Vulnerabilities exploitable today
378,819in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,721
New KEV · 24H0
Exploit Today ≥ 701,652
Distribution · last window
- Critical2,412
- High8,681
- Medium6,983
- Low790
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-564565.3 MED34.2%
——10HCL DFXAnalytics is affected by an Internal File Path Disclosure vulnerability. The application dashboard inadvertently leaks sensitive information regarding its internal file structure and directory paths through unhandled error messages, system logs, or debugging output, which could allow a remote attacker to map the underlying server environment and identify targets for further exploitation.68dCVE-2015-1015—34.2%
——10——CVE-2026-0958—34.2%
——10——CVE-2017-9450—34.2%
——10——CVE-2025-1212—34.2%
——10——CVE-2026-37530—34.2%
——10——CVE-2026-687728.0 HIG34.2%
——10ZenML 0.94.6 contains a remote code execution vulnerability in the CloudpickleMaterializer component that allows attackers with write access to a shared artifact store to execute arbitrary code by planting a malicious pickle file. Attackers can replace a stored artifact.pkl file with a crafted cloudpickle payload containing a malicious __reduce__ method, which executes arbitrary system commands when any user or pipeline materializes the artifact through the unsanitized cloudpickle.load() call in cloudpickle_materializer.py.7dCVE-2024-8152—34.2%
——10——CVE-2023-38759—34.2%
——10——CVE-2025-62406—34.2%
——10——CVE-2020-26931—34.2%
——10——CVE-2023-29927—34.2%
——10——CVE-2023-28572—34.2%
——10——CVE-2024-38897—34.2%
——10——CVE-2024-27953—34.2%
——10——CVE-2025-8164—34.2%
——10——CVE-2026-4392—34.2%
——10——CVE-2026-3550—34.2%
——10——CVE-2024-13017—34.2%
——10——CVE-2007-5860—34.2%
——10——CVE-2023-37251—34.2%
——10——CVE-2024-11114—34.2%
——10——CVE-2026-82717—34.2%
——10In NLnet Labs Unbound up to and including 1.26.0, a vulnerability was found in that can progressively corrupt heap memory and under certain systems and compilation options could lead to remote code execution. The vulnerability starts when CNAME synthesis during an upstream response needs to enforce(rewrite) a max TTL value in the packet buffer. Coupled with a compression pointer that points to the overwritten value and invalidates the domain name, it leads to an error path that does not properly move the buffer position and allows for the heap buffer overflow. Since this is heavily reliant on heap memory layout, results are memory corruption that eventually leads to a crash and under specific systems and compilation options remote code execution.7dCVE-2014-6466—34.2%
——10——CVE-2024-47517—34.2%
——10——CVE-2022-23466—34.2%
——10——CVE-2023-4390—34.2%
——10——CVE-2025-3922—34.2%
——10——CVE-2026-557898.5 HIG34.2%
——10Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's self-hosted SAML application IdP built the signed SAML response and assertion by string-substituting user-controlled profile attributes such as name, email, and custom attribute-mapping values into element-text placeholders of a SAML XML template using samlify 2.10.0, which left those placeholders unescaped. An authenticated low-privilege user could place XML markup in a profile attribute so Logto signed a forged SAML attribute, such as an arbitrary role, allowing privilege escalation at relying Service Providers that authorize on SAML attributes. This issue is fixed in version 1.41.0.72dCVE-2026-922299.1 CRI34.2%
——10The The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.57.2. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.2dCVE-2026-1660—34.2%
——10——CVE-2025-64121—34.2%
——10——CVE-2024-21143—34.2%
——10——CVE-2023-50828—34.2%
——10——CVE-2026-1050—34.2%
——10——CVE-2024-38429—34.2%
——10——CVE-2025-14328—34.2%
——10——CVE-2025-14329—34.2%
——10——CVE-2017-3565—34.2%
——10——CVE-2024-204075.8 MED34.2%
——10A vulnerability in the interaction between the TCP Intercept feature and the Snort 3 detection engine on Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured policies on an affected system. Devices that are configured with Snort 2 are not affected by this vulnerability.
This vulnerability is due to a logic error when handling embryonic (half-open) TCP connections. An attacker could exploit this vulnerability by sending a crafted traffic pattern through an affected device. A successful exploit could allow unintended traffic to enter the network protected by the affected device.43d