Data reports computed from the verified CVE corpus behind our daily briefings. Every number is reproducible from the public JSON dataset; methods and sample sizes are stated inline.
What each vulnerability scoring system measures – severity, exploitation likelihood, and confirmed real-world exploitation – and how to prioritize with all three.
Live counts over the entire CISA KEV catalog: total entries, ransomware share, recent additions, and median remediation deadlines.
How many vulnerabilities CISA flags as exploited each month: velocity, ransomware share, month-over-month change, and top vendors.
Median days from NVD publication to CISA KEV listing, with the full distribution and stated method.
We measure and publish the share of our AI-assisted classifications that the verification layer catches as wrong, with receipts.
Confirmed-exploited (CISA KEV) vulnerabilities relevant to the technology sector, and the ransomware share.
Confirmed-exploited (CISA KEV) vulnerabilities relevant to government, and the ransomware share.
Confirmed-exploited (CISA KEV) vulnerabilities relevant to financial services, and the ransomware share.
Confirmed-exploited (CISA KEV) vulnerabilities relevant to healthcare, and the ransomware share.
Every vendor ranked by the number of confirmed-exploited (CISA KEV) vulnerabilities, with each vendor ransomware share.
The full verified CVE corpus as a downloadable, openly-licensed dataset, free to cite and reuse.
109 NVD- and CISA-checked CVEs from Apr–Jun 2026: 39% confirmed exploited, median CVSS 8.8, and where exploitation speed and CVSS rank disagree.
135 NVD- and CISA-checked vulnerabilities from our first three months of daily briefings: exploitation speed (median disclosure-to-KEV lag of 4 days), AI severity inflation caught by the evidence layer 65 times, and where CVSS and EPSS disagree.
Want the underlying data? Every tracked CVE is in the free JSON data feed (CC BY 4.0). How the corpus is verified is on the methodology page.
The corpus behind this report grows by one briefing every day at 04:00 UTC. Free for security professionals.