PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-central
CVE Watch374,209 in full archive

Vulnerabilities exploitable today

374,209in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645

Distribution · last window

  • Critical
    2,347
  • High
    8,428
  • Medium
    6,470
  • Low
    715
Filters

Window

Severity

Flags

Vulnerabilities273,721–273,760 · 374,209
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-68997
26.6%
8
CVE-2023-45844
26.6%
8
CVE-2026-448828.1 HIG
26.6%
8Portainer Community Edition is a lightweight service delivery platform for containerized applications that can be used to manage Docker, Swarm, Kubernetes and ACI environments. From 2.33.0 to before 2.33., Portainer proxies requests to Kubernetes clusters through a middleware layer (kubeClientMiddleware) that validates the requesting user's token before forwarding traffic to the cluster. When security.RetrieveTokenData returned an error, the middleware wrote an HTTP 403 response but was missing a return statement — execution continued into the handler with a nil tokenData value. The Kubernetes endpoints sit behind Portainer's outer AuthenticatedAccess bouncer, so an attacker requires a valid Portainer session. However, a user whose secondary token validation fails in kubeClientMiddleware — for example a user without permission to access a given Kubernetes endpoint — would have their request forwarded to the cluster anyway, bypassing the authorization check. The same defect was present in both the CE and EE codebases. This vulnerability is fixed in 2.33.8.57d
CVE-2024-34113
26.6%
8
CVE-2025-10594
26.6%
8
CVE-2025-10790
26.6%
8
CVE-2008-7256
26.6%
8
CVE-2007-4492
26.6%
8
CVE-2016-1760
26.6%
8
CVE-2017-7836
26.6%
8
CVE-2022-42846
26.6%
8
CVE-2025-10626
26.6%
8
CVE-2018-17491
26.6%
8
CVE-2024-7941
26.6%
8
CVE-2024-5811
26.6%
8
CVE-2026-31245
26.6%
8
CVE-2026-1577
26.6%
8
CVE-2023-4042
26.6%
8
CVE-2024-2817
26.6%
8
CVE-2025-46405
26.6%
8
CVE-2025-11588
26.6%
8
CVE-2025-10613
26.6%
8
CVE-2025-10627
26.6%
8
CVE-2024-45894
26.6%
8
CVE-2025-46268
26.6%
8
CVE-2025-10780
26.6%
8
CVE-2019-5106
26.6%
8
CVE-2020-2297
26.6%
8
CVE-2026-629147.3 HIG
26.6%
8Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network.33d
CVE-2022-23763
26.6%
8
CVE-2023-40152
26.6%
8
CVE-2025-12297
26.6%
8
CVE-2024-36795
26.6%
8
CVE-2023-31919
26.6%
8
CVE-2024-1508
26.6%
8
CVE-2020-0501
26.6%
8
CVE-2024-51553
26.6%
8
CVE-2024-41865
26.6%
8
CVE-2025-11600
26.6%
8
CVE-2025-52585
26.6%
8