Vulnerabilities exploitable today
376,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,383
- High8,771
- Medium6,812
- Low735
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-36996—28.9%
——9——CVE-2026-1193—28.9%
——9——CVE-2026-688425.5 MED28.9%
——9Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allows an authorized attacker to disclose information locally.1dCVE-2013-4763—28.9%
——9——CVE-2020-36833—28.9%
——9——CVE-2026-321474.3 MED28.9%
——9Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to modify file attributes outside the configured chroot directory.
The SFTP daemon (ssh_sftpd) stores the raw, user-supplied path in file handles instead of the chroot-resolved path. When SSH_FXP_FSETSTAT is issued on such a handle, file attributes (permissions, ownership, timestamps) are modified on the real filesystem path, bypassing the root directory boundary entirely.
Any authenticated SFTP user on a server configured with the root option can modify file attributes of files outside the intended chroot boundary. The prerequisite is that a target file must exist on the real filesystem at the same relative path. Note that this vulnerability only allows modification of file attributes; file contents cannot be read or altered through this attack vector.
If the SSH daemon runs as root, this enables direct privilege escalation: an attacker can set the setuid bit on any binary, change ownership of sensitive files, or make system configuration world-writable.
This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl and program routines ssh_sftpd:do_open/4 and ssh_sftpd:handle_op/4.
This issue affects OTP from OTP 17.0 before OTP 28.4.3, OTP 27.3.4.11 and OTP 26.2.5.20, corresponding to ssh from 3.0.1 before 5.5.3, 5.2.11.7 and 5.1.4.15.55dCVE-2015-0926—28.9%
——9——CVE-2007-5159—28.9%
——9——CVE-2025-24976—28.9%
——9——CVE-2025-4649—28.9%
——9——CVE-2024-35218—28.9%
——9——CVE-2024-7208—28.9%
——9——CVE-2025-377557.5 HIG28.9%
——9In the Linux kernel, the following vulnerability has been resolved:
net: libwx: handle page_pool_dev_alloc_pages error
page_pool_dev_alloc_pages could return NULL. There was a WARN_ON(!page)
but it would still proceed to use the NULL pointer and then crash.
This is similar to commit 001ba0902046
("net: fec: handle page_pool_dev_alloc_pages error").
This is found by our static analysis tool KNighter.45dCVE-2025-11321—28.9%
——9——CVE-2024-11324—28.9%
——9——CVE-2024-9610—28.9%
——9——CVE-2003-0642—28.9%
——9——CVE-2026-201018.6 HIG28.9%
——9A vulnerability in the SAML 2.0 single sign-on (SSO) feature of Cisco Secure Firewall ASA Software and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a DoS condition.
This vulnerability is due to insufficient error checking when processing SAML messages. An attacker could exploit this vulnerability by sending crafted SAML messages to the SAML service. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.37dCVE-2025-22883—28.9%
——9——CVE-2024-30195—28.9%
——9——CVE-2024-32546—28.9%
——9——CVE-2025-43016—28.9%
——9——CVE-2024-10903—28.9%
——9——CVE-2025-35056—28.9%
——9——CVE-2025-10293—28.9%
——9——CVE-2025-62694—28.9%
——9——CVE-2021-39794—28.9%
——9——CVE-2024-22311—28.9%
——9——CVE-2024-11326—28.9%
——9——CVE-2021-34268—28.9%
——9——CVE-2019-17340—28.9%
——9——CVE-2024-32544—28.9%
——9——CVE-2025-69606—28.9%
——9——CVE-2026-319274.9 MED28.9%
——9Anviz CX7 Firmware is vulnerable to an authenticated CSV upload which allows path traversal to overwrite arbitrary files (e.g., /etc/shadow), enabling unauthorized SSH access when combined with debug‑setting changes.69dCVE-2025-58600—28.9%
——9——CVE-2024-29907—28.9%
——9——CVE-2019-19727—28.9%
——9——CVE-2024-31365—28.9%
——9——CVE-2024-45808—28.9%
——9——CVE-2024-4374—28.9%
——9——