Vulnerabilities exploitable today
378,183in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,717
New KEV · 24H0
Exploit Today ≥ 701,649
Distribution · last window
- Critical2,332
- High8,494
- Medium6,769
- Low765
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-48783—32.6%
——10——CVE-2014-1353—32.6%
——10——CVE-2023-23874—32.6%
——10——CVE-2026-627385.5 MED32.6%
——10Out-of-bounds read in Windows Management Instrumentation allows an authorized attacker to disclose information locally.36dCVE-2019-4735—32.6%
——10——CVE-2026-15026—32.6%
——10——CVE-2023-21924—32.6%
——10——CVE-2018-1903—32.6%
——10——CVE-2024-9502—32.6%
——10——CVE-2026-33949—32.6%
——10——CVE-2024-26236—32.6%
——10——CVE-2026-131164.3 MED32.6%
——10The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.14.0 via the generate_document_shortcode due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with contributor-level access and above, to mint publicly accessible, session-free download links for arbitrary third-party orders, exposing customer names, billing and shipping addresses, email addresses, phone numbers, order and invoice numbers, line items, totals, payment details, and customer notes contained in those orders' invoices and packing slips. Exploitation requires the plugin's Document link access type setting to be configured to 'full'; with the default 'logged_in' value, generated URLs are signed with a per-session nonce rather than the order_key, making the shortcode path unexploitable for unauthorized access to third-party orders.70dCVE-2023-21647—32.6%
——10——CVE-2019-2940—32.6%
——10——CVE-2026-572145.4 MED32.6%
——10RabbitMQ is a messaging and streaming broker. Prior to 4.2.5, the RabbitMQ management UI renders the x-internal-purpose queue or exchange argument into an HTML title attribute without proper escaping on the Queues and Exchanges pages, allowing a user with permission to declare a queue or exchange to execute JavaScript in another user's browser. This issue is fixed in version 4.2.5.70dCVE-2026-627035.5 MED32.6%
——10Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to disclose information locally.36dCVE-2024-26243—32.6%
——10——CVE-2021-46666—32.6%
——10——CVE-2026-28954—32.6%
——10——CVE-2025-0614—32.6%
——10——CVE-2026-5971—32.6%
——10——CVE-2026-760359.6 CRI32.6%
——10Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)28dCVE-2023-23880—32.6%
——10——CVE-2025-20336—32.6%
——10——CVE-2022-42850—32.6%
——10——CVE-2023-25894—32.6%
——10——CVE-2022-45215—32.6%
——10——CVE-2026-32713—32.6%
——10——CVE-2026-5970—32.6%
——10——CVE-2023-25899—32.6%
——10——CVE-2026-627465.5 MED32.6%
——10Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally.36dCVE-2025-50056—32.6%
——10——CVE-2023-29720—32.6%
——10——CVE-2026-582277.5 HIG32.6%
——10The Erlang/OTP ssl application does not detect cycles when reconstructing an incomplete peer certificate chain during a TLS or DTLS handshake. In ssl_certificate:handle_incomplete_chain/5, the received chain is passed to ssl_certificate:build_certificate_chain/5, which walks issuer relationships via ssl_certificate:do_certificate_chain/7 with no cycle detection and no depth limit. When the peer supplies two mutually cross-signed certificates in unordered form (A issues B, B issues A), the issuer lookup alternates between the two certificates and the pair of functions recurses indefinitely, growing the call stack and chain accumulator without bound.
An unauthenticated remote attacker can send a crafted certificate chain in a TLS or DTLS Certificate handshake message to exhaust available memory and crash the BEAM node. Only a TCP connection and a partial handshake are required; no authentication or completed handshake is needed, and both TLS/DTLS servers and clients are affected when processing peer certificate messages.
This issue affects OTP from OTP 23.2 before OTP 29.0.4, OTP 28.5.0.4 and OTP 27.3.4.15, corresponding to ssl from 10.2 before 11.7.4, 11.6.0.4 and 11.2.12.11.42dCVE-2026-195598.8 HIG32.6%
——10Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)35dCVE-2026-935757.5 HIG32.6%
——10A flaw was found in Netty's MqttDecoder. An unauthenticated remote attacker can exploit this vulnerability by sending a specially crafted MQTT CONNECT packet. The decoder fails to properly validate the 'Properties Length' against the 'Remaining Length', allowing an attacker to bypass size limits. This leads to excessive memory and CPU consumption, resulting in a denial of service (DoS) due to an OutOfMemoryError.3dCVE-2024-10798—32.6%
——10——CVE-2026-613605.5 MED32.6%
——10Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.36dCVE-2026-47205—32.6%
——10——CVE-2025-63372—32.6%
——10——