Security
Known-exploited vulnerabilities, external exposure and endpoint protection — on your live estate, with SLA clocks mapped to CE+.
Demo with representative sample data. Live correlation runs against NIST NVD and CISA KEV every few hours.
4
Actively exploited (KEV)
Risk register KEV first
| CVE | Application | Severity | KEV | Installs | SLA |
| CVE-2026-31801 | 7-Zip 22.01 | Critical | ✓ | 318 | 3d overdue |
| CVE-2026-29915 | Google Chrome 126 | High | ✓ | 1,204 | 2d left |
| CVE-2026-30442 | OpenSSL 3.0.11 | Critical | — | 142 | 6d left |
| CVE-2026-28770 | Adobe Reader 2023 | Medium | — | 210 | in window |
External exposure
Outside-in grade of the client's internet-facing footprint.
| Overall grade | B+ |
| TLS & certificates | A |
| Exposed services | C |
| Email security (SPF/DKIM/DMARC) | A- |
Endpoint protection health
Defender / anti-malware state from the device agents.
| Protected devices | 548 / 560 |
| Real-time protection off | 4 |
| Signatures > 7 days old | 6 |
| Tamper protection off | 2 |