PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-CommercevulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-Commerce
CVE Watch363,458 in full archive

Vulnerabilities exploitable today

363,458in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610

Distribution · last window

  • Critical
    2,928
  • High
    12,446
  • Medium
    7,633
  • Low
    723
Filters

Window

Severity

Flags

Vulnerabilities42,121–42,160 · 363,458
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-3578
88.4%
27
CVE-2020-5652
88.4%
27
CVE-2002-0566
88.4%
27
CVE-2016-9446
88.4%
27
CVE-2012-0699
88.4%
27
CVE-2018-14802
88.4%
27
CVE-2025-12055
88.4%
27
CVE-2008-0406
88.4%
27
CVE-2014-9639
88.4%
27
CVE-2017-8840
88.4%
27
CVE-2007-0347
88.4%
27
CVE-2006-5456
88.4%
27
CVE-2009-3716
88.4%
27
CVE-2022-45047
88.4%
27
CVE-2020-6948
88.4%
27
CVE-2018-17444
88.4%
27
CVE-2017-5434
88.4%
27
CVE-2004-2727
88.4%
27
CVE-2014-5014
88.4%
27
CVE-2018-10621
88.4%
27
CVE-2023-27640
88.4%
27
CVE-2018-20356
88.4%
27
CVE-2003-1203
88.4%
27
CVE-2016-7521
88.4%
27
CVE-2019-13560
88.4%
27
CVE-2018-1000180
88.4%
27
CVE-2017-15718
88.4%
27
CVE-2021-29393
88.4%
27
CVE-2017-5215
88.4%
27
CVE-2022-0547
88.4%
27
CVE-2005-2379
88.4%
27
CVE-2016-4630
88.4%
27
CVE-2020-1487
88.4%
27
CVE-2014-8123
88.4%
27
CVE-2010-0848
88.4%
27
CVE-2026-344159.8 CRI
88.4%
27Xerte Online Toolkits versions 3.15 and earlier contain an incomplete input validation vulnerability in the elFinder connector endpoint that fails to block PHP-executable extensions .php4 due to an incorrect regex pattern. Unauthenticated attackers can exploit this flaw combined with authentication bypass and path traversal vulnerabilities to upload malicious PHP code, rename it with a .php4 extension, and execute arbitrary operating system commands on the server.37d
CVE-2020-27736
88.4%
27
CVE-2017-9098
88.4%
27
CVE-2021-270537.8 HIG
88.4%
27Microsoft Excel Remote Code Execution Vulnerability1d
CVE-2011-2117
88.4%
27