Vulnerabilities exploitable today
354,883in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601
Distribution · last window
- Critical2,556
- High9,177
- Medium7,435
- Low692
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2014-4306—93.9%
——28——CVE-2019-1222—93.9%
——28——CVE-2014-0119—93.9%
——28——CVE-2013-1481—93.9%
——28——CVE-2018-3640—93.9%
——28——CVE-2021-28976—93.9%
——28——CVE-2014-3634—93.9%
——28——CVE-2025-9603—93.9%
——28——CVE-2017-16510—93.9%
——28——CVE-2014-0429—93.9%
——28——CVE-2008-0149—93.9%
——28——CVE-2023-23767.2 HIG93.9%
——28A security vulnerability has been detected in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. The affected element is an unknown function of the component Web Management Interface. The manipulation of the argument dpi leads to command injection. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. There are still doubts about whether this vulnerability truly exists. The vendor position is that post-authentication issues are not accepted as vulnerabilities.24dCVE-2017-15921—93.9%
——28——CVE-2010-4494—93.9%
——28——CVE-2003-1432—93.9%
——28——CVE-2016-98419.8 CRI93.9%
——28inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.20dCVE-2017-15920—93.9%
——28——CVE-2012-2051—93.9%
——28——CVE-2012-4151—93.9%
——28——CVE-2007-0323—93.9%
——28——CVE-2010-2785—93.9%
——28——CVE-2014-4405—93.9%
——28——CVE-2022-23935—93.9%
——28——CVE-2026-621457.5 HIG93.9%
——28A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.10dCVE-2014-0538—93.9%
——28——CVE-2002-0892—93.9%
——28——CVE-1999-0561—93.9%
——28——CVE-2017-11231—93.9%
——28——CVE-2007-0777—93.9%
——28——CVE-2017-11366—93.9%
——28——CVE-2012-4156—93.9%
——28——CVE-2023-23737.2 HIG93.9%
——28A vulnerability was identified in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This vulnerability affects unknown code of the component Web Management Interface. Such manipulation of the argument ecn-up leads to command injection. The attack may be performed from remote. The exploit is publicly available and might be used. The actual existence of this vulnerability is currently in question. The vendor position is that post-authentication issues are not accepted as vulnerabilities.24dCVE-2012-4150—93.9%
——28——CVE-2017-6193—93.9%
——28——CVE-2025-1616—93.9%
——28——CVE-2020-11034—93.9%
——28——CVE-2008-1761—93.9%
——28——CVE-2007-5694—93.9%
——28——CVE-2023-23787.2 HIG93.9%
——28A flaw has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown function of the component Web Management Interface. This manipulation of the argument suffix-rate-up causes command injection. The attack may be initiated remotely. The exploit has been published and may be used. The real existence of this vulnerability is still doubted at the moment. The vendor position is that post-authentication issues are not accepted as vulnerabilities.24dCVE-2016-4367—93.9%
——28——