PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-CommercevulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-Commerce
CVE Watch363,686 in full archive

Vulnerabilities exploitable today

363,686in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610

Distribution · last window

  • Critical
    2,949
  • High
    12,440
  • Medium
    7,643
  • Low
    714
Filters

Window

Severity

Flags

Vulnerabilities42,961–43,000 · 363,686
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2008-3109
88.2%
26
CVE-2015-4184
88.2%
26
CVE-2014-10035
88.2%
26
CVE-2015-4143
88.2%
26
CVE-2013-0775
88.2%
26
CVE-2014-8677
88.2%
26
CVE-2009-3264
88.2%
26
CVE-2015-4521
88.2%
26
CVE-2018-0409
88.2%
26
CVE-2019-12042
88.2%
26
CVE-2001-1518
88.2%
26
CVE-2002-0918
88.2%
26
CVE-2004-2161
88.2%
26
CVE-2018-8434
88.2%
26
CVE-2021-2478
88.2%
26
CVE-2017-16088
88.2%
26
CVE-2012-5945
88.2%
26
CVE-2012-2968
88.2%
26
CVE-2012-5574
88.2%
26
CVE-2015-7174
88.2%
26
CVE-2015-3634
88.2%
26
CVE-2014-0879
88.2%
26
CVE-2018-8425
88.2%
26
CVE-2006-5863
88.2%
26
CVE-2015-7204
88.2%
26
CVE-2025-606766.5 MED
88.2%
26An unauthenticated command injection vulnerability exists in the D-Link DIR-878A1 router firmware FW101B04.bin. The vulnerability occurs in the 'SetNetworkSettings' functionality of prog.cgi, where the 'IPAddress' and 'SubnetMask' parameters are directly concatenated into shell commands executed via system(). An attacker can exploit this vulnerability remotely without authentication by sending a specially crafted HTTP request, leading to arbitrary command execution on the device.47d
CVE-2007-1600
88.2%
26
CVE-2012-4773
88.2%
26
CVE-2015-5334
88.2%
26
CVE-2018-5454
88.2%
26
CVE-2005-3571
88.2%
26
CVE-2026-464429.9 CRI
88.2%
26Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization, allowing any authenticated user or API key to submit arbitrary JavaScript to the Custom JS Function node. When E2B_APIKEY is not configured — the common deployment case — Flowise executes this code inside a NodeVM sandbox. This sandbox can be escaped, allowing an attacker to reach the host process object and execute system commands via child_process. The result is authenticated remote code execution on the Flowise server host. This issue has been patched in version 3.1.2.29d
CVE-2016-10745
88.2%
26
CVE-2017-15054
88.2%
26
CVE-1999-1514
88.2%
26
CVE-2019-7396
88.2%
26
CVE-2007-2843
88.2%
26
CVE-2015-4522
88.2%
26
CVE-2007-0872
88.2%
26
CVE-2025-9478
88.2%
26