Vulnerabilities exploitable today
376,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,376
- High8,709
- Medium6,727
- Low723
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2008-1142—30.0%
——9——CVE-2002-0911—30.0%
——9——CVE-2009-2796—30.0%
——9——CVE-2005-3701—30.0%
——9——CVE-2025-13035—30.0%
——9——CVE-2005-1126—30.0%
——9——CVE-2008-5152—30.0%
——9——CVE-2010-4256—30.0%
——9——CVE-2020-1618—30.0%
——9——CVE-2023-29637—30.0%
——9——CVE-2025-5377—30.0%
——9——CVE-2026-832848.6 HIG30.0%
——9Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: BI Platform Security). Supported versions that are affected are 8.2.0.0.0, 12.2.1.4.0 and 26.01.0.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via SOAP to compromise Oracle BI Publisher. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle BI Publisher as well as unauthorized update, insert or delete access to some of Oracle BI Publisher accessible data and unauthorized read access to a subset of Oracle BI Publisher accessible data. CVSS 3.1 Base Score 8.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H).2dCVE-2016-3925—30.0%
——9——CVE-2024-43376—30.0%
——9——CVE-2019-8528—30.0%
——9——CVE-2023-460355.9 MED30.0%
——9The svg_optimizer gem before 0.3.0 for Ruby performs entity expansion on untrusted documents.4dCVE-2002-0377—30.0%
——9——CVE-2007-4574—30.0%
——9——CVE-2010-2928—30.0%
——9——CVE-2002-0762—30.0%
——9——CVE-2001-1322—30.0%
——9——CVE-2002-1672—30.0%
——9——CVE-2024-43266—30.0%
——9——CVE-2026-474178.1 HIG30.0%
——9PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have an Insecure Direct Object Reference. The comment endpoints (`POST /workspaces/{workspace_id}/issues/{issue_id}/comments` and `GET .../comments`) gate access on `require_workspace_member(workspace_id)` only, then call `CommentService.create(issue_id=issue_id, ...)` and `CommentService.list_for_issue(issue_id)` without verifying that `issue_id` belongs to `workspace_id`. A user who is a member of any workspace `W1` can read every comment on, and post new comments to, any issue in any other workspace `W2`. PraisonAI Platform version 0.1.4 patches the issue.59dCVE-2020-27587—30.0%
——9——CVE-2025-5378—30.0%
——9——CVE-2023-52269—30.0%
——9——CVE-2026-23848—30.0%
——9——CVE-2024-25619—30.0%
——9——CVE-2022-20662—30.0%
——9——CVE-2025-52891—30.0%
——9——CVE-2024-10437—30.0%
——9——CVE-2026-39493—30.0%
——9——CVE-2024-0452—30.0%
——9——CVE-2026-567848.1 HIG30.0%
——9OpenRemote before 1.25.0 contains an insecure direct object reference (IDOR) vulnerability in the bulk alarm deletion endpoint that allows authenticated users to permanently delete alarms belonging to other tenants by supplying arbitrary alarm IDs. The removeAlarms() method in AlarmResourceImpl.java omits realm-scoping validation in its JPA query, enabling any user with alarm-write permissions to enumerate sequential auto-increment alarm IDs and delete cross-tenant alarm records without authorization.66dCVE-2024-55925—30.0%
——9——CVE-2026-41614—30.0%
——9——CVE-2026-663937.5 HIG30.0%
——9NLTK versions before 3.9.4 contain an unbounded recursion vulnerability in JSONTaggedDecoder.decode_obj() that allows attackers to cause denial of service by supplying deeply nested JSON structures. Attackers can craft JSON payloads exceeding the recursion limit to trigger an unhandled RecursionError that crashes the Python process.22dCVE-2024-22260—30.0%
——9——CVE-2026-817227.5 HIG30.0%
——9nltk PorterStemmer in versions <= 3.10.2 (fixed in 3.10.3) contains an inefficient-algorithmic-complexity denial of service in PorterStemmer.stem(). The _is_consonant() helper walks backward over the entire run of trailing 'y' characters on every call, and _measure() invokes it for each stem position, causing O(n^2) behavior. A single ~20-50 KB untrusted token consisting of a long run of the letter 'y' followed by a matching suffix (e.g., 'ness') can pin a CPU core for seconds to minutes, causing availability impact.18d