Vulnerabilities exploitable today
377,882in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,716
New KEV · 24H0
Exploit Today ≥ 701,651
Distribution · last window
- Critical2,336
- High8,527
- Medium6,725
- Low744
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-12036—30.8%
——9——CVE-2024-24866—30.8%
——9——CVE-2005-4755—30.8%
——9——CVE-2025-6333—30.8%
——9——CVE-2026-929519.9 CRI30.8%
——9vm2 before 3.11.7 contains an incorrect authorization vulnerability in the external package allowlist check that uses non-exact substring matching instead of full package-name boundary validation. Attackers can bypass the allowlist by requiring a colliding package name that contains an allowlisted package substring, causing vm2 to load and execute unauthorized host packages in the host context.2dCVE-2025-711169.1 CRI30.8%
——9In the Linux kernel, the following vulnerability has been resolved:
libceph: make decode_pool() more resilient against corrupted osdmaps
If the osdmap is (maliciously) corrupted such that the encoded length
of ceph_pg_pool envelope is less than what is expected for a particular
encoding version, out-of-bounds reads may ensue because the only bounds
check that is there is based on that length value.
This patch adds explicit bounds checks for each field that is decoded
or skipped.52dCVE-2023-6278—30.8%
——9——CVE-2025-6850—30.8%
——9——CVE-2026-46031—30.8%
——9——CVE-2013-3226—30.8%
——9——CVE-2022-45419—30.8%
——9——CVE-2025-22956—30.8%
——9——CVE-2003-0018—30.8%
——9——CVE-2002-1472—30.8%
——9——CVE-2025-43825.9 MED30.8%
——9A flaw was found in systems utilizing LUKS-encrypted disks with GRUB configured for TPM-based auto-decryption. When GRUB is set to automatically decrypt disks using keys stored in the TPM, it reads the decryption key into system memory. If an attacker with physical access can corrupt the underlying filesystem superblock, GRUB will fail to locate a valid filesystem and enter rescue mode. At this point, the disk is already decrypted, and the decryption key remains loaded in system memory. This scenario may allow an attacker with physical access to access the unencrypted data without any further authentication, thereby compromising data confidentiality. Furthermore, the ability to force this state through filesystem corruption also presents a data integrity concern.18dCVE-2024-27270—30.8%
——9——CVE-2023-33758—30.8%
——9——CVE-2022-41762—30.8%
——9——CVE-2024-11224—30.8%
——9——CVE-2023-34011—30.8%
——9——CVE-2015-4920—30.8%
——9——CVE-2024-10876—30.8%
——9——CVE-2025-4325—30.8%
——9——CVE-2026-436868.8 HIG30.8%
——9A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Connecting to a malicious NFS server may lead to kernel memory corruption.3dCVE-2026-91987—30.8%
——9——CVE-2024-10117—30.8%
——9——CVE-2023-23677—30.8%
——9——CVE-2026-505619.4 CRI30.8%
——9Yuxi is a large-model-based intelligent knowledge base and knowledge graph agent development platform. Prior to version 0.6.2, the project's authentication mechanism contains a flaw. In affected versions, the system does not sufficiently validate the identity token in the Authorization header — only performing a validity check. This allows an administrator token generated in another deployment instance or local testing environment to be used to access the backend management interfaces of a different affected instance. An attacker who obtains or constructs an acceptable administrator Authorization token may bypass normal login authentication and gain administrator privileges. This vulnerability could allow an attacker to access system configurations, invoke backend management APIs, create administrator accounts, and ultimately take over the system backend. This issue has been fixed in version 0.6.2. Before upgrading, users are advised to implement the following temporary measures: Set the environment variable `JWT_SECRET_KEY` to a non-default value, and configure a unique, sufficiently strong JWT/authentication key for each deployment instance; and/or avoid exposing backend management interfaces directly to the public network.10dCVE-2025-6332—30.8%
——9——CVE-2025-64762—30.8%
——9——CVE-2026-551137.5 HIG30.8%
——9A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a Denial of Service (DoS) attack and bypass authentication in certain UniFi Talk API endpoints.72dCVE-2026-89457.5 HIG30.8%
——9Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151.67dCVE-2025-2587—30.8%
——9——CVE-2024-12283—30.8%
——9——CVE-2025-6331—30.8%
——9——CVE-2026-3723—30.8%
——9——CVE-2022-43675—30.8%
——9——CVE-2024-9226—30.8%
——9——CVE-2024-2036—30.8%
——9——CVE-2026-100278.1 HIG30.8%
——9IBM MQ could allow a remote attacker to cause a denial of service or execute arbitrary code due to a buffer overflow when processing malformed compressed data on channels configured with compression enabled.19h