Vulnerabilities exploitable today
352,317in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,590
Distribution · last window
- Critical2,257
- High7,708
- Medium7,032
- Low663
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2021-20043—97.5%
——29——CVE-2019-0940—97.5%
——29——CVE-2014-8147—97.5%
——29——CVE-2022-365328.8 HIG97.5%
——29Bolt CMS contains a vulnerability in version 5.1.12 and below that allows an authenticated user with the ROLE_EDITOR privileges to upload and rename a malicious file to achieve remote code execution.16dCVE-2025-5438—97.5%
——29——CVE-2019-12258—97.5%
——29——CVE-2025-53107—97.5%
——29——CVE-2014-3508—97.5%
——29——CVE-2013-5528—97.5%
——29——CVE-2016-0051—97.5%
——29——CVE-2019-16097—97.5%
——29——CVE-2010-1883—97.5%
——29——CVE-2018-13324—97.5%
——29——CVE-2017-8502—97.5%
——29——CVE-2002-0033—97.5%
——29——CVE-2022-22957—97.5%
——29——CVE-2025-684938.1 HIG97.5%
——29Missing XML Validation vulnerability in Apache Struts, Apache Struts.
This issue affects Apache Struts: from 2.0.0 before 2.2.1; Apache Struts: from 2.2.1 through 6.1.0.
Users are recommended to upgrade to version 6.1.1, which fixes the issue.10dCVE-2011-1964—97.5%
——29——CVE-2011-1963—97.5%
——29——CVE-2018-8136—97.5%
——29——CVE-2019-12928—97.5%
——29——CVE-2006-5330—97.5%
——29——CVE-2007-2954—97.5%
——29——CVE-2004-2289—97.5%
——29——CVE-2012-1859—97.5%
——29——CVE-2010-0261—97.5%
——29——CVE-2023-29186—97.5%
——29——CVE-2021-22918—97.5%
——29——CVE-2007-0087—97.5%
——29——CVE-2018-3948—97.5%
——29——CVE-2022-1281—97.5%
——29——CVE-2006-2094—97.5%
——29——CVE-2018-8715—97.5%
——29——CVE-2023-3852—97.5%
——29——CVE-2021-40345—97.5%
——29——CVE-2005-0452—97.5%
——29——CVE-2014-4971—97.5%
——29——CVE-2018-8430—97.5%
——29——CVE-2009-1287—97.5%
——29——CVE-2002-0647—97.5%
——29——