PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-CommercevulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Servicesransomshinyhunters reclama a Cook Medical LLC · US · Healthcareransomthegentlemen reclama a Gravity Coffee · US · Retail & E-Commerce
CVE Watch363,686 in full archive

Vulnerabilities exploitable today

363,686in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610

Distribution · last window

  • Critical
    2,949
  • High
    12,440
  • Medium
    7,643
  • Low
    714
Filters

Window

Severity

Flags

Vulnerabilities43,001–43,040 · 363,686
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2012-5574
88.2%
26
CVE-2015-7174
88.2%
26
CVE-2026-464429.9 CRI
88.2%
26Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization, allowing any authenticated user or API key to submit arbitrary JavaScript to the Custom JS Function node. When E2B_APIKEY is not configured — the common deployment case — Flowise executes this code inside a NodeVM sandbox. This sandbox can be escaped, allowing an attacker to reach the host process object and execute system commands via child_process. The result is authenticated remote code execution on the Flowise server host. This issue has been patched in version 3.1.2.29d
CVE-2017-15054
88.2%
26
CVE-2016-10745
88.2%
26
CVE-2007-1600
88.2%
26
CVE-2025-606766.5 MED
88.2%
26An unauthenticated command injection vulnerability exists in the D-Link DIR-878A1 router firmware FW101B04.bin. The vulnerability occurs in the 'SetNetworkSettings' functionality of prog.cgi, where the 'IPAddress' and 'SubnetMask' parameters are directly concatenated into shell commands executed via system(). An attacker can exploit this vulnerability remotely without authentication by sending a specially crafted HTTP request, leading to arbitrary command execution on the device.47d
CVE-2002-0918
88.2%
26
CVE-2015-5334
88.2%
26
CVE-2012-4773
88.2%
26
CVE-2004-2161
88.2%
26
CVE-2020-13550
88.2%
26
CVE-2018-18912
88.2%
26
CVE-2019-7395
88.2%
26
CVE-2019-15139
88.2%
26
CVE-2023-4278
88.2%
26
CVE-2019-1804
88.2%
26
CVE-2008-0388
88.2%
26
CVE-2023-5685
88.2%
26
CVE-2022-21365
88.2%
26
CVE-2021-27464
88.2%
26
CVE-2019-17509
88.2%
26
CVE-2014-2494
88.2%
26
CVE-2018-15715
88.2%
26
CVE-2019-6765
88.2%
26
CVE-2007-2443
88.2%
26
CVE-2019-6764
88.2%
26
CVE-2020-3711
88.2%
26
CVE-2024-23724
88.2%
26
CVE-2014-9240
88.2%
26
CVE-2006-5077
88.2%
26
CVE-2020-3712
88.2%
26
CVE-2014-0375
88.2%
26
CVE-2007-3479
88.2%
26
CVE-2016-9211
88.2%
26
CVE-2013-5800
88.2%
26
CVE-2025-1876
88.2%
26
CVE-2019-12936
88.2%
26
CVE-2019-11527
88.2%
26
CVE-2005-2670
88.2%
26