Vulnerabilities exploitable today
376,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,713
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,383
- High8,771
- Medium6,812
- Low735
Filters
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-69606—28.9%
——9——CVE-2024-22311—28.9%
——9——CVE-2026-321474.3 MED28.9%
——9Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP ssh (ssh_sftpd module) allows an authenticated SFTP user to modify file attributes outside the configured chroot directory.
The SFTP daemon (ssh_sftpd) stores the raw, user-supplied path in file handles instead of the chroot-resolved path. When SSH_FXP_FSETSTAT is issued on such a handle, file attributes (permissions, ownership, timestamps) are modified on the real filesystem path, bypassing the root directory boundary entirely.
Any authenticated SFTP user on a server configured with the root option can modify file attributes of files outside the intended chroot boundary. The prerequisite is that a target file must exist on the real filesystem at the same relative path. Note that this vulnerability only allows modification of file attributes; file contents cannot be read or altered through this attack vector.
If the SSH daemon runs as root, this enables direct privilege escalation: an attacker can set the setuid bit on any binary, change ownership of sensitive files, or make system configuration world-writable.
This vulnerability is associated with program files lib/ssh/src/ssh_sftpd.erl and program routines ssh_sftpd:do_open/4 and ssh_sftpd:handle_op/4.
This issue affects OTP from OTP 17.0 before OTP 28.4.3, OTP 27.3.4.11 and OTP 26.2.5.20, corresponding to ssh from 3.0.1 before 5.5.3, 5.2.11.7 and 5.1.4.15.55dCVE-2020-36833—28.9%
——9——CVE-2024-32544—28.9%
——9——CVE-2021-39794—28.9%
——9——CVE-2013-4763—28.9%
——9——CVE-2025-58600—28.9%
——9——CVE-2019-17340—28.9%
——9——CVE-2021-34261—28.9%
——9——CVE-2023-41037—28.9%
——9——CVE-2019-9705—28.9%
——9——CVE-2011-2494—28.9%
——9——CVE-2026-200128.6 HIG28.9%
——9A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a memory leak, resulting in a denial of service (DoS) condition on an affected device.
This vulnerability is due to improper parsing of IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device. A successful exploit of Cisco IOS Software and IOS XE Software could allow the attacker to cause the affected device to reload, resulting in a DoS condition. A successful exploit of Cisco Secure Firewall ASA Software and Secure FTD Software could allow the attacker to partially exhaust system memory, resulting in system instability, such as the inability to establish new IKEv2 VPN sessions. A manual reboot of the device is required to recover from this condition.4hCVE-2024-49513—28.9%
——9——CVE-2019-12919—28.9%
——9——CVE-2025-62852—28.9%
——9——CVE-2024-9232—28.9%
——9——CVE-2019-11108—28.9%
——9——CVE-2020-37142—28.9%
——9——CVE-2025-43011—28.9%
——9——CVE-2011-2492—28.9%
——9——CVE-2017-18240—28.9%
——9——CVE-2025-55334—28.9%
——9——CVE-2019-4286—28.9%
——9——CVE-2024-36735—28.9%
——9——CVE-2015-3256—28.9%
——9——CVE-2026-0850—28.9%
——9——CVE-2023-47372—28.9%
——9——CVE-2026-178146.5 MED28.9%
——9Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)45dCVE-2026-3509—28.9%
——9——CVE-2025-46571—28.9%
——9——CVE-2026-157069.8 CRI28.9%
——9Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry and Trade Inc. Baylan Smart Meter Management Application (BMS) allows Authentication Bypass.
This issue affects Baylan Smart Meter Management Application (BMS): before v1.1.10.142.28dCVE-2024-43997—28.9%
——9——CVE-2025-32460—28.9%
——9——CVE-2023-2139—28.9%
——9——CVE-2023-47365—28.9%
——9——CVE-2026-338036.5 MED28.9%
——9An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a limited information disclosure and availability impact to the device.
Due to a wrong initialization, a process which should only be able to communicate internally within the device can be reached over the network via an open port. This leads to a device being inadvertently exposed and increased CPU cycles spent processing ingress packets.
This issue affects Junos OS Evolved:
* all versions before 23.2R2-S7-EVO,
* 23.4 versions before 23.4R2-S8-EVO,
* 24.2 versions before 24.2R2-S5-EVO,
* 24.4 versions before 24.4R2-S4-EVO,
* 25.2 versions before 25.2R2-S1-EVO,
* 25.4 versions before 25.4R1-S2-EVO.66dCVE-2023-23609—28.9%
——9——CVE-2022-44027—28.9%
——9——