Vulnerabilities exploitable today
378,631in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,721
New KEV · 24H4
Exploit Today ≥ 701,652
Distribution · last window
- Critical2,396
- High8,640
- Medium6,936
- Low787
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2012-1101—33.6%
——10——CVE-2026-733508.2 HIG33.6%
——10Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions.33dCVE-2026-117217.5 HIG33.6%
——10It is possible for an attacker's zone to respond to a query with an RRSIG that has a smaller number of labels than the zone in which the RRSIG is contained. This causes `named` to produce a wildcard name for a zone that is shorter than the attacker's zone, which can result in cache poisoning. For this attack to have any effect, the resolver under attack must have set `synth-from-dnssec yes;` (which is the default).
This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.24, 9.21.0 through 9.21.23, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.24-S1.62dCVE-2024-0007—33.6%
——10——CVE-2024-5697—33.6%
——10——CVE-2024-50524—33.6%
——10——CVE-2026-122898.8 HIG33.6%
——10Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Firefox ESR 115.37, Thunderbird 152, and Thunderbird 140.12.69dCVE-2023-51323—33.6%
——10——CVE-2024-13835—33.6%
——10——CVE-2024-39666—33.6%
——10——CVE-2023-46609—33.6%
——10——CVE-2024-21023—33.6%
——10——CVE-2024-51625—33.6%
——10——CVE-2024-21028—33.6%
——10——CVE-2025-386088.6 HIG33.6%
——10In the Linux kernel, the following vulnerability has been resolved:
bpf, ktls: Fix data corruption when using bpf_msg_pop_data() in ktls
When sending plaintext data, we initially calculated the corresponding
ciphertext length. However, if we later reduced the plaintext data length
via socket policy, we failed to recalculate the ciphertext length.
This results in transmitting buffers containing uninitialized data during
ciphertext transmission.
This causes uninitialized bytes to be appended after a complete
"Application Data" packet, leading to errors on the receiving end when
parsing TLS record.55dCVE-2026-47426—33.6%
——10Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the private_key_jwt client authentication path uses ClientJwksResolverCache without reliably binding a cached jwks_uri resolver and verified assertion to the expected clientID in ClientCredentialsReader. An attacker controlling any registered client with published keys, including one obtained through open dynamic registration when enabled, can authenticate as another client whose keys are exposed through jwks_uri and mint tokens in that client's name across realms in the same OpenAM process. This issue is fixed in version 16.1.1.5dCVE-2026-27584—33.6%
——10——CVE-2021-4445—33.6%
——10——CVE-2024-5730—33.6%
——10——CVE-2017-0602—33.6%
——10——CVE-2026-41197—33.6%
——10——CVE-2026-276110.0 CRI33.6%
——10Sandbox escape in the Graphics: WebRender component. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.70dCVE-2024-50544—33.6%
——10——CVE-2025-450577.5 HIG33.6%
——10D-Link DI-8300 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in the ip_position_asp function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.60dCVE-2022-28388—33.6%
——10——CVE-2025-47929—33.6%
——10——CVE-2022-37730—33.6%
——10——CVE-2025-5382—33.6%
——10——CVE-2022-34242—33.6%
——10——CVE-2026-35405—33.6%
——10——CVE-2026-608809.8 CRI33.6%
——10Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Work in Process. Successful attacks of this vulnerability can result in takeover of Oracle Work in Process. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).56dCVE-2023-39067—33.6%
——10——CVE-2024-204315.8 MED33.6%
——10A vulnerability in the geolocation access control feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass an access control policy.
This vulnerability is due to improper assignment of geolocation data. An attacker could exploit this vulnerability by sending traffic through an affected device. A successful exploit could allow the attacker to bypass a geolocation-based access control policy and successfully send traffic to a protected device.42dCVE-2024-9177—33.6%
——10——CVE-2026-189379.0 CRI33.6%
——10The Broken Link Checker WordPress plugin before 2.4.12 does not limit which query variables it accepts from user input on sites using plain permalinks, allowing unauthenticated users to overwrite arbitrary PHP global variables, and to execute arbitrary code on the server when a classic (non-block) is active.34dCVE-2024-25428—33.6%
——10——CVE-2026-33679—33.6%
——10——CVE-2024-51601—33.6%
——10——CVE-2026-535997.5 HIG33.6%
——10REDAXO is a PHP-based content management system. From 5.18.2 until 5.21.1, rex_mediapool::isAllowedExtension in redaxo/src/addons/mediapool/lib/mediapool.php lets an authenticated backend user with media[upload] permission upload a JPEG/PHP polyglot named shell.php.any.jpg, which web servers with multi-extension PHP handlers can execute as the web-server user. This issue is fixed in version 5.21.1.13dCVE-2026-26175—33.6%
——10——