PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / Server
CVE Watch367,165 in full archive

Vulnerabilities exploitable today

4,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629

Distribution · last window

  • Critical
    2,263
  • High
    9,269
  • Medium
    5,274
  • Low
    508
Filters

Window

Severity

Flags

Vulnerabilities641–680 · 4,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2022-33891
99.8%
KEV80Apache Spark Command Injection Vulnerability
CVE-2021-27905
99.8%
30
CVE-2023-0992
99.8%
30
CVE-2018-10561
99.8%
KEV80Dasan GPON Routers Authentication Bypass Vulnerability
CVE-2016-4437
99.8%
KEV80Apache Shiro Code Execution Vulnerability
CVE-2024-2389
99.8%
30
CVE-2021-40870
99.8%
KEV80Aviatrix Controller Unrestricted Upload of File
CVE-2005-1983
99.8%
30
CVE-2024-6670
99.8%
KEVR80Progress WhatsUp Gold SQL Injection Vulnerability
CVE-2021-2190
99.8%
30
CVE-2018-14912
99.8%
30
CVE-2016-4010
99.8%
30
CVE-2021-37539
99.8%
30
CVE-2026-435007.8 HIG
99.8%
30In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA-packet handler in rxrpc_input_call_event() and the RESPONSE handler in rxrpc_verify_response() copy the skb to a linear one before calling into the security ops only when skb_cloned() is true. An skb that is not cloned but still carries externally-owned paged fragments (e.g. SKBFL_SHARED_FRAG set by splice() into a UDP socket via __ip_append_data, or a chained skb_has_frag_list()) falls through to the in-place decryption path, which binds the frag pages directly into the AEAD/skcipher SGL via skb_to_sgvec(). Extend the gate to also unshare when skb_has_frag_list() or skb_has_shared_frag() is true. This catches the splice-loopback vector and other externally-shared frag sources while preserving the zero-copy fast path for skbs whose frags are kernel-private (e.g. NIC page_pool RX, GRO). The OOM/trace handling already in place is reused.7d
CVE-2019-15976
99.8%
30
CVE-2025-47812
99.8%
KEV80Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability
CVE-2026-398089.8 CRI
99.8%
KEV80Fortinet FortiSandbox OS Command Injection Vulnerability45d
CVE-2023-35628
99.8%
30
CVE-2022-21907
99.8%
30
CVE-2020-2096
99.8%
30
CVE-2016-7547
99.8%
30
CVE-2022-1329
99.8%
30
CVE-2022-21371
99.8%
30
CVE-2019-8943
99.8%
30
CVE-2023-28302
99.8%
30
CVE-2023-41892
99.8%
30
CVE-2023-21758
99.8%
30
CVE-2007-0071
99.8%
30
CVE-2018-16509
99.8%
30
CVE-2012-1429
99.8%
30
CVE-2022-3786
99.8%
30
CVE-2025-2747
99.8%
KEV80Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability
CVE-2022-40022
99.8%
30
CVE-2023-23488
99.8%
30
CVE-2023-0050
99.8%
30
CVE-2022-24706
99.8%
KEV80Apache CouchDB Insecure Default Initialization of Resource Vulnerability
CVE-2021-25282
99.8%
30
CVE-2006-2369
99.8%
30
CVE-2022-41622
99.8%
30
CVE-2016-3427
99.8%
KEV80Oracle Java SE and JRockit Unspecified Vulnerability