PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
CVE Watch376,337 in full archive

Vulnerabilities exploitable today

376,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646

Distribution · last window

  • Critical
    2,385
  • High
    8,759
  • Medium
    6,801
  • Low
    733
Filters
Filters

Window

Severity

Flags

Vulnerabilities265,841–265,880 · 376,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-31136
29.2%
9
CVE-2025-10615
29.2%
9
CVE-2022-2389
29.2%
9
CVE-2017-0741
29.2%
9
CVE-2025-25497
29.2%
9
CVE-2017-8277
29.2%
9
CVE-2024-47789
29.2%
9
CVE-2017-0731
29.2%
9
CVE-2020-12304
29.2%
9
CVE-2012-3516
29.2%
9
CVE-2017-9720
29.2%
9
CVE-2019-11139
29.2%
9
CVE-2024-35720
29.2%
9
CVE-2025-14934
29.2%
9
CVE-2025-48743
29.2%
9
CVE-2012-4606
29.2%
9
CVE-2024-20364
29.2%
9
CVE-2024-35725
29.2%
9
CVE-2025-1190
29.2%
9
CVE-2017-8271
29.2%
9
CVE-2012-4461
29.2%
9
CVE-2013-10075
29.2%
9
CVE-2017-8272
29.2%
9
CVE-2025-63910
29.2%
9
CVE-2010-2431
29.2%
9
CVE-2023-1279
29.2%
9
CVE-2017-0742
29.2%
9
CVE-2017-8256
29.2%
9
CVE-2026-42251
29.2%
9Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the application's update packages. The attacker with these credentials could upload a malicious update file, which then may have been distributed and installed on client machines as a legitimate update. This issue affects KS-SOMED with modules: KSPLUPDFTP.exe up to 30.00.00.056 and ANEKSKLIENT.EXE up to 29.00.02.026 Beside removing the hard-coded credentials from the code and changing the update process, access granted by previously exposed credentials was limited to read-only.58d
CVE-2017-8261
29.2%
9
CVE-2008-0242
29.2%
9
CVE-2017-0729
29.2%
9
CVE-2024-35721
29.2%
9
CVE-2024-28582
29.2%
9
CVE-2023-24605
29.2%
9
CVE-2025-13185
29.2%
9
CVE-2026-39958
29.2%
9
CVE-2006-7160
29.2%
9
CVE-2026-155728.8 HIG
29.2%
9A flaw was found in Keycloak's Dynamic Client Registration (DCR) security policy management. The "Allowed Protocol Mapper Types" policy, which restricts which types of data mappers a client can use, fails to re-validate the mapper type during a client update if the mapper's configuration remains unchanged. An attacker with client registration privileges can exploit this by first registering an allowed mapper type with a malicious configuration and then swapping it for a restricted, high-privilege mapper type (such as one that hardcodes administrative roles). This allows the attacker to gain full administrative access to the Keycloak realm.38d
CVE-2024-35669
29.2%
9