Vulnerabilities exploitable today
378,631in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,721
New KEV · 24H4
Exploit Today ≥ 701,652
Distribution · last window
- Critical2,396
- High8,640
- Medium6,936
- Low787
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-13691—33.5%
——10——CVE-2022-25774—33.5%
——10——CVE-2024-51607—33.5%
——10——CVE-2026-42315—33.5%
——10——CVE-2021-26800—33.5%
——10——CVE-2023-46255—33.5%
——10——CVE-2026-208637.0 HIG33.5%
——10Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.54dCVE-2020-12254—33.5%
——10——CVE-2025-5197—33.5%
——10——CVE-2022-20175—33.5%
——10——CVE-2025-10993—33.5%
——10——CVE-2026-22692—33.5%
——10——CVE-2021-32454—33.5%
——10——CVE-2023-473228.8 HIG33.5%
——10The "userModify" feature of Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) leading to privilege escalation. If an administrator goes to a malicious URL while being authenticated to the Silverpeas application, the CSRF with execute making the attacker an administrator user in the application.76dCVE-2009-2909—33.5%
——10——CVE-2021-4411—33.5%
——10——CVE-2024-13793—33.5%
——10——CVE-2026-64960—33.5%
——10ATutor Gameme module allows users to upload files of any type and extension without restriction. Due to improper handling of file uploads, files are stored in a web-accessible location before their content is validated. An authenticated attacker who knows a valid course_id can upload a server-executable malicious script. The uploaded file can then be requested over HTTP, resulting in remote code execution as the web server process user. In most cases, course_id=0 can be used, as it commonly represents the global context.
Product is no longer actively supported and the vulnerabilities have not been fixed. Only version 2.2.4 was tested and confirmed as vulnerable, other versions were not tested but might also be vulnerable.25dCVE-2017-3505—33.5%
——10——CVE-2026-208657.8 HIG33.5%
——10Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.54dCVE-2026-208227.8 HIG33.5%
——10Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.54dCVE-2025-25032—33.5%
——10——CVE-2023-3511—33.5%
——10——CVE-2021-41850—33.5%
——10——CVE-2025-11119—33.5%
——10——CVE-2026-84865.3 MED33.5%
——10Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Automation allows Flooding.
This issue affects MOVEit Automation: before 2025.0.11, from 2025.1.0 before 2025.1.7.61dCVE-2024-9114—33.5%
——10——CVE-2023-26235—33.5%
——10——CVE-2025-11112—33.5%
——10——CVE-2026-732647.6 HIG33.5%
——10Prowler is a cloud security platform. Prior to 5.33.1, an authenticated user with Lighthouse provider configuration access could supply an unvalidated base_url for the openai_compatible provider through POST /api/v1/lighthouse/providers and POST /api/v1/lighthouse/providers/{id}/connection, causing api/src/backend/tasks/jobs/lighthouse_providers.py to send outbound requests, including the API key in the Authorization header, to attacker-controlled or internal endpoints when client.models.list was called. This issue is fixed in version 5.33.1.13dCVE-2021-4158—33.5%
——10——CVE-2017-20220—33.5%
——10——CVE-2023-1047—33.5%
——10——CVE-2024-2080—33.5%
——10——CVE-2025-22695—33.5%
——10——CVE-2025-11251—33.5%
——10——CVE-2023-36918—33.5%
——10——CVE-2026-195948.1 HIG33.5%
——10Insufficient input sanitization in Snowflake Python API (`snowflake.core`) versions prior to 1.13.0 allowed confused-deputy privilege escalation through two related weaknesses: path traversal (CWE-22) via unencoded `..` identifier path segments, and HTTP parameter pollution (CWE-141) via unencoded `&`/`#`/`=` characters in query string values. An attacker with access to a downstream application built on snowflake.core could exploit the path traversal by supplying `..` as an object name, causing `snowflake.core` to issue REST requests against a parent resource or exploit the parameter pollution by injecting `&`/`#`/`=` into a free-form name field to override constraints on swap, clone, or rename operations — all executed under the application's privileged session. Successful exploitation requires the attacker to control an identifier or object-name string in an application built on snowflake.core that passes it to `snowflake.core` under a higher-privileged Snowflake session (e.g., an EXECUTE AS OWNER stored procedure, Streamlit app, or Native App). The fix is available in Snowflake Python API version 1.13.0, which also addresses several additional security findings. Users must manually upgrade.14dCVE-2021-4384—33.5%
——10——CVE-2025-67962—33.5%
——10——