Vulnerabilities exploitable today
355,082in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601
Distribution · last window
- Critical2,577
- High9,224
- Medium7,474
- Low696
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2020-24651—93.5%
——28——CVE-2016-7851—93.5%
——28——CVE-2020-1092—93.5%
——28——CVE-2024-5466—93.5%
——28——CVE-2020-1971—93.5%
——28——CVE-2022-26651—93.5%
——28——CVE-2020-3794—93.5%
——28——CVE-2017-17097—93.5%
——28——CVE-2019-10652—93.5%
——28——CVE-2017-1000356—93.5%
——28——CVE-2011-1077—93.5%
——28——CVE-2015-4445—93.5%
——28——CVE-2007-5328—93.5%
——28——CVE-2023-48792—93.5%
——28——CVE-2013-2171—93.5%
——28——CVE-2017-11242—93.5%
——28——CVE-2022-32230—93.5%
——28——CVE-2011-2101—93.5%
——28——CVE-2013-5017—93.5%
——28——CVE-2023-2636—93.5%
——28——CVE-2001-1491—93.5%
——28——CVE-2025-36911—93.5%
——28——CVE-2019-19880—93.5%
——28——CVE-2008-1022—93.5%
——28——CVE-2023-271636.5 MED93.5%
——28request-baskets up to v1.2.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/baskets/{name}. This vulnerability allows attackers to access network resources and sensitive information via a crafted API request.26dCVE-2025-15132—93.5%
——28——CVE-2005-1596—93.5%
——28——CVE-2007-2249—93.5%
——28——CVE-2000-0526—93.5%
——28——CVE-2002-1811—93.5%
——28——CVE-2008-6960—93.5%
——28——CVE-2001-0838—93.5%
——28——CVE-2002-1427—93.5%
——28——CVE-2017-14350—93.5%
——28——CVE-2007-0324—93.5%
——28——CVE-2013-1668—93.5%
——28——CVE-2022-457258.8 HIG93.5%
——28Improper Input Validation in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to execute arbitrary code on the target via an HTTP POST request26dCVE-2019-4087—93.5%
——28——CVE-2017-0107—93.5%
——28——CVE-2006-2779—93.5%
——28——