PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional ServicesvulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2026-55040 — Microsoft / SharePointvulnKEV agrega CVE-2026-65400 — Apple / macOSvulnKEV agrega CVE-2025-62593 — Ray-Project / Rayransomclop reclama a ZEBRA.COM · US · Manufacturingransomshinyhunters reclama a Metabase · US · Technologyransomshinyhunters reclama a Sharecare, Inc. · US · Healthcareransomthegentlemen reclama a IPS · IT · Not Foundransomshinyhunters reclama a Carhartt, Inc. · US · Retail & E-Commerceransomthegentlemen reclama a Gfeller Treuhand und Verwaltungs · CH · Professional Services
CVE Watch363,765 in full archive

Vulnerabilities exploitable today

363,765in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,673
New KEV · 24H0
Exploit Today ≥ 701,611

Distribution · last window

  • Critical
    2,917
  • High
    12,239
  • Medium
    7,454
  • Low
    679
Filters

Window

Severity

Flags

Vulnerabilities44,281–44,320 · 363,765
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2005-2414
87.9%
26
CVE-2020-11498
87.9%
26
CVE-2008-6930
87.9%
26
CVE-2013-1627
87.9%
26
CVE-2010-3837
87.9%
26
CVE-2017-4053
87.9%
26
CVE-2014-2021
87.9%
26
CVE-2015-5761
87.9%
26
CVE-2007-2204
87.8%
26
CVE-1999-0853
87.9%
26
CVE-2012-1719
87.9%
26
CVE-2007-0897
87.9%
26
CVE-2018-3180
87.9%
26
CVE-2013-5831
87.9%
26
CVE-2001-0282
87.9%
26
CVE-2012-6500
87.9%
26
CVE-2022-34228
87.8%
26
CVE-2017-10983
87.8%
26
CVE-2009-1093
87.8%
26
CVE-2017-8758
87.8%
26
CVE-2007-2325
87.8%
26
CVE-2010-4535
87.8%
26
CVE-2005-4568
87.8%
26
CVE-2012-3436
87.8%
26
CVE-2001-0835
87.8%
26
CVE-2025-26645
87.8%
26
CVE-2008-5902
87.8%
26
CVE-2005-3110
87.8%
26
CVE-2022-26911
87.8%
26
CVE-2005-0729
87.8%
26
CVE-2010-0441
87.8%
26
CVE-2006-3850
87.8%
26
CVE-2017-12708
87.8%
26
CVE-2010-1997
87.8%
26
CVE-2011-2721
87.8%
26
CVE-2025-551317.1 HIG
87.8%
26A flaw in Node.js's buffer allocation logic can expose uninitialized memory when allocations are interrupted, when using the `vm` module with the timeout option. Under specific timing conditions, buffers allocated with `Buffer.alloc` and other `TypedArray` instances like `Uint8Array` may contain leftover data from previous operations, allowing in-process secrets like tokens or passwords to leak or causing data corruption. While exploitation typically requires precise timing or in-process code execution, it can become remotely exploitable when untrusted input influences workload and timeouts, leading to potential confidentiality and integrity impact.38d
CVE-2021-337575.3 MED
87.8%
26Windows Security Account Manager Remote Protocol Security Feature Bypass Vulnerability11d
CVE-2022-0692
87.8%
26
CVE-2009-4699
87.8%
26
CVE-2016-7993
87.8%
26