I want to get continuous structured data on emerging global cyber threats, vulnerabilities, and zero-day exploits from cybersecurity blogs, forums, and vendor vulnerability databases.
Stay ahead of emerging cyber threats and vulnerabilities — automated insights without manual tracking or tedious research
A saved example of what you can collect and monitor with Jsonify. Create your own version in Jsonify.
Build this in JsonifyYour original goal is prefilled.
Goal
I want to get continuous structured data on emerging global cyber threats, vulnerabilities, and zero-day exploits from cybersecurity blogs, forums, and vendor vulnerability databases.
Source coverage
- cve.mitre.org
- nvd.nist.gov
- securityweek.com
- darkreading.com
- infosecurity-magazine.com
- threatpost.com
- cybersecurityinsiders.com
- bleepingcomputer.com
- virustotal.com
- exploit-db.com
- krebsonsecurity.com
- cyber.gov.au
Sample data
Illustrative sample data from the original configuration, not live or verified results.
| id | Source | CVE | Product | Version | Severity | CVSSv3 | Exploitability | Published | PatchAvailable | PatchURL | Notes |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 1 | nvd.nist.gov | CVE-2026-0451 | OpenSSL | 3.0.12 | Critical | 9.8 | Public PoC reported | 2026-02-02 | Yes | https://www.openssl.org/news/vulnerabilities.html#2026-0451 | NULL pointer deref in TLS 1.3 session resumption; CVSS ties to remote code execution in certain configs |
| 2 | cve.mitre.org | CVE-2026-1020 | Apache HTTP Server | 2.4.58 | High | 8.6 | Exploit code circulating | 2026-02-03 | Yes | https://httpd.apache.org/security/vulnerabilities_26.html#CVE-2026-1020 | mod_proxy mis-parsing headers allows request smuggling leading to RCE in proxied apps |
| 3 | securityweek.com | CVE-2026-1107 | Microsoft Exchange | 2019 CU12 | Critical | 9.1 | Active exploitation observed | 2026-02-01 | Yes | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-1107 | Auth bypass in OWA leading to privilege escalation; attackers leveraging web shells |
| 4 | darkreading.com | CVE-2026-2134 | VMware vCenter | 8.0u3 | Critical | 9.0 | Exploit PoC public | 2026-02-02 | Yes | https://kb.vmware.com/s/article/2134 | vCenter server SSRF chaining to RCE; appliances should be isolated until patch applied |
| 5 | bleepingcomputer.com | CVE-2026-0078 | Google Chrome | 117.0.5938.132 | High | 7.8 | In-the-wild exploit reported | 2026-02-03 | Yes | https://chromereleases.googleblog.com/2026/02/stable-channel-update.html | Type confusion in V8 leading to arbitrary code execution via crafted web content |
| 6 | threatpost.com | CVE-2026-3301 | Fortinet FortiOS | 7.2.5 | Critical | 9.8 | Weaponized exploit kits | 2026-02-02 | Yes | https://fortinet.com/firmware/2026/02/adv_3301.html | Authentication bypass in SSL VPN; multiple campaigns exploiting default configs |
| 7 | infosecurity-magazine.com | CVE-2026-2420 | Cisco IOS XE | 17.9.1 | High | 8.2 | PoC published | 2026-02-01 | Yes | https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-2420 | Buffer overflow in SNMP processing leading to remote code execution on routers |
| 8 | exploit-db.com | CVE-2026-4005 | WordPress Plugin: WP Fast Cache | 4.3.1 | Medium | 6.1 | Exploit script on DB | 2026-02-02 | Yes | https://wordpress.org/plugins/wp-fast-cache/changelog/ | Unauthenticated file upload allowing webshells if uploads not sanitized |
| 9 | virustotal.com | CVE-2026-5012 | Trend Micro Apex One | 2020.2.2502 | High | 8.0 | Proof-of-concept | 2026-02-03 | Yes | https://success.trendmicro.com/solution/5012 | Privilege escalation via agent upgrade mechanism; recommended emergency update |
| 10 | krebsonsecurity.com | CVE-2026-6009 | Sophos Firewall | 19.0.7 | Critical | 9.4 | Active exploitation reported | 2026-02-01 | Yes | https://sophos.com/support/6009 | Admin auth bypass in REST API; attackers deploying ransomware post-compromise |
| 11 | cyber.gov.au | CVE-2026-7100 | Pulse Secure | 9.1R2 | Critical | 9.8 | Exploit code public | 2026-02-03 | Yes | https://www.pulsesecure.net/downloads/patches/7100 | Unauthenticated RCE in VPN portal; nation-state actors scanning widely |
| 12 | securityweek.com | CVE-2026-8123 | Docker Engine | 24.0.1 | High | 8.5 | Local exploit available | 2026-02-02 | Yes | https://docs.docker.com/security/alerts/8123/ | Container escape via mis-handled user namespaces; apply update on hosts running untrusted containers |
| 13 | darkreading.com | CVE-2026-9011 | Adobe Reader | 2025.012.20045 | High | 7.5 | In-the-wild | 2026-02-03 | Yes | https://helpx.adobe.com/security/products/reader/apsb26-11.html | Heap overflow in PDF parsing used in targeted phishing |
| 14 | bleepingcomputer.com | CVE-2026-9802 | JetBrains TeamCity | 2022.10.3 | Medium | 6.5 | PoC posted | 2026-02-01 | Yes | https://www.jetbrains.com/teamcity/security/cves/CVE-2026-9802/ | SSRF leading to credential exposure when CI agents accept untrusted callbacks |
| 15 | threatpost.com | CVE-2026-0377 | Juniper Junos | 21.4R3-S2 | High | 8.1 | Exploit PoC | 2026-02-02 | Yes | https://kb.juniper.net/CVE-2026-0377 | Management plane buffer overflow exploitable via crafted NETCONF payloads |
| 16 | infosecurity-magazine.com | CVE-2026-1575 | Redis | 7.2.1 | Medium | 5.9 | PoC disclosed | 2026-02-03 | Yes | https://redis.io/releases/7.2.1/patches | Lua VM sandbox bypass in certain eval contexts; risk for multi-tenant setups |
| 17 | exploit-db.com | CVE-2026-2446 | phpMyAdmin | 5.2.1 | High | 8.3 | Exploit code available | 2026-02-01 | Yes | https://www.phpmyadmin.net/security/2446/ | CSRF + privilege escalation chain allowing DB dump retrieval |
| 18 | virustotal.com | CVE-2026-3010 | Microsoft Windows Print Spooler | Service: Spooler | Critical | 9.0 | Active exploits | 2026-02-02 | Yes | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3010 | New PrintNightmare variant enabling system-level code execution |
| 19 | krebsonsecurity.com | CVE-2026-4422 | Magento (Adobe Commerce) | 2.4.9 | High | 8.0 | Exploit kits observed | 2026-02-03 | Yes | https://experienceleague.adobe.com/docs/security/4422.html | Checkout module SQL injection abused for mass skimming attacks |
| 20 | cybersecurityinsiders.com | CVE-2026-5533 | ElasticSearch | 8.8.0 | High | 8.4 | PoC circulated | 2026-02-01 | Yes | https://www.elastic.co/community/security/5533 | Insecure deserialization in ingest pipelines leading to RCE if dynamic scripting enabled |
| 21 | securityweek.com | CVE-2026-6644 | SAP NetWeaver | 7.5 | Critical | 9.1 | Mass exploitation reported | 2026-02-02 | Yes | https://support.sap.com/security/CVE-2026-6644 | ISAPI module vulnerability enabling remote code execution on exposed SAP systems |
| 22 | darkreading.com | CVE-2026-7707 | Zimbra Collaboration | 9.0.2 | Medium | 6.8 | Exploit PoC | 2026-02-03 | Yes | https://wiki.zimbra.com/wiki/SecurityAdvisory_7707 | Stored XSS plus CSRF leading to admin session hijack in default installs |
| 23 | bleepingcomputer.com | CVE-2026-8808 | Samba | 4.18.1 | High | 8.7 | Public exploit available | 2026-02-01 | Yes | https://www.samba.org/samba/security/CVE-2026-8808.html | SMBv3 session key handling flaw allows lateral movement and AD credential leakage |
| 24 | threatpost.com | CVE-2026-9910 | Citrix ADC | 13.1-40.35 | Critical | 9.6 | Active in-the-wild | 2026-02-03 | Yes | https://support.citrix.com/article/CTX-9910 | Improper input validation in management interface yielding RCE; patch urgently required |
| 25 | infosecurity-magazine.com | CVE-2026-1029 | Grafana | 9.5.6 | Medium | 5.3 | PoC exists | 2026-02-02 | Yes | https://grafana.com/docs/grafana/latest/release-notes/9.5.6/ | Dashboard JSON parsing bug can lead to token disclosure in some setups |
| 26 | exploit-db.com | CVE-2026-1174 | LibreOffice | 7.6.4 | Medium | 6.0 | Exploit code published | 2026-02-01 | Yes | https://www.libreoffice.org/security/CVE-2026-1174 | Formula parser remote code execution via crafted ODT files |
| 27 | virustotal.com | CVE-2026-1288 | ZeroTier One | 1.12.2 | High | 8.1 | PoC available | 2026-02-03 | Yes | https://www.zerotier.com/security/1288 | Peer authentication bypass in certain NAT scenarios allowing tunnel hijack |
| 28 | krebsonsecurity.com | CVE-2026-1399 | HPE iLO | 5.70 | Critical | 9.0 | Exploit toolkit published | 2026-02-02 | Yes | https://support.hpe.com/security/CVE-2026-1399 | Remote firmware update vulnerability enabling persistent backdoor installation |
| 29 | cyber.gov.au | CVE-2026-1501 | OpenSSH | 9.6p1 | Medium | 6.6 | PoC reported | 2026-02-03 | Yes | https://www.openssh.com/security/1501 | kex negotiation downgrade leads to information disclosure in some client-server combos |
Insights and analytics
- Total Active Vulnerabilities (metric)
- New Zero-Day Exploits This Month (metric)
- Emerging Cyber Threat Trends Over Time (line)
- Top Sources of Cyber Threat Information (bar)
- Vulnerability Type Distribution (donut)
- Most Common Vulnerabilities (CVEs) (horizontal_bar)
- Recent Zero-Day Exploits (table)
- Latest Cybersecurity Blog Insights (table)
- Vulnerabilities Disclosed Over Time (area)
- Key Cyber Threat Observations (insights)
- Total CVEs Reported This Year (metric)
- Vulnerability Severity Trends (line)
Change notifications
- New Zero-Day Detected — new zero-day exploit found cve.mitre.org
- New Blog Insight Available — latest insights on threats darkreading.com
- New Vulnerability Reported — new CVE published nvd.nist.gov
- Patch Available — patch now available securityweek.com
- Exploit Database Updated — new exploit details added exploit-db.com
Integrations and delivery
- api
- snowflake
- slack
Make this your own
Start with this goal in Jsonify, then choose the sources and data you need.
Build this in Jsonify