PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-CommercevulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-Commerce
CVE Watch363,458 in full archive

Vulnerabilities exploitable today

363,458in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610

Distribution · last window

  • Critical
    2,929
  • High
    12,468
  • Medium
    7,655
  • Low
    723
Filters

Window

Severity

Flags

Vulnerabilities42,041–42,080 · 363,458
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2012-0188
88.5%
27
CVE-2004-1207
88.5%
27
CVE-2015-7907
88.5%
27
CVE-2019-1971
88.5%
27
CVE-2026-107958.1 HIG
88.5%
27The UpdraftPlus: WP Backup & Migration Plugin plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1.26.4 via the UpdraftPlus_Remote_Communications_V2::wp_loaded function. This is due to insufficient validation of the remote communications message format, where signature verification can be bypassed and unchecked decryption return values collapse to a predictable all-zero encryption key. This makes it possible for unauthenticated attackers to forge arbitrary RPC commands and run them as the connected administrator, such as uploading and activating a malicious plugin, which ultimately leads to remote code execution.28d
CVE-2023-41074
88.5%
27
CVE-2018-19278
88.5%
27
CVE-2018-0684
88.5%
27
CVE-2013-4248
88.5%
27
CVE-2019-11378
88.5%
27
CVE-2013-6820
88.5%
27
CVE-2006-5076
88.5%
27
CVE-2024-21312
88.5%
27
CVE-2020-9567
88.4%
27
CVE-2014-1243
88.5%
27
CVE-2015-2528
88.5%
27
CVE-2019-9195
88.5%
27
CVE-2020-1487
88.4%
27
CVE-2017-4933
88.4%
27
CVE-2020-12443
88.4%
27
CVE-2019-9493
88.4%
27
CVE-2018-10617
88.4%
27
CVE-2020-8859
88.4%
27
CVE-2010-0848
88.4%
27
CVE-2016-4630
88.4%
27
CVE-2017-5434
88.4%
27
CVE-2018-17444
88.4%
27
CVE-2005-2379
88.4%
27
CVE-2014-8123
88.4%
27
CVE-2004-2727
88.4%
27
CVE-2004-1688
88.4%
27
CVE-2013-1667
88.4%
27
CVE-2020-18885
88.4%
27
CVE-2017-7784
88.4%
27
CVE-2016-8343
88.4%
27
CVE-2019-11344
88.4%
27
CVE-2002-1829
88.4%
27
CVE-2023-4568
88.4%
27
CVE-2020-11111
88.4%
27
CVE-2002-0566
88.4%
27