Vulnerabilities exploitable today
376,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,385
- High8,759
- Medium6,801
- Low733
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-1999-1564—29.3%
——9——CVE-2021-22953—29.3%
——9——CVE-2024-34406—29.3%
——9——CVE-2023-21584—29.3%
——9——CVE-2022-42401—29.3%
——9——CVE-2019-25419—29.3%
——9——CVE-2022-42391—29.3%
——9——CVE-2017-17566—29.3%
——9——CVE-2022-503868.8 HIG29.3%
——9In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: L2CAP: Fix user-after-free
This uses l2cap_chan_hold_unless_zero() after calling
__l2cap_get_chan_blah() to prevent the following trace:
Bluetooth: l2cap_core.c:static void l2cap_chan_destroy(struct kref
*kref)
Bluetooth: chan 0000000023c4974d
Bluetooth: parent 00000000ae861c08
==================================================================
BUG: KASAN: use-after-free in __mutex_waiter_is_first
kernel/locking/mutex.c:191 [inline]
BUG: KASAN: use-after-free in __mutex_lock_common
kernel/locking/mutex.c:671 [inline]
BUG: KASAN: use-after-free in __mutex_lock+0x278/0x400
kernel/locking/mutex.c:729
Read of size 8 at addr ffff888006a49b08 by task kworker/u3:2/38945dCVE-2007-5118—29.3%
——9——CVE-2023-26353—29.3%
——9——CVE-2024-2383—29.3%
——9——CVE-2026-3759—29.3%
——9——CVE-2025-10411—29.3%
——9——CVE-2026-422954.9 MED29.3%
——9Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. From version 4.0.0 to before version 4.0.5, the workflow executor logs all artifact repository credentials (S3 access keys, secret keys, GCS service account keys, Azure account keys, Git passwords, etc.) in plaintext on artifact operation. Any user with read access to workflow pod logs can extract these credentials. This issue has been patched in version 4.0.5.55dCVE-2022-2375—29.3%
——9——CVE-2025-40992—29.3%
——9——CVE-2026-134436.4 MED29.3%
——9The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Lesson Attachment Title in all versions up to, and including, 3.9.13 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.79dCVE-2022-42404—29.3%
——9——CVE-2026-6916—29.3%
——9——CVE-2025-8174—29.3%
——9——CVE-2026-3705—29.3%
——9——CVE-2022-42375—29.3%
——9——CVE-2022-42398—29.3%
——9——CVE-2021-47779—29.3%
——9——CVE-2026-202864.3 MED29.3%
——9A vulnerability in the web-based management interface of Cisco Identify Services Engine (ISE) could allow an authenticated, remote attacker to modify parts of the configuration on an affected device.
This vulnerability is due to the lack of server-side validation of Administrator permissions. An attacker could exploit this vulnerability by submitting a crafted HTTP request to an affected system. A successful exploit could allow the attacker to modify descriptions of files on a specific page. To exploit this vulnerability, an attacker would need valid Administrator credentials.1dCVE-2022-46456—29.3%
——9——CVE-2026-149876.4 MED29.3%
——9The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'twitter_message' Sequoia Template Setting in all versions up to, and including, 4.16.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with give worker-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The injected script executes specifically when a donor clicks the Share on Twitter button on the Sequoia donation confirmation view, as that is when the unescaped twitter_message value is evaluated inside the JavaScript template literal.64dCVE-2022-29092—29.3%
——9——CVE-2025-1761—29.3%
——9——CVE-2026-12924—29.3%
——9——CVE-2026-615748.8 HIG29.3%
——9authentik is an open-source identity provider. Prior to 2026.2.6 and 2026.5.5, the Remote Access Control endpoint list returns every configured endpoint to any authenticated user regardless of which applications the user may access, and the response includes connection settings that can contain stored credentials. The endpoint listing does not apply the access controls governing the endpoints, and the connection flow does not confirm that an endpoint belongs to the Remote Access Control application through which it was launched. Any authenticated user can therefore read every endpoint together with its host and stored credentials and can open a connection to an endpoint belonging to another application. This exposes stored credentials for managed RDP, SSH, and VNC targets and grants interactive access to systems the user was never authorized to reach. Deployments that do not use the enterprise Remote Access Control provider are not affected. This issue is fixed in versions 2026.2.6 and 2026.5.5.9dCVE-2026-24419—29.3%
——9——CVE-2021-22949—29.3%
——9——CVE-2022-42389—29.3%
——9——CVE-2022-41146—29.3%
——9——CVE-2025-40649—29.3%
——9——CVE-2020-355469.1 CRI29.3%
——9Lexmark MX6500 LW75.JD.P296 and previous devices have Incorrect Access Control via the access control settings.75dCVE-2024-35111—29.3%
——9——CVE-2025-26747—29.3%
——9——