PULSE
FEED
vulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-58704 — Google / PixelvulnKEV agrega CVE-2026-76460 — Cisco / Identity Services EnginevulnKEV agrega CVE-2026-87886 — Acronis / BackupvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management
CVE Watch376,337 in full archive

Vulnerabilities exploitable today

376,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646

Distribution · last window

  • Critical
    2,383
  • High
    8,771
  • Medium
    6,812
  • Low
    735
Filters
Filters

Window

Severity

Flags

Vulnerabilities266,881–266,920 · 376,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2013-3797
29.0%
9
CVE-2014-0018
29.0%
9
CVE-2013-6436
29.0%
9
CVE-2005-4133
29.0%
9
CVE-2014-2277
29.0%
9
CVE-2024-21002
29.0%
9
CVE-2024-22226
29.0%
9
CVE-2024-11928
29.0%
9
CVE-2023-46822
29.0%
9
CVE-2026-621476.5 MED
29.0%
9The Tempo Operator's gateway component failed to consistently apply namespace-scoped redaction on some query API response paths when query RBAC was enabled, allowing an authenticated user to read span attributes belonging to other tenants' namespaces.66d
CVE-2024-29142
29.0%
9
CVE-2023-46309
29.0%
9
CVE-2024-11434
29.0%
9
CVE-2022-33258
29.0%
9
CVE-2026-630996.5 MED
29.0%
9TheHive through 4.1.24 contains a broken object-level authorization vulnerability in the attachment download endpoints that allows any authenticated user to access attachments belonging to other organizations by supplying a content-hash identifier. Attackers can exploit the missing organization-scoped authorization check in AttachmentSrv.visible, which is implemented as a pass-through traversal, to download arbitrary attachments.62d
CVE-2022-25731
29.0%
9
CVE-2026-42984.3 MED
29.0%
9The DSGVO All in one for WP plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 4.9. This is due to the dsgvo_reset_policy_service_func() function lacking both capability checks and nonce verification while processing user-supplied parameters to reset plugin options. This makes it possible for authenticated attackers, with Subscriber-level access and above, to reset all customized privacy policy content including cookie notices, Google Analytics policies, Facebook policies, and YouTube policies to their default values.70d
CVE-2023-45746
29.0%
9
CVE-2026-9184
29.0%
9
CVE-2026-736227.5 HIG
29.0%
9GitPython before 3.1.55 fails to disable environment variable expansion in Remote.create() and Submodule.add() URL handling, allowing attackers to exfiltrate secrets by supplying URLs containing variable references. Attackers can craft URLs with environment variable tokens that are expanded into .git/config and .gitmodules, then transmitted to attacker-controlled hosts during fetch or pull operations.14d
CVE-2024-52463
29.0%
9
CVE-2022-25726
29.0%
9
CVE-2024-11363
29.0%
9
CVE-2024-39033
29.0%
9
CVE-2023-5615
29.0%
9
CVE-2026-45675
29.0%
9
CVE-2023-0593
29.0%
9
CVE-2024-58293
29.0%
9
CVE-2007-5907
29.0%
9
CVE-2023-27149
29.0%
9
CVE-2013-2976
29.0%
9
CVE-2024-52454
29.0%
9
CVE-2022-25747
29.0%
9
CVE-2022-33291
29.0%
9
CVE-2024-52460
29.0%
9
CVE-2023-35024
29.0%
9
CVE-2024-11709
29.0%
9
CVE-2024-11686
29.0%
9
CVE-2024-29091
29.0%
9
CVE-2024-52462
29.0%
9