Vulnerabilities exploitable today
378,183in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,717
New KEV · 24H1
Exploit Today ≥ 701,649
Distribution · last window
- Critical2,332
- High8,494
- Medium6,769
- Low765
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2017-38065.3 MED32.4%
——10A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to inject arbitrary shell commands that are executed by the device. More Information: CSCvb61343. Known Affected Releases: 2.0(1.68). Known Fixed Releases: 2.0(1.118) 2.1(1.47) 92.1(1.1646) 92.1(1.1763) 92.2(1.101).41dCVE-2024-3615—32.4%
——10——CVE-2022-46302—32.4%
——10——CVE-2015-4927—32.4%
——10——CVE-2026-640249.4 CRI32.4%
——10In the Linux kernel, the following vulnerability has been resolved:
tcp: fix stale per-CPU tcp_tw_isn leak enabling ISN prediction
Blamed commit moved the TIME_WAIT-derived ISN from the skb control
block to a per-CPU variable, assuming the value would always be consumed
by tcp_conn_request() for the same packet that wrote it. That assumption
is violated by multiple drop paths between the producer
(__this_cpu_write(tcp_tw_isn, isn) in tcp_v{4,6}_rcv()) and the consumer
(tcp_conn_request()):
- min_ttl / min_hopcount check
- xfrm policy check
- tcp_inbound_hash() MD5/AO mismatch
- tcp_filter() eBPF/SO_ATTACH_FILTER drop
- th->syn && th->fin discard in tcp_rcv_state_process() TCP_LISTEN
- psp_sk_rx_policy_check() in tcp_v{4,6}_do_rcv()
- tcp_checksum_complete() in tcp_v{4,6}_do_rcv()
- tcp_v{4,6}_cookie_check() returning NULL
When a packet is dropped on any of these paths, tcp_tw_isn is left set.
The next SYN processed on the same CPU then consumes the non zero value in
tcp_conn_request(), receiving a potentially predictable ISN.
This patch moves back tcp_tw_isn to skb->cb[], getting rid of the per-cpu
variable.
Note that tcp_v{4,6}_fill_cb() do not set it.
Very litle impact on overall code size/complexity:
$ scripts/bloat-o-meter -t vmlinux.old vmlinux.new
add/remove: 0/0 grow/shrink: 2/1 up/down: 8/-15 (-7)
Function old new delta
tcp_v6_rcv 3038 3042 +4
tcp_v4_rcv 3035 3039 +4
tcp_conn_request 2938 2923 -15
Total: Before=24436060, After=24436053, chg -0.00%53dCVE-2024-13923—32.4%
——10——CVE-2023-49168—32.4%
——10——CVE-2016-5517—32.4%
——10——CVE-2024-41217—32.4%
——10——CVE-2024-36206—32.4%
——10——CVE-2025-0518—32.4%
——10——CVE-2016-1418—32.4%
——10——CVE-2023-28971—32.4%
——10——CVE-2024-36207—32.4%
——10——CVE-2024-36212—32.4%
——10——CVE-2026-592007.5 HIG32.4%
——10Pillow is a Python imaging library. From 5.1.0 until 12.3.0, PdfParser.PdfStream.decode() in PIL/PdfParser.py calls zlib.decompress() with bufsize set to the PDF stream Length field without bounding the decompressed output size, allowing a crafted FlateDecode PDF stream to exhaust memory from a small file. This issue is fixed in version 12.3.0.62dCVE-2023-49152—32.4%
——10——CVE-2026-54018—32.4%
——10——CVE-2026-917218.8 HIG32.4%
——10Use after free in Internals in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)5dCVE-2024-21251—32.4%
——10——CVE-2024-51255—32.4%
——10——CVE-2023-49928—32.4%
——10——CVE-2024-31306—32.4%
——10——CVE-2023-49846—32.4%
——10——CVE-2023-47834—32.4%
——10——CVE-2026-789568.8 HIG32.4%
——10Type confusion in V8 in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Low)26dCVE-2023-46608—32.4%
——10——CVE-2024-36188—32.4%
——10——CVE-2022-25793—32.4%
——10——CVE-2022-36041—32.4%
——10——CVE-2016-1320—32.4%
——10——CVE-2024-36200—32.4%
——10——CVE-2026-42387—32.4%
——10——CVE-2023-47659—32.4%
——10——CVE-2011-1004—32.4%
——10——CVE-2023-46504—32.4%
——10——CVE-2023-47854—32.4%
——10——CVE-2025-54291—32.4%
——10——CVE-2025-62651—32.4%
——10——CVE-2024-36180—32.4%
——10——