Vulnerabilities exploitable today
352,317in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,590
Distribution · last window
- Critical2,257
- High7,708
- Medium7,032
- Low663
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2016-0010—97.4%
——29——CVE-2026-22679—97.4%
——29——CVE-2018-18006—97.4%
——29——CVE-2011-1986—97.4%
——29——CVE-2018-4906—97.4%
——29——CVE-2008-4559—97.4%
——29——CVE-2026-344867.5 HIG97.4%
——29Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-29146 allowing the bypass of the EncryptInterceptor.
This issue affects Apache Tomcat: 11.0.20, 10.1.53, 9.0.116.
Users are recommended to upgrade to version 11.0.21, 10.1.54 or 9.0.117, which fix the issue.5dCVE-2009-2146—97.4%
——29——CVE-2008-0572—97.4%
——29——CVE-2021-31932—97.4%
——29——CVE-2025-29793—97.4%
——29——CVE-2006-0544—97.4%
——29——CVE-2005-3206—97.4%
——29——CVE-2009-1920—97.4%
——29——CVE-2018-15704—97.4%
——29——CVE-2011-3305—97.4%
——29——CVE-2022-31711—97.4%
——29——CVE-2002-0843—97.4%
——29——CVE-2004-0989—97.4%
——29——CVE-2010-3235—97.4%
——29——CVE-2012-2897—97.4%
——29——CVE-2010-3240—97.4%
——29——CVE-2016-7053—97.4%
——29——CVE-2026-472919.8 CRI97.4%
——29Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.2dCVE-2010-3238—97.4%
——29——CVE-2000-0122—97.4%
——29——CVE-2008-4668—97.4%
——29——CVE-2017-0243—97.4%
——29——CVE-2010-3239—97.4%
——29——CVE-2006-2081—97.4%
——29——CVE-2014-0312—97.4%
——29——CVE-2010-3233—97.4%
——29——CVE-2017-9462—97.4%
——29——CVE-2010-0025—97.4%
——29——CVE-2008-5750—97.4%
——29——CVE-2009-1667—97.4%
——29——CVE-2013-3863—97.4%
——29——CVE-2011-1720—97.4%
——29——CVE-2006-7066—97.4%
——29——CVE-2018-16286—97.4%
——29——