Vulnerabilities exploitable today
354,883in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601
Distribution · last window
- Critical2,556
- High9,177
- Medium7,435
- Low692
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2002-0249—93.9%
——28——CVE-2001-0007—93.9%
——28——CVE-2012-4149—93.9%
——28——CVE-2018-19442—93.9%
——28——CVE-2016-0859—93.9%
——28——CVE-1999-0467—93.9%
——28——CVE-2000-1016—93.9%
——28——CVE-2012-4159—93.9%
——28——CVE-2021-27135—93.9%
——28——CVE-2008-1613—93.9%
——28——CVE-2013-2225—93.9%
——28——CVE-2012-0697—93.9%
——28——CVE-2002-1221—93.9%
——28——CVE-2016-4107—93.9%
——28——CVE-2021-44260—93.9%
——28——CVE-2005-0614—93.9%
——28——CVE-2020-17388—93.9%
——28——CVE-2017-6549—93.9%
——28——CVE-2025-3943—93.9%
——28——CVE-2012-4160—93.9%
——28——CVE-2014-4874—93.9%
——28——CVE-2017-9120—93.9%
——28——CVE-2000-0162—93.9%
——28——CVE-2023-23787.2 HIG93.9%
——28A flaw has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown function of the component Web Management Interface. This manipulation of the argument suffix-rate-up causes command injection. The attack may be initiated remotely. The exploit has been published and may be used. The real existence of this vulnerability is still doubted at the moment. The vendor position is that post-authentication issues are not accepted as vulnerabilities.25dCVE-2006-2483—93.9%
——28——CVE-2001-1170—93.9%
——28——CVE-2010-1239—93.9%
——28——CVE-2016-4367—93.9%
——28——CVE-2016-10542—93.9%
——28——CVE-2002-0892—93.9%
——28——CVE-2000-0888—93.9%
——28——CVE-2004-1533—93.9%
——28——CVE-2008-2326—93.9%
——28——CVE-2017-11256—93.9%
——28——CVE-2013-3350—93.9%
——28——CVE-2014-3634—93.9%
——28——CVE-2010-4494—93.9%
——28——CVE-2012-2051—93.9%
——28——CVE-2016-98419.8 CRI93.9%
——28inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.20dCVE-2012-4150—93.9%
——28——