Vulnerabilities exploitable today
375,890in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,383
- High8,708
- Medium6,690
- Low725
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-41241—28.4%
——9——CVE-2001-1465—28.4%
——9——CVE-2018-6525—28.4%
——9——CVE-2025-379528.8 HIG28.4%
——9In the Linux kernel, the following vulnerability has been resolved:
ksmbd: Fix UAF in __close_file_table_ids
A use-after-free is possible if one thread destroys the file
via __ksmbd_close_fd while another thread holds a reference to
it. The existing checks on fp->refcount are not sufficient to
prevent this.
The fix takes ft->lock around the section which removes the
file from the file table. This prevents two threads acquiring the
same file pointer via __close_file_table_ids, as well as the other
functions which retrieve a file from the IDR and which already use
this same lock.49dCVE-2026-854507.5 HIG28.4%
——9MOOS core-moos through 10.4.0 contains a denial of service vulnerability in the MOOSDB HTTP server that creates unbounded connections and threads without limits. Attackers can open many connections and send endless header data to exhaust server threads and memory, causing service unavailability.8dCVE-2022-40204—28.4%
——9——CVE-2007-4380—28.4%
——9——CVE-2008-2289—28.4%
——9——CVE-2026-109386.5 MED28.4%
——9Inappropriate implementation in Input in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)56dCVE-2008-2287—28.4%
——9——CVE-2026-619074.3 MED28.4%
——9An issue was discovered in Cyrus IMAP before 3.12.4. JMAP snooze bypasses the destination-mailbox ACL. An authenticated user with insert permissions on another user's snoozed mailbox could cause insertion of mail to that user's inbox, or any other of their mailboxes whose id was known to the user, despite having no insert permissions to the target mailbox.2dCVE-2019-14354—28.4%
——9——CVE-2016-1390—28.4%
——9——CVE-2001-0567—28.4%
——9——CVE-2020-0503—28.4%
——9——CVE-2025-31871—28.4%
——9——CVE-2014-2312—28.4%
——9——CVE-2026-897298.8 HIG28.4%
——9In the Linux kernel, the following vulnerability has been resolved:
HID: sensor-hub: Fix out-of-bounds write in sensor_hub_get_feature
sensor_hub_get_feature() clamps its return value to the caller's buffer
size, but the copy loop still copies field->report_size / 8 bytes for
each report value. A malicious HID descriptor can advertise a large
feature field size while an IIO caller supplies a small stack buffer,
such as a single s32, causing an out-of-bounds write.
HID core stores parsed report values in __s32 slots and clamps extracted
values to 32 bits. Reject feature fields that require more than one slot
per value, guard the total byte count calculation, and clamp each
per-value copy to the remaining caller buffer.2dCVE-2021-47709—28.4%
——9——CVE-2026-73242—28.4%
——9FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.30.0, FreeRDP's winpr/libwinpr/sspi/Kerberos/kerberos.c kerberos_DecryptMessage function fails to bound the peer-controlled GSS Wrap-token EC field before using it with RRC in IOV pointer offsets, allowing a malicious RDP peer to trigger out-of-bounds reads and in-place writes during CredSSP/NLA Kerberos decryption. This issue is fixed in version 3.30.0.7dCVE-2014-1272—28.4%
——9——CVE-2019-11086—28.4%
——9——CVE-2025-3977—28.4%
——9——CVE-2025-11469—28.4%
——9——CVE-2016-9016—28.4%
——9——CVE-2018-6523—28.4%
——9——CVE-2018-20944—28.4%
——9——CVE-2001-0310—28.4%
——9——CVE-2016-2142—28.4%
——9——CVE-2024-32323—28.4%
——9——CVE-2025-9840—28.4%
——9——CVE-2025-11401—28.4%
——9——CVE-2018-6524—28.4%
——9——CVE-2017-1681—28.4%
——9——CVE-2026-11849—28.3%
——9——CVE-2023-46327—28.4%
——9——CVE-2023-26040—28.4%
——9——CVE-2025-11400—28.4%
——9——CVE-2026-113408.3 HIG28.4%
——9Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Liman MYS: before release.Master.1107.71dCVE-2026-712629.8 CRI28.3%
——9IoTSharp BlobStorageController.cs lacks the [Authorize] attribute applied to every other controller in the application (DevicesController, CustomersController, TenantsController, etc.), and no global authorization FallbackPolicy is configured in Startup.cs, leaving its Upload/Download/List/Modify/Delete endpoints reachable by unauthenticated remote attackers.21d