Vulnerabilities exploitable today
374,209in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645
Distribution · last window
- Critical2,347
- High8,428
- Medium6,470
- Low715
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-36757—26.7%
——8——CVE-2024-29807—26.7%
——8——CVE-2026-349367.7 HIG26.7%
——8PraisonAI is a multi-agent teams system. Prior to version 4.5.90, passthrough() and apassthrough() in praisonai accept a caller-controlled api_base parameter that is concatenated with endpoint and passed directly to httpx.Client.request() when the litellm primary path raises AttributeError. No URL scheme validation, private IP filtering, or domain allowlist is applied, allowing requests to any host reachable from the server. This issue has been patched in version 4.5.90.53dCVE-2025-60374—26.7%
——8——CVE-2026-874436.5 MED26.7%
——8Missing authorization in Actor in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)6dCVE-2023-45635—26.7%
——8——CVE-2018-6016—26.7%
——8——CVE-2026-44226—26.7%
——8——CVE-2025-22528—26.7%
——8——CVE-2018-253648.2 HIG26.7%
——8Twitter-Clone 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the name parameter. Attackers can submit crafted payloads to the search.php endpoint to extract database information including usernames, credentials, and system data using error-based and union-based SQL injection techniques.54dCVE-2024-29189—26.7%
——8——CVE-2026-639468.8 HIG26.7%
——8In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: ISO: fix UAF in iso_recv_frame
iso_recv_frame reads conn->sk under iso_conn_lock but releases the lock
before using sk, with no reference held. A concurrent iso_sock_kill()
can free sk in that window, causing use-after-free on sk->sk_state and
sock_queue_rcv_skb().
Fix by replacing the bare pointer read with iso_sock_hold(conn), which
calls sock_hold() while the spinlock is held, atomically elevating the
refcount before the lock drops. Add a drop_put label so sock_put() is
called on all exit paths where the hold succeeded.50dCVE-2025-699469.8 CRI26.7%
——8SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in ajaxData.php via the parameters district_id , division_id, region_id, and ward_id.15dCVE-2025-5721—26.7%
——8——CVE-2024-9776—26.7%
——8——CVE-2026-120894.9 MED26.7%
——8The LWS Optimize – All-in-One Speed Booster & Cache Tools plugin for WordPress is vulnerable to Arbitrary File Read in versions up to, and including, 3.3.19. This is due to the combine_current_css() function trusting <link rel="stylesheet" href="..."> values harvested from page HTML and converting same-site URLs to absolute filesystem paths before reading them with file_get_contents()/Minify\CSS::add(), without enforcing that the resolved path stay within ABSPATH or have a .css extension. This makes it possible for authenticated attackers, with Editor-level access and above, to read arbitrary files.55dCVE-2018-12215—26.7%
——8——CVE-2022-36244—26.7%
——8——CVE-2026-44566—26.7%
——8——CVE-2026-584685.5 MED26.7%
——8NocoBase through 2.1.20 contains a server-side request forgery vulnerability in the serverRequest wrapper that allows authenticated administrators to issue arbitrary outbound HTTP requests by supplying malicious URLs to workflow request nodes, custom request action buttons, or the AI plugin. Attackers can target loopback addresses, RFC-1918 private ranges, and cloud instance metadata endpoints to perform internal network port enumeration, host discovery, and retrieval of IAM role credentials from the instance metadata service. v2.1.18 added a warning message for when SERVER_REQUEST_WHITELIST is not configured.63dCVE-2025-54290—26.7%
——8——CVE-2024-34374—26.7%
——8——CVE-2006-0178—26.7%
——8——CVE-2024-29925—26.7%
——8——CVE-2024-7038—26.7%
——8Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.62dCVE-2004-0125—26.7%
——8——CVE-2003-1034—26.7%
——8——CVE-2006-4493—26.7%
——8——CVE-2004-0134—26.7%
——8——CVE-2024-29811—26.7%
——8——CVE-2003-1291—26.7%
——8——CVE-2024-31448—26.7%
——8——CVE-2025-69806—26.7%
——8——CVE-2006-3373—26.7%
——8——CVE-2012-6302—26.7%
——8——CVE-2025-377768.8 HIG26.7%
——8In the Linux kernel, the following vulnerability has been resolved:
ksmbd: fix use-after-free in smb_break_all_levII_oplock()
There is a room in smb_break_all_levII_oplock that can cause racy issues
when unlocking in the middle of the loop. This patch use read lock
to protect whole loop.48dCVE-2003-0202—26.7%
——8——CVE-2026-697134.4 MED26.7%
——8Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.6dCVE-2026-21949—26.7%
——8——CVE-2025-23828—26.7%
——8——