PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / Server
CVE Watch367,165 in full archive

Vulnerabilities exploitable today

4,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629

Distribution · last window

  • Critical
    2,263
  • High
    9,269
  • Medium
    5,274
  • Low
    508
Filters

Window

Severity

Flags

Vulnerabilities721–760 · 4,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-116809.8 CRI
99.8%
KEV80ProjectSend Improper Authentication Vulnerability48d
CVE-2016-3510
99.8%
30
CVE-2017-0004
99.8%
30
CVE-2023-36844
99.8%
KEV80Juniper Junos OS EX Series PHP External Variable Modification Vulnerability
CVE-2014-0054
99.8%
30
CVE-2020-1350
99.8%
KEV80Microsoft Windows DNS Server Remote Code Execution Vulnerability
CVE-2024-27316
99.8%
30
CVE-2010-2568
99.8%
KEV80Microsoft Windows Remote Code Execution Vulnerability
CVE-2020-27988
99.8%
30
CVE-2010-4221
99.8%
30
CVE-2025-92429.8 CRI
99.8%
KEV80WatchGuard Firebox Out-of-Bounds Write Vulnerability21d
CVE-2015-5477
99.8%
30
CVE-2024-13160
99.8%
KEV80Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability
CVE-2020-8654
99.8%
30
CVE-2021-35211
99.8%
KEVR80SolarWinds Serv-U Remote Code Execution Vulnerability
CVE-2018-3810
99.8%
30
CVE-2021-25921
99.8%
30
CVE-2020-13851
99.8%
30
CVE-2015-7547
99.8%
30
CVE-2024-11320
99.8%
30
CVE-2012-5076
99.8%
KEV80Oracle Java SE Sandbox Bypass Vulnerability
CVE-2021-22962
99.8%
30
CVE-2022-26809
99.8%
30
CVE-2009-3023
99.8%
30
CVE-2022-36553
99.8%
30
CVE-2018-1000600
99.8%
30
CVE-2025-34037
99.8%
30An OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080. The CGI scripts improperly process user-supplied input passed to the ttcp_ip parameter without sanitization, allowing unauthenticated attackers to inject shell commands. This vulnerability was reported to be exploited in the wild by the "TheMoon" worm  in 2014 to deploy a MIPS ELF payload, enabling arbitrary code execution on the router. Additionally, this vulnerability may affect other Linksys products to include, but not limited to, WAG/WAP/WES/WET/WRT-series router models and Wireless-N access points and routers. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-06 UTC.40d
CVE-2017-7615
99.8%
30
CVE-2001-0333
99.8%
30
CVE-2022-3602
99.8%
30
CVE-2007-0450
99.8%
30
CVE-2020-8243
99.8%
KEV80Ivanti Pulse Connect Secure Code Execution Vulnerability
CVE-2026-356169.8 CRI
99.8%
KEV80Fortinet FortiClient EMS Improper Access Control Vulnerability38d
CVE-2011-3368
99.8%
30
CVE-2017-121499.8 CRI
99.8%
KEVR80Red Hat JBoss Application Server Remote Code Execution Vulnerability18d
CVE-2021-21315
99.8%
KEV80System Information Library for Node.JS Command Injection
CVE-2018-11759
99.8%
30
CVE-2000-0402
99.8%
30
CVE-2017-3066
99.8%
KEV80Adobe ColdFusion Deserialization Vulnerability
CVE-2013-6429
99.8%
30