Vulnerabilities exploitable today
374,073in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645
Distribution · last window
- Critical2,342
- High8,460
- Medium6,416
- Low712
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-5223—25.5%
——8——CVE-2024-11747—25.5%
——8——CVE-2026-45091—25.5%
——8——CVE-2026-34343—25.5%
——8——CVE-2025-11072—25.5%
——8——CVE-2022-27545—25.5%
——8——CVE-2021-34983—25.5%
——8——CVE-2009-2490—25.5%
——8——CVE-2026-27491—25.5%
——8——CVE-2025-69332—25.5%
——8——CVE-2024-13828—25.5%
——8——CVE-2007-3717—25.5%
——8——CVE-2026-39584—25.5%
——8——CVE-2011-5054—25.5%
——8——CVE-2025-202044.8 MED25.5%
——8Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) guest portals could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface.
These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit these vulnerabilities by injecting malicious code into specific pages of the interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. To exploit these vulnerabilities, the attacker must have valid administrative credentials.56dCVE-2026-535819.0 CRI25.5%
——8OPNsense is a FreeBSD based firewall and routing platform. Prior to version 26.1.9 of opnsense/core and version 26.4_20 of BE/opnsense/core, a path traversal vulnerability in the NTP configuration module allows an attacker to overwrite arbitrary files on the system as the root user. By manipulating the GPS or PPS serial port parameter, an attacker with access to the NTP configuration can escape the intended directory and force the system to write user-controlled data to any file on the filesystem. Version 26.1.9 of opnsense/core and version 26.4_20 of BE/opnsense/core patch the issue.6dCVE-2026-251254.9 MED25.5%
——8October is a Content Management System (CMS) and web platform. Versions prior to 3.7.14 and 4.1.10 contain a server-side information disclosure vulnerability in the INI settings parser. Because PHP's parse_ini_string() function supports ${} syntax for environment variable interpolation, attackers with Editor access could inject patterns such as ${APP_KEY} or ${DB_PASSWORD} into CMS page settings fields, causing sensitive environment variables to be resolved, stored in the template, and returned to the attacker when the page was reopened. This could enable exfiltration of credentials and secrets (database passwords, AWS keys, application keys), potentially leading to further attacks such as database access or cookie forgery. The vulnerability is only relevant when cms.safe_mode is enabled, as direct PHP injection is already possible otherwise. This issue has been fixed in versions 3.7.14 and 4.1.10. If users are unable to immediately upgrade, they can workaround this issue by restricting Editor tool access to fully trusted administrators only, and ensuring database and cloud service credentials are not accessible from the web server's network.52dCVE-2026-46751—25.5%
——8——CVE-2026-73618.8 HIG25.5%
——8Use after free in iOS in Google Chrome prior to 147.0.7727.138 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)53dCVE-2024-22643—25.5%
——8——CVE-2023-38714—25.5%
——8——CVE-2025-7389—25.5%
——8——CVE-2023-21588—25.5%
——8——CVE-2019-25154—25.5%
——8——CVE-2015-4170—25.5%
——8——CVE-2018-20873—25.5%
——8——CVE-2002-0358—25.5%
——8——CVE-2021-459708.2 HIG25.5%
——8An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 before 05.35.25, 5.4 before 05.43.25, and 5.5 before 05.51.25. A vulnerability exists in the SMM (System Management Mode) branch that registers a SWSMI handler that does not sufficiently check or validate the allocated buffer pointer (the status code saved at the CommBuffer+4 location).35dCVE-2010-3511—25.5%
——8——CVE-2024-22124—25.5%
——8——CVE-2026-428287.8 HIG25.5%
——8Buffer over-read in Windows Projected File System Filter Driver allows an authorized attacker to elevate privileges locally.54dCVE-2017-1205—25.5%
——8——CVE-2026-676108.1 HIG25.5%
——8OpenEMR through 8.2.0 contains an improper authentication vulnerability in the OAuth2 dynamic client registration endpoint that allows unauthenticated attackers to register a malicious client with system-level FHIR scopes by supplying a self-generated RSA keypair via the jwks field. Once an administrator approves the registered client, attackers can use the client_credentials grant with a self-signed JWT assertion to obtain access tokens granting read access to all FHIR resources across all patients in the system.6dCVE-2026-109067.5 HIG25.5%
——8Use after free in WebAuthentication in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)55dCVE-2001-1189—25.5%
——8——CVE-2024-25676—25.5%
——8——CVE-2001-0415—25.5%
——8——CVE-2016-20082—25.5%
——8——CVE-2001-0848—25.5%
——8——CVE-2025-59947—25.5%
——8——