VULNSOCIAL

ollyo / sp_page_builderFix what matters first

Ranked by live signal for this scope. Use the feed below to prioritize fixes.

1CVEs in scope

Vendors by Exposure

Select to apply CPE scope

Products by Exposure: ollyo

Narrow scope by product

Attention over time (30D)

Mention volume for the top 1 CVEs in this view. Toggle series to compare momentum.

1/1 CVEs visible
000111CVE-2026-48908 (3 mentions / 30D)08-2208-2508-2808-3109-0309-0609-0909-1209-1509-1809-21

Threat signal metrics

41,185

CVEs in scope

127,044

Signal volume

234

24h volume

21,027

Active exploitation

34,375

Patches / workarounds

Aggregate signal volume (30D)

Total mentions across in-scope CVEs. Spikes usually track advisories, PoC chatter, or exploitation reporting, not random drift.

01693385076762026-08-22: 324 mentions, 183 CVEs2026-08-23: 254 mentions, 136 CVEs2026-08-24: 434 mentions, 255 CVEs2026-08-25: 548 mentions, 339 CVEs2026-08-26: 499 mentions, 324 CVEs2026-08-27: 503 mentions, 431 CVEs2026-08-28: 421 mentions, 283 CVEs2026-08-29: 266 mentions, 193 CVEs2026-08-30: 245 mentions, 188 CVEs2026-08-31: 309 mentions, 217 CVEs2026-09-01: 355 mentions, 242 CVEs2026-09-02: 436 mentions, 239 CVEs2026-09-03: 396 mentions, 240 CVEs2026-09-04: 485 mentions, 275 CVEs2026-09-05: 290 mentions, 178 CVEs2026-09-06: 242 mentions, 167 CVEs2026-09-07: 313 mentions, 184 CVEs2026-09-08: 477 mentions, 281 CVEs2026-09-09: 676 mentions, 389 CVEs2026-09-10: 512 mentions, 304 CVEs2026-09-11: 517 mentions, 332 CVEs2026-09-12: 410 mentions, 245 CVEs2026-09-13: 285 mentions, 223 CVEs2026-09-14: 470 mentions, 313 CVEs2026-09-15: 495 mentions, 315 CVEs2026-09-16: 562 mentions, 351 CVEs2026-09-17: 551 mentions, 281 CVEs2026-09-18: 535 mentions, 326 CVEs2026-09-19: 354 mentions, 229 CVEs2026-09-20: 274 mentions, 195 CVEs2026-09-21: 147 mentions, 120 CVEs08-2208-2508-2808-3109-0309-0609-0909-1209-1509-1809-21

Signal classification

Where discussion is coming from. Useful context when a CVE suddenly dominates a category.

  • Disclosure58,442(47.3%)
  • Patch21,796(17.7%)
  • Active Exploitation19,318(15.6%)
  • General19,315(15.6%)
  • PoC4,598(3.7%)

Threat indicators

PoC references, exploit code, active exploitation, patches, and technical detail, aggregated for the current scope.

  • Technical Details92,260(56.9%)
  • Patch Available34,375(21.2%)
  • Active Exploitation21,027(13.0%)
  • PoC Mentioned10,136(6.3%)
  • Exploit Code4,329(2.7%)

> pipeline.stream (live)

How it works

One post becomes signal: watch it move through ingest → classify → enrich → route.

Pipeline stage 1 of 4: Ingest signals
Ingestcapture
Classifytag + score
Enrichcontext
Emitroute

Simo @SimoKohonen

Example post · pipeline demo

Webshells be flowing into Cisco SD-WAN honeypots now.. Exploitation of CVE-2026-20127 is looking pretty heavy, new actors popping up by the hour

ingest: raw post · CVE-2026-20127

15.7K views65 likes19 RTs2 replies20 bookmarks

  1. [ 01 ]

    Ingest signals

    We collect and classify mentions across channels that move before tickets do: advisories, researcher posts, exploit references, and technical discussion.

  2. [ 02 ]

    Score attention

    CVEs surface by signal volume and trajectory, not a static severity label, so spikes in discussion map to spikes in urgency.

  3. [ 03 ]

    Surface threat context

    Exploit momentum, PoC noise, active exploitation flags, and patch availability appear alongside each CVE so triage is factual, not guesswork.

  4. [ 04 ]

    Scope to your stack

    Filter by vendor and product (Microsoft, Apple, Cisco, and more) so the feed reflects exposure you actually run, not the entire internet’s backlog.

> loop: raw social post → classify → enrich with threat context → emit to your scoped feed

About VulnSocial

VulnSocial is not a generic scanner. We aggregate and classify vulnerability signals from the channels that move first: researchers, advisories, exploit references, and community discussion. CVEs are ordered by attention and momentum, not CVSS alone. Active exploitation indicators, PoC noise, and patch availability sit next to each CVE so triage is grounded in what is happening now.

Scope the dashboard with vendor and product filters to match your stack. Security teams use VulnSocial to cut through alert fatigue: SOC analysts for ranked triage, leads for credible briefings, DevSecOps for stack-specific trending and remediation timing. Share snapshots with your team from the feed when you need to align on what matters today.