PULSE
FEED
vulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-93952 — Arista / VeloCloud OrchestratorvulnKEV agrega CVE-2026-94127 — F5 / BIG-IP APMvulnKEV agrega CVE-2026-93616 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-85102 — Check Point / Multiple ProductsvulnKEV agrega CVE-2026-7273 — Zyxel / GS1900 Series SwitchesvulnKEV agrega CVE-2025-39964 — Linux / KernelvulnKEV agrega CVE-2026-53266 — Linux / KernelvulnKEV agrega CVE-2025-39682 — Linux / KernelvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / Artifactory
CVE Watch378,755 in full archive

Vulnerabilities exploitable today

378,755in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,721
New KEV · 24H0
Exploit Today ≥ 701,652

Distribution · last window

  • Critical
    2,413
  • High
    8,699
  • Medium
    6,979
  • Low
    789
Filters
Filters

Window

Severity

Flags

Vulnerabilities249,281–249,320 · 378,755
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2010-5271
34.0%
10
CVE-2010-5200
34.0%
10
CVE-2010-5265
34.0%
10
CVE-2010-5243
34.0%
10
CVE-2010-3373
34.0%
10
CVE-2019-20636
34.0%
10
CVE-2026-69220
34.0%
10The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.1, src/main/java/com/rabbitmq/client/impl/ValueReader.java permits ValueReader.readTable and ValueReader.readArray to call ValueReader.readFieldValue recursively for AMQP table type F and AMQP array type A values without a nesting-depth limit. A malicious AMQP server or network intermediary can send approximately 580 nested table levels in the pre-authentication connection.start frame, fitting within the default 131072-byte frame maximum, to trigger StackOverflowError. The error terminates the client input processing thread and causes denial of service. This issue is fixed in version 5.33.1.12d
CVE-2010-5255
34.0%
10
CVE-2010-5244
34.0%
10
CVE-2017-9694
34.0%
10
CVE-2025-22221
34.0%
10
CVE-2026-176964.3 MED
34.0%
10Side-channel information leakage in Media in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)54d
CVE-2012-6547
34.0%
10
CVE-2021-0591
34.0%
10
CVE-2024-9243
34.0%
10
CVE-2026-106177.3 HIG
34.0%
10A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.11.3. This affects the function resolveAuth of the file internal/http/auth.go of the component Webhook Verification Handler. The manipulation leads to missing authentication. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. The project tagged the reported issue as bug.63d
CVE-2023-30499
34.0%
10
CVE-2021-35542
34.0%
10
CVE-2023-30515
34.0%
10
CVE-2024-5169
34.0%
10
CVE-2017-9605
34.0%
10
CVE-2024-39025
34.0%
10
CVE-2023-21904
34.0%
10
CVE-2019-3729
34.0%
10
CVE-2023-33984
34.0%
10
CVE-2016-3159
34.0%
10
CVE-2024-38826
34.0%
10
CVE-2010-5268
34.0%
10
CVE-2026-1694010.0 CRI
34.0%
10The Custom Fields WordPress plugin before 1.5.1 does not validate a user-supplied file path before deletion, allowing unauthenticated users to delete arbitrary files on the server (such as wp-config.php), which can lead to a full site takeover.28d
CVE-2010-5256
34.0%
10
CVE-2026-3153
34.0%
10
CVE-2026-733996.5 MED
34.0%
10Unauthenticated Broken Authentication in Flutterwave WooCommerce <= 3.3.0 versions.34d
CVE-2018-19638
34.0%
10
CVE-2026-193456.5 MED
34.0%
10A vulnerability was found in code-projects Task Management System 1.0. This affects an unknown part of the file /user/UpdateTaskStatus.php. The manipulation of the argument task_id/val results in missing authorization. It is possible to launch the attack remotely. The exploit has been made public and could be used.40d
CVE-2016-8632
34.0%
10
CVE-2026-3148
34.0%
10
CVE-2010-5211
34.0%
10
CVE-2010-5274
34.0%
10
CVE-2025-53769
34.0%
10
CVE-2024-21550
34.0%
10