Vulnerabilities exploitable today
353,511in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,655
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,435
- High8,291
- Medium7,422
- Low691
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2018-15938—96.1%
——29——CVE-2023-50094—96.1%
——29——CVE-2002-1522—96.1%
——29——CVE-2021-36750—96.1%
——29——CVE-2018-15936—96.1%
——29——CVE-2019-17147—96.1%
——29——CVE-2010-1340—96.1%
——29——CVE-2011-1728—96.1%
——29——CVE-2015-6122—96.1%
——29——CVE-2015-6118—96.1%
——29——CVE-2007-1357—96.1%
——29——CVE-2011-1729—96.1%
——29——CVE-2008-4300—96.1%
——29——CVE-2010-3149—96.1%
——29——CVE-2010-1534—96.1%
——29——CVE-2015-6589—96.1%
——29——CVE-2015-2415—96.1%
——29——CVE-2013-0001—96.1%
——29——CVE-2012-1033—96.1%
——29——CVE-2007-3924—96.1%
——29——CVE-2007-4498—96.1%
——29——CVE-2018-15935—96.1%
——29——CVE-1999-1544—96.1%
——29——CVE-2024-45241—96.1%
——29——CVE-2011-1733—96.1%
——29——CVE-2008-4787—96.1%
——29——CVE-2018-8345—96.1%
——29——CVE-2010-3148—96.1%
——29——CVE-2016-0018—96.1%
——29——CVE-2004-2425—96.1%
——29——CVE-2026-363569.1 CRI96.1%
——29The GoAhead web server on MeiG Smart FORGE_SLT711 devices (firmware MDM9607.LE.1.0-00110-STD.PROD-1) allows unauthenticated OS command injection via the /action/SetRemoteAccessCfg endpoint.24dCVE-2026-107277.2 HIG96.1%
——29An OS command injection vulnerability in Ivanti EPMM before 12.9.0.1, 12.8.0.3 and 12.7.0.2 versions allows a remote authenticated attacker to execute arbitrary commands as root6dCVE-2025-54897—96.1%
——29——CVE-2025-47163—96.1%
——29——CVE-2024-42756—96.0%
——29——CVE-2022-30521—96.1%
——29——CVE-2014-6346—96.1%
——29——CVE-2015-5299—96.1%
——29——CVE-2015-1764—96.1%
——29——CVE-2019-1019—96.1%
——29——