Vulnerabilities exploitable today
354,630in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601
Distribution · last window
- Critical2,623
- High9,407
- Medium7,611
- Low703
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-46260—95.1%
——29——CVE-2018-20346—95.1%
——29——CVE-2017-0226—95.1%
——29——CVE-2017-9629—95.0%
——29——CVE-2021-33177—95.1%
——29——CVE-2026-256206.0 MED95.1%
——29An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). This issue uniquely affects version 17.4.0; earlier software releases are not exposed.8dCVE-2008-4478—95.1%
——29——CVE-2022-23626—95.1%
——29——CVE-2026-256226.0 MED95.1%
——29A Captive Portal Custom Handler command injection vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). On affected platforms, an administrative account logged into the user interface can exploit this input handling behavior to execute arbitrary platform shell commands.8dCVE-2019-0879—95.0%
——29——CVE-2006-1301—95.1%
——29——CVE-1999-0935—95.1%
——29——CVE-2025-9961—95.1%
——29——CVE-2018-9038—95.1%
——29——CVE-2017-14746—95.1%
——29——CVE-2020-25780—95.1%
——29——CVE-2016-4092—95.1%
——29——CVE-2014-3600—95.1%
——29——CVE-2012-3213—95.1%
——29——CVE-2000-0672—95.1%
——29——CVE-2014-9028—95.1%
——29——CVE-2012-1621—95.1%
——29——CVE-2023-27100—95.1%
——29——CVE-2022-38840—95.1%
——29——CVE-2017-15361—95.1%
——29——CVE-2021-26920—95.1%
——29——CVE-2019-0609—95.1%
——29——CVE-2012-0996—95.0%
——29——CVE-2025-2546—95.1%
——29——CVE-2006-4870—95.1%
——29——CVE-2019-11374—95.1%
——29——CVE-2022-41544—95.1%
——29——CVE-2017-11869—95.1%
——29——CVE-2022-0948—95.1%
——29——CVE-2006-2894—95.1%
——29——CVE-2014-8962—95.1%
——29——CVE-2019-16294—95.1%
——29——CVE-2020-25538—95.1%
——29——CVE-2020-12133—95.1%
——29——CVE-2022-35755—95.1%
——29——