Vulnerabilities exploitable today
374,209in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645
Distribution · last window
- Critical2,347
- High8,411
- Medium6,454
- Low715
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-13287—26.2%
——8——CVE-2024-43432—26.2%
——8——CVE-2025-34135—26.2%
——8——CVE-2024-12092—26.2%
——8——CVE-2017-14312—26.2%
——8——CVE-2023-525228.8 HIG26.2%
——8In the Linux kernel, the following vulnerability has been resolved:
net: fix possible store tearing in neigh_periodic_work()
While looking at a related syzbot report involving neigh_periodic_work(),
I found that I forgot to add an annotation when deleting an
RCU protected item from a list.
Readers use rcu_deference(*np), we need to use either
rcu_assign_pointer() or WRITE_ONCE() on writer side
to prevent store tearing.
I use rcu_assign_pointer() to have lockdep support,
this was the choice made in neigh_flush_dev().42dCVE-2026-906687.5 HIG26.2%
——8The webserver in UnrealIRCd 6.0.5 through 6.2.6 before 6.2.7 does not limit the number of HTTP request headers, which allows remote attackers to cause a denial of service (memory consumption and unresponsive server) via an HTTP request with an unlimited number of headers, if a websocket or JSON-RPC listener is enabled (disabled by default).1dCVE-2025-63548—26.2%
——8——CVE-2025-48881—26.2%
——8——CVE-2025-14443—26.2%
——8——CVE-2020-12748—26.2%
——8——CVE-2026-816247.5 HIG26.2%
——8Undertow is a flexible performant web server used in JBoss EAP and WildFly. A flaw was found in how Undertow handles WebSocket connections. Specifically, certain configuration limits like message buffer sizes and session timeouts cannot be adjusted and default to being unlimited. This allows a remote attacker to send large amounts of data or maintain connections indefinitely, potentially crashing the server by exhausting its memory or other resources.6dCVE-2025-11288—26.2%
——8——CVE-2024-57599—26.2%
——8——CVE-2026-274336.5 MED26.2%
——8Unauthenticated Broken Access Control in Motors <= 5.6.80 versions.75dCVE-2021-471838.8 HIG26.2%
——8In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Fix link down processing to address NULL pointer dereference
If an FC link down transition while PLOGIs are outstanding to fabric well
known addresses, outstanding ABTS requests may result in a NULL pointer
dereference. Driver unload requests may hang with repeated "2878" log
messages.
The Link down processing results in ABTS requests for outstanding ELS
requests. The Abort WQEs are sent for the ELSs before the driver had set
the link state to down. Thus the driver is sending the Abort with the
expectation that an ABTS will be sent on the wire. The Abort request is
stalled waiting for the link to come up. In some conditions the driver may
auto-complete the ELSs thus if the link does come up, the Abort completions
may reference an invalid structure.
Fix by ensuring that Abort set the flag to avoid link traffic if issued due
to conditions where the link failed.43dCVE-2025-48819—26.2%
——8——CVE-2026-491979.8 CRI26.2%
——8Web endpoints intended for the Acer Connect app improperly validate the HTTP Authorization header, failing to block requests when Base64 decoding fails.56dCVE-2026-521327.5 HIG26.2%
——8llama.cpp through commit 97f06e9, when started with the --reranking flag, allows remote attackers to cause a denial of service (std::bad_alloc and HTTP 500) via a negative top_n value in a POST request to /rerank.11dCVE-2026-0704—26.2%
——8——CVE-2025-47410—26.2%
——8——CVE-2022-27052—26.2%
——8——CVE-2024-11496—26.2%
——8——CVE-2023-41070—26.2%
——8——CVE-2026-857867.5 HIG26.2%
——8Improper handling of highly compressed data in Amazon ion-java before 1.12.1 might allow remote attackers to cause a denial of service via a crafted compressed Ion document that expands to an arbitrarily large size upon decompression due to insufficient coverage of the GZIP auto-decompression opt-out introduced for CVE-2026-75936.
To remediate this issue, users should upgrade to version 1.12.1.7dCVE-2023-37174—26.2%
——8——CVE-2013-4260—26.2%
——8——CVE-2026-516687.5 HIG26.2%
——8Incorrect access control in the setLanguageCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to modify language configuration via sending a crafted POST request to /cgi-bin/cstecgi.cgi.14dCVE-2025-46660—26.2%
——8——CVE-2026-520237.5 HIG26.2%
——8An issue in kamailio v.6.1.1 and before allows a remote attacker to cause a denial of service via the ims_registrar_pcscf module, specifically the pcscf_save_pending/save_pending path and security-agreement parsing in sec_agree.c:parse_sec_agree()3hCVE-2026-573926.5 MED26.2%
——8Missing Authorization vulnerability in Themefic Tourfic tourfic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Tourfic: from n/a through <= 2.22.5.64dCVE-2026-577176.5 MED26.2%
——8Unauthenticated Broken Access Control in Knit Pay <= 9.6.0.0 versions.54dCVE-2011-1031—26.2%
——8——CVE-2024-55864—26.2%
——8——CVE-2010-2056—26.2%
——8——CVE-2026-138978.8 HIG26.2%
——8Insufficient policy enforcement in Chromecast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)75dCVE-2026-517687.5 HIG26.2%
——8Incorrect access control in the setElinkQosConfig function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to modify privileged QoS policy on the master device via sending a crafted MQTT message to the cs_broker component.13dCVE-2024-12772—26.2%
——8——CVE-2022-4621—26.2%
——8——CVE-2026-574126.5 MED26.2%
——8Missing Authorization vulnerability in Codemenschen Gift Vouchers gift-voucher allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gift Vouchers: from n/a through <= 4.6.9.64d