidated Pointer Dereference - Local Privilege Escalation (LPE)MicrosoftLPEweaponizedFalse2026
662026CVE-2026-21385Qualcomm Adreno GPU Kernel Driver (kgsl) Signed Integer Sign Extension - Elevation of Privilege Vulnerability (LPE)QualcommLPEweaponizedTrue2026
672026CVE-2026-21509Microsoft Office Word Security Feature Bypass Vulnerability - Remote Code Execution (RCE)MicrosoftRCEweaponizedTrue2026
682025CVE-2025-38352Android/Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition - Generic Local Privilege Escalation (LPE)AndroidLPEweaponizedTrue2026