Vulnerabilities exploitable today
374,209in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645
Distribution · last window
- Critical2,226
- High7,950
- Medium6,437
- Low714
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2018-19334—27.3%
——8——CVE-2023-51395—27.3%
——8——CVE-2021-25133—27.3%
——8——CVE-2023-4843—27.3%
——8——CVE-2025-64101—27.3%
——8——CVE-2014-0890—27.3%
——8——CVE-2025-55157—27.3%
——8——CVE-2005-4795—27.3%
——8——CVE-2018-17956—27.3%
——8——CVE-2024-13746—27.3%
——8——CVE-2007-4135—27.3%
——8——CVE-2024-6572—27.3%
——8——CVE-2025-36387—27.3%
——8——CVE-2021-25137—27.3%
——8——CVE-2008-1199—27.3%
——8——CVE-2026-4868—27.3%
——8——CVE-2022-46906—27.3%
——8——CVE-2023-30205—27.3%
——8——CVE-2016-2826—27.3%
——8——CVE-2022-36463—27.3%
——8——CVE-2024-3925—27.3%
——8——CVE-2025-30574—27.3%
——8——CVE-2025-59940—27.3%
——8——CVE-2025-5733—27.3%
——8——CVE-2025-26376—27.3%
——8——CVE-2025-43931—27.3%
——8——CVE-2026-6300—27.3%
——8——CVE-2026-109017.5 HIG27.3%
——8Use after free in Passwords in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)56dCVE-2023-49783—27.3%
——8——CVE-2026-611857.4 HIG27.3%
——8Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Installation). The supported version that is affected is 6.2.4. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Agile Product Lifecycle Management for Process executes to compromise Oracle Agile Product Lifecycle Management for Process. While the vulnerability is in Oracle Agile Product Lifecycle Management for Process, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Agile Product Lifecycle Management for Process accessible data. CVSS 3.1 Base Score 7.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).42dCVE-2026-694337.8 HIG27.3%
——8Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.7dCVE-2024-6705—27.3%
——8——CVE-2021-25130—27.3%
——8——CVE-2023-34374—27.3%
——8——CVE-2024-45734—27.3%
——8——CVE-2025-36427—27.3%
——8——CVE-2024-3603—27.3%
——8——CVE-2023-27990—27.3%
——8——CVE-2026-45687—27.3%
——8——CVE-2021-26307—27.3%
——8——