Vulnerabilities exploitable today
354,831in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601
Distribution · last window
- Critical2,554
- High9,165
- Medium7,426
- Low692
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2004-0642—94.3%
——28——CVE-2017-149197.5 HIG94.3%
——28Node.js before 4.8.5, 6.x before 6.11.5, and 8.x before 8.8.0 allows remote attackers to cause a denial of service (uncaught exception and crash) by leveraging a change in the zlib module 1.2.9 making 8 an invalid value for the windowBits parameter.19dCVE-2014-0574—94.3%
——28——CVE-2019-0784—94.3%
——28——CVE-2026-2315—94.3%
——28——CVE-2020-11979—94.3%
——28——CVE-2010-3135—94.3%
——28——CVE-2009-0879—94.3%
——28——CVE-2017-15550—94.3%
——28——CVE-2016-10504—94.3%
——28——CVE-2019-8273—94.3%
——28——CVE-2019-11540—94.3%
——28——CVE-2019-7671—94.3%
——28——CVE-2011-1896—94.3%
——28——CVE-2011-2096—94.3%
——28——CVE-2017-8727—94.3%
——28——CVE-2024-31204—94.3%
——28——CVE-2018-8378—94.3%
——28——CVE-2026-479289.6 CRI94.3%
——28ColdFusion versions 2023.19, 2025.8 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.10dCVE-2016-7875—94.3%
——28——CVE-2006-2304—94.3%
——28——CVE-2026-0581—94.3%
——28——CVE-2008-6703—94.3%
——28——CVE-2015-4050—94.3%
——28——CVE-2010-1461—94.3%
——28——CVE-2019-8073—94.3%
——28——CVE-2016-4531—94.3%
——28——CVE-2010-1315—94.3%
——28——CVE-2021-3148—94.3%
——28——CVE-2009-1879—94.3%
——28——CVE-2018-5341—94.3%
——28——CVE-2012-0789—94.3%
——28——CVE-2010-1540—94.3%
——28——CVE-2019-8274—94.3%
——28——CVE-2025-8829—94.3%
——28——CVE-2022-24263—94.3%
——28——CVE-2006-1739—94.3%
——28——CVE-2025-8821—94.3%
——28——CVE-2023-5009—94.3%
——28——CVE-2025-13306—94.3%
——28——