PULSE
FEED
vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / Artifactory
CVE Watch379,275 in full archive

Vulnerabilities exploitable today

379,275in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,721
New KEV · 24H0
Exploit Today ≥ 701,654

Distribution · last window

  • Critical
    2,375
  • High
    8,542
  • Medium
    7,076
  • Low
    796
Filters
Filters

Window

Severity

Flags

Vulnerabilities246,321–246,360 · 379,275
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-48391
34.9%
10
CVE-2026-41079
34.9%
10
CVE-2025-5152
34.9%
10
CVE-2024-4857
34.9%
10
CVE-2023-48227
34.9%
10
CVE-2026-675817.5 HIG
34.9%
10Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to obtain paid resources by resubmitting one settled on-chain transfer. MPP.Methods.EVM.verify/2 accepts a transaction-hash credential and matches a transfer purely on token, to and amount (ERC-20) or to and value (native). It binds the proof neither to the challenge being verified nor to any record of prior use, and the generic MPP.Plug dedup store keys on challenge.id, which is regenerated for every 402 response. On a static-price route, a single historical transfer matching the charge therefore satisfies an unbounded number of later charges, including transfers an attacker can read off a public block explorer. This issue affects mpp: from 0.3.0 before 0.6.3.14d
CVE-2008-2514
34.9%
10
CVE-2025-51092
34.9%
10
CVE-2020-36669
34.9%
10
CVE-2021-1461
34.9%
10
CVE-2003-0670
34.9%
10
CVE-2022-1226
34.9%
10
CVE-2023-24064
34.9%
10
CVE-2023-27414
34.9%
10
CVE-2006-5755
34.9%
10
CVE-2023-21992
34.9%
10
CVE-2018-5995
34.9%
10
CVE-2022-39183
34.9%
10
CVE-2026-59160
34.9%
10
CVE-2025-40712
34.9%
10
CVE-2010-3297
34.9%
10
CVE-2025-3304
34.9%
10
CVE-2026-792928.3 HIG
34.9%
10Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)28d
CVE-2024-56139
34.9%
10
CVE-2022-2617
34.9%
10
CVE-2023-24062
34.9%
10
CVE-2026-729209.8 CRI
34.9%
10SeaweedFS is a distributed storage system. Prior to 4.24, the filer registers the SeaweedIdentityAccessManagement gRPC service without mandatory authentication when jwt.filer_signing.key is unset, allowing any client that can reach the filer gRPC port to invoke CreateUser, CreateAccessKey, PutPolicy, and related IAM RPCs to mint credentials and gain S3 administrative control. This issue is fixed in versions 4.24.15d
CVE-2021-22511
34.9%
10
CVE-2025-31066
34.9%
10
CVE-2024-34821
34.9%
10
CVE-2022-45837
34.9%
10
CVE-2026-694906.8 MED
34.9%
10Out-of-bounds read in Windows USB Mass Storage Class Driver allows an unauthorized attacker to elevate privileges with a physical attack.8d
CVE-2026-695666.8 MED
34.9%
10Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack.10d
CVE-2015-0136
34.9%
10
CVE-2024-4616
34.9%
10
CVE-2009-5100
34.9%
10
CVE-2019-19043
34.9%
10
CVE-2006-4172
34.9%
10
CVE-2019-14410
34.9%
10
CVE-2023-21921
34.9%
10