Vulnerability intelligence, as evidence

See what changed.
Know why it matters.

A correction-aware view of CVE, NVD, CISA KEV, and FIRST EPSS—preserving who said what, when CASCA observed it, where sources conflict, and what remains unknown.

367,153Canonical CVEs
1,647KEV catalog members
133,836Visible conflicts
366,331Need evidence

Analyst queue

Changed since the active baseline

As known Jul 19, 2026, 5:00 AM UTCgen-56ccdaf9
Decision-sized by defaultUp to 50 forward-evidence changes. Backfill and model transitions are separate cohorts.
01
CVE-2026-16203Needs evidence

SourceCodester Class and Exam Timetabling System forCYS.php cross site scripting

A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /forCYS.php. Such manipulation of the argument course leads to cross site scripting. The attack may be performed from remote. The exploit is publicly available and might be used.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • New canonical CVE record
  • Container authorship retained
Priority range
0.0100.0
EPSS
Unknown
CVSS high
5.1
Evidence coverage
0%
02
CVE-2026-16202Needs evidence

SourceCodester Class and Exam Timetabling System CYS.php cross site scripting

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /CYS.php. This manipulation of the argument course causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • New canonical CVE record
  • Container authorship retained
Priority range
0.0100.0
EPSS
Unknown
CVSS high
5.1
Evidence coverage
0%
03
CVE-2026-16201Needs evidence

zevorn rt-claw http_request net.c claw_net_post information disclosure

A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation results in information disclosure. The attack can be executed remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • New canonical CVE record
  • Container authorship retained
Priority range
0.0100.0
EPSS
Unknown
CVSS high
6.9
Evidence coverage
0%
04
CVE-2026-16200Needs evidence

zevorn rt-claw RPC swarm.c claw_tool_invoke authorization

A vulnerability has been found in zevorn rt-claw up to 0.2.0. This impacts the function claw_tool_invoke of the file claw/services/swarm/swarm.c of the component RPC Handler. The manipulation leads to incorrect authorization. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • New canonical CVE record
  • Container authorship retained
Priority range
0.0100.0
EPSS
Unknown
CVSS high
7.5
Evidence coverage
0%
05

Mirror-registry: remote code execution using pickle deserialization

A flaw was found in Red Hat Quay's handling of resumable container image layer uploads. The upload process stores intermediate data in the database using a format that, if tampered with, could allow an attacker to execute arbitrary code on the Quay server.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • Canonical CVE record revised with supersession lineage
  • Container authorship retained
Priority range
19.078.3
EPSS
0.41%
CVSS high
8.8
Evidence coverage
32%
06
CVE-2026-9165Needs evidence

Stackrox: stackrox: unbounded graphql query depth allows authenticated denial of service

A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of GraphQL queries served on the authenticated GraphQL API. An authenticated user with a valid API token can send deeply nested queries that cause excessive resource consumption in Central, resulting in a denial of service for the management plane.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • Canonical CVE record revised with supersession lineage
  • Container authorship retained
Priority range
20.475.4
EPSS
0.32%
CVSS high
7.7
Evidence coverage
45%
07
CVE-2024-5042Needs evidence

Submariner-operator: rbac permissions can allow for the spread of node compromises

A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.

  • Exact frozen CVE delta artifact admitted as forward evidence
  • Canonical CVE record revised with supersession lineage
  • Container authorship retained
Priority range
17.972.9
EPSS
0.50%
CVSS high
6.6
Evidence coverage
45%
08
CVE-2025-12103Needs evidence

Openshift-ai: trusty ai grants all authenticated users to list pods in any namespace

A flaw was found in Red Hat Openshift AI Service. The TrustyAI component is granting all service accounts and users on a cluster permissions to get, list, watch any pod in any namespace on the cluster. TrustyAI is creating a role `trustyai-service-operator-lmeval-user-role` and a CRB `trustyai-service-operator-default-lmeval-user-rolebinding` which is being applied to `system:authenticated` making it so that every single user or service account can get a list of pods running in any namespace on the cluster Additionally users can access all `persistentvolumeclaims` and `lmevaljobs`

  • Exact frozen CVE delta artifact admitted as forward evidence
  • Canonical CVE record revised with supersession lineage
  • Container authorship retained
Priority range
13.568.5
EPSS
0.23%
CVSS high
5.0
Evidence coverage
45%

One normalized truth

Move from signal to citation without losing context.