PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-central
CVE Watch374,209 in full archive

Vulnerabilities exploitable today

374,209in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645

Distribution · last window

  • Critical
    2,347
  • High
    8,411
  • Medium
    6,454
  • Low
    715
Filters

Window

Severity

Flags

Vulnerabilities275,401–275,440 · 374,209
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2022-509436.1 MED
26.1%
8Moodle LMS 4.0 contains a cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts by submitting payloads through the search parameter. Attackers can inject JavaScript code via the search field in course/search.php to execute arbitrary scripts in users' browsers and steal session cookies.52d
CVE-2026-1134
26.1%
8
CVE-2008-0718
26.1%
8
CVE-2025-8020
26.1%
8
CVE-2026-782629.8 CRI
26.1%
8Unauthenticated PHP Object Injection in WP Project Manager <= 4.0.6 versions.19d
CVE-2026-40401
26.1%
8
CVE-2025-10568
26.1%
8
CVE-2014-7494
26.1%
8
CVE-2014-7644
26.1%
8
CVE-2005-0387
26.1%
8
CVE-2025-57793
26.1%
8
CVE-2023-27495
26.1%
8
CVE-2024-3630
26.1%
8
CVE-2021-20649
26.1%
8
CVE-2019-4207
26.1%
8
CVE-2025-5543
26.1%
8
CVE-2024-30848
26.1%
8
CVE-2026-83898.8 HIG
26.1%
8JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 150.0.3.63d
CVE-2022-36277
26.1%
8
CVE-2026-874466.5 MED
26.1%
8Incomplete cleanup in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted Chrome extension. (Chromium security severity: Medium)5d
CVE-2017-9985
26.1%
8
CVE-2020-10702
26.1%
8
CVE-2026-24960
26.1%
8
CVE-2019-15878
26.1%
8
CVE-2001-1066
26.1%
8
CVE-2024-30556
26.1%
8
CVE-2022-43114.7 MED
26.1%
8 An insertion of sensitive information into log file vulnerability exists in PcVue versions 15 through 15.2.2. This could allow a user with access to the log files to discover connection strings of data sources configured for the DbConnect, which could include credentials. Successful exploitation of this vulnerability could allow other users unauthorized access to the underlying data sources. 68d
CVE-2025-3631
26.1%
8
CVE-2024-1888
26.1%
8
CVE-2026-874366.5 MED
26.1%
8Incomplete cleanup in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Medium)5d
CVE-2025-70981
26.1%
8
CVE-2024-40774
26.1%
8
CVE-2022-458847.0 HIG
26.1%
8An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related to dvb_register_device dynamically allocating fops.33d
CVE-2025-6667
26.1%
8
CVE-2024-30432
26.1%
8
CVE-2024-13662
26.1%
8
CVE-2020-35535
26.1%
8
CVE-2026-34305
26.1%
8
CVE-2023-4834
26.1%
8
CVE-2026-857036.5 MED
26.1%
8A flaw has been found in ramon-victor freegpt-webui up to 098db3dfeb41555c2ca9269df0f13e10ec1c35dc. Affected by this issue is the function getJailbreak of the file server/backend.py of the component Jailbreak Mode. Executing a manipulation can lead to allocation of resources. The attack can be executed remotely. The exploit has been published and may be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. This vulnerability only affects products that are no longer supported by the maintainer.4d