Vulnerabilities exploitable today
374,209in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,646
Distribution · last window
- Critical2,222
- High7,898
- Medium6,415
- Low710
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-8824—27.8%
——8——CVE-1999-1095—27.8%
——8——CVE-2026-874798.3 HIG27.8%
——8Insufficient policy enforcement in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)6dCVE-2005-1119—27.8%
——8——CVE-2017-9310—27.8%
——8——CVE-2023-46009—27.8%
——8——CVE-2024-13776—27.8%
——8——CVE-2024-45876—27.8%
——8——CVE-2025-1294—27.8%
——8——CVE-2026-782848.6 HIG27.8%
——8Unauthenticated Arbitrary File Deletion in MasterStudy LMS <= 3.7.42 versions.22dCVE-2022-36464—27.8%
——8——CVE-2022-36480—27.8%
——8——CVE-2020-2049—27.8%
——8——CVE-2025-61148—27.8%
——8——CVE-2022-30421—27.8%
——8——CVE-2024-8823—27.8%
——8——CVE-2023-25881—27.8%
——8——CVE-2025-50983—27.8%
——8——CVE-2024-12186—27.8%
——8——CVE-2026-4096510.0 CRI27.8%
——8Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vulnerability where EC (Elliptic Curve) private keys are inadvertently exposed through the public /token_keys endpoint. This endpoint is designed to provide public key material for JWT token verification but incorrectly exposes private key components for EC keys. The vulnerability affects deployments using EC keys for JWT token signing. The vulnerability does not affect RSA key configurations, only deployments using EC keys for JWT signing.
Affected versions:
- uaa_release: v76.12.0 through v78.12.0 (inclusive); fixed in v78.13.0 or later
- CF Deployment: v30.0.0 through v56.0.0 (inclusive); fixed in v56.1.0 or later (bundles uaa_release v78.13.0)56dCVE-2007-4237—27.8%
——8——CVE-2010-4460—27.8%
——8——CVE-2026-108869.6 CRI27.8%
——8Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)56dCVE-2026-33011—27.8%
——8——CVE-2021-26932—27.8%
——8——CVE-2024-35628—27.8%
——8——CVE-2010-3066—27.8%
——8——CVE-1999-1227—27.8%
——8——CVE-2024-32790—27.8%
——8——CVE-2025-39245—27.8%
——8——CVE-2026-732857.5 HIG27.8%
——8RustFS is a distributed object storage system built in Rust. From 1.0.0-alpha.64 until 1.0.0-rc.1, RustFS external OPA authorization enabled by RUSTFS_POLICY_PLUGIN_URL in crates/iam/src/sys.rs sets PreparedIamAuth.needs_existing_object_tag incorrectly for PreparedIamMode::Opa, causing maybe_merge_object_tag_conditions to omit s3:ExistingObjectTag/* values and allowing authenticated users to bypass tag-based policy restrictions. This issue is fixed in version 1.0.0-rc.1.7dCVE-2025-23336—27.8%
——8——CVE-2017-12546—27.8%
——8——CVE-2026-750005.8 MED27.8%
——8In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, improper HTML/CSS sanitization of the SVG animate "by" attribute may lead to remote image blocking bypass, which in turn may lead to information disclosure or privilege escalation.8dCVE-2007-0625—27.8%
——8——CVE-2026-851549.8 CRI27.8%
——8WWBN AVideo contains an authentication failure vulnerability where the video_id_hash credential is a non-expiring, non-revocable bearer token that grants full administrator session access to the video owner's account. Attackers who obtain a video_id_hash can replay it indefinitely to authenticate as the video owner with full privileges, and the credential remains valid even after the owner changes their password.8dCVE-2024-5766—27.8%
——8——CVE-2025-68059—27.8%
——8——CVE-2022-36851—27.8%
——8——CVE-2026-600848.7 HIG27.8%
——8SiYuan versions before v3.7.4 contain an arbitrary file deletion vulnerability in the /api/search/removeTemplate endpoint that accepts an unvalidated path parameter passed directly to os.RemoveAll. Authenticated admin attackers can supply absolute filesystem paths to recursively delete any file or directory the kernel process has permission to remove, anywhere on the host filesystem.23d