Vulnerabilities exploitable today
376,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,385
- High8,759
- Medium6,801
- Low733
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-11329—29.3%
——9——CVE-2025-14463—29.3%
——9——CVE-2022-29910—29.3%
——9——CVE-2022-43711—29.3%
——9——CVE-2023-38275—29.3%
——9——CVE-2026-139687.5 HIG29.3%
——9Insufficient validation of untrusted input in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code inside a sandbox via a malicious file. (Chromium security severity: Medium)77dCVE-2026-170785.3 MED29.3%
——9IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to resource exhaustion.29dCVE-2023-276666.1 MED29.3%
——9Auto Dealer Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the name parameter at /classes/SystemSettings.php?f=update_settings.71dCVE-2018-7513—29.3%
——9——CVE-2018-18656—29.3%
——9——CVE-2019-25237—29.3%
——9——CVE-2011-5154—29.3%
——9——CVE-2013-6024—29.3%
——9——CVE-2023-3535—29.3%
——9——CVE-2017-10292—29.3%
——9——CVE-2025-63686—29.3%
——9——CVE-2023-4400—29.3%
——9——CVE-2023-3830—29.3%
——9——CVE-2024-33633—29.3%
——9——CVE-2023-3505—29.3%
——9——CVE-2026-628294.6 MED29.3%
——9Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.37dCVE-2023-3536—29.3%
——9——CVE-2023-3857—29.3%
——9——CVE-2024-45237—29.3%
——9——CVE-2023-3794—29.3%
——9——CVE-2024-23785—29.3%
——9——CVE-2018-7519—29.3%
——9——CVE-2023-3831—29.3%
——9——CVE-2023-3834—29.3%
——9——CVE-2023-2044—29.3%
——9——CVE-2024-4077—29.3%
——9——CVE-2022-2762—29.3%
——9——CVE-2023-3833—29.3%
——9——CVE-2023-3489—29.3%
——9——CVE-2023-3755—29.3%
——9——CVE-2025-23466—29.3%
——9——CVE-2025-25134—29.3%
——9——CVE-2026-166277.7 HIG29.3%
——9GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer-role permissions to escalate privileges due to improper sanitization of HTML content rendered in a CI job modal.29dCVE-2018-0267—29.3%
——9——CVE-2022-3715—29.3%
——9——