Vulnerabilities exploitable today
378,068in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,716
New KEV · 24H0
Exploit Today ≥ 701,651
Distribution · last window
- Critical2,293
- High8,417
- Medium6,703
- Low757
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-51541—31.9%
——10——CVE-2024-53968—31.9%
——10——CVE-2026-442545.3 MED31.9%
——10Wazuh is a free and open source platform used for threat prevention, detection, and response. From 1.0.0 until 4.14.6 and 5.0.0-beta2, HandleSecureMessage() in src/remoted/secure.c passes a pointer inside its stack buffer to ReadSecMSG(), and src/os_crypto/shared/msgs.c decompresses up to OS_MAXSTR bytes at that offset. For an encrypted agent message on TCP port 1514 that expands to 65,536 bytes, os_zlib_uncompress() writes a terminating null byte beyond the end of the destination buffer. The resulting stack out-of-bounds write in the root-level remoted daemon can crash message processing and disrupt agent communications. This issue is fixed in versions 4.14.6 and 5.0.0-beta2.3dCVE-2023-37358—31.9%
——10——CVE-2025-10806—31.9%
——10——CVE-2025-4738—31.9%
——10——CVE-2021-45338—31.9%
——10——CVE-2000-1136—31.9%
——10——CVE-2020-36853—31.9%
——10——CVE-2017-5700—31.9%
——10——CVE-2024-10473—31.9%
——10——CVE-2014-1469—31.9%
——10——CVE-2025-62790—31.9%
——10——CVE-2025-8043—31.9%
——10——CVE-2025-12104—31.9%
——10——CVE-2010-4082—31.9%
——10——CVE-2026-21921—31.9%
——10——CVE-2025-10835—31.9%
——10——CVE-2023-38085—31.9%
——10——CVE-2025-3821—31.9%
——10——CVE-2021-3742—31.9%
——10——CVE-2026-768428.2 HIG31.9%
——10The Mercado Pago Node.js SDK interpolates caller-supplied identifiers into API request paths without percent-encoding them, so characters that are structural in a URL survive into the outgoing request. The payment (get, capture, cancel), paymentRefund (create, total, list, get), advancedPayment (get, capture, cancel, update, updateReleaseDate) and disbursementRefund (create, createAll, listAll) clients build their path as a template literal, for example RestClient.fetch(`/v1/payments/${id}`, ...) in src/clients/payment/get/index.ts. A dot-dot or slash sequence in the identifier is normalised by the WHATWG URL parser and redirects the request to a different endpoint, and a question mark appends attacker-chosen query parameters, in both cases carrying the merchant's own access token. An application that forwards an identifier influenced by an untrusted party into one of these methods without an ownership check therefore allows that party to reach other resources within the merchant's token scope. The repository already contains the intended helper, encodePathParam in src/utils/path.ts, which pull request 451 applied to roughly 29 other clients while leaving these unchanged.28dCVE-2004-0231—31.9%
——10——CVE-2025-11054—31.9%
——10——CVE-2025-53194—31.9%
——10——CVE-2026-848865.3 MED31.9%
——10A vulnerability was determined in simular-ai Agent-S up to 0.3.2. Affected by this vulnerability is the function ImageData of the file gui_agents/s1/utils/ocr_server.py of the component OCR HTTP API. Executing a manipulation of the argument img_bytes can lead to resource consumption. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.17dCVE-2006-4507—31.9%
——10——CVE-2026-627127.8 HIG31.9%
——10Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.36dCVE-2025-70039—31.9%
——10——CVE-2024-30257—31.9%
——10——CVE-2026-8731—31.9%
——10——CVE-2025-1313—31.9%
——10——CVE-2026-24417—31.9%
——10——CVE-2026-339997.8 HIG31.9%
——10A flaw was found in the X.Org X server. This integer underflow vulnerability, specifically in the XKB compatibility map handling, allows an attacker with local or remote X11 server access to trigger a buffer read overrun. This can lead to memory-safety violations and potentially a denial of service (DoS) or other severe impacts.69dCVE-2026-7536—31.9%
——10——CVE-2024-2119—31.9%
——10——CVE-2026-134479.8 CRI31.9%
——10The Mstore Api plugin for WordPress is vulnerable to Authentication Bypass via JWT Forgery in versions up to, and including, 4.20.0 This is due to missing cryptographic signature verification in the FirebasePhoneAuthHelper::verify_id_token() function, which decodes and validates Firebase ID token claims (alg, kid, aud, iss) but never calls openssl_verify() or any equivalent to validate the JWT signature against Google's actual public key certificates. This makes it possible for unauthenticated attackers to forge a Firebase Phone Auth JWT signed with a self-generated RSA key pair and impersonate any phone number, resulting in unauthorized access to existing WordPress accounts or creation of new arbitrary accounts.13dCVE-2022-46697—31.9%
——10——CVE-2023-37027—31.9%
——10——CVE-2026-790104.3 MED31.9%
——10Operation on a resource after expiration or release in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)24d