PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-76461 — Cisco / Secure Email GatewayvulnKEV agrega CVE-2026-84869 — ConnectWise / ScreenConnectvulnKEV agrega CVE-2026-42016 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-42018 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-85706 — GitLab / Community Edition and Enterprise EditionvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-central
CVE Watch374,073 in full archive

Vulnerabilities exploitable today

374,073in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,710
New KEV · 24H0
Exploit Today ≥ 701,645

Distribution · last window

  • Critical
    2,342
  • High
    8,460
  • Medium
    6,416
  • Low
    712
Filters

Window

Severity

Flags

Vulnerabilities278,001–278,040 · 374,073
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-5520
25.4%
8
CVE-2025-58160
25.4%
8
CVE-2024-51908
25.4%
8
CVE-2023-53910
25.4%
8
CVE-2025-57751
25.4%
8
CVE-2019-3652
25.4%
8
CVE-2026-4582
25.4%
8
CVE-2025-4152
25.4%
8
CVE-2024-11874
25.4%
8
CVE-2026-812695.3 MED
25.4%
8Missing Authorization vulnerability in Drupal Data field allows Forceful Browsing. This issue affects Data field versions: from 0.0.0 to 2.0.13.6d
CVE-2024-10718
25.4%
8
CVE-2025-49913
25.4%
8
CVE-2020-3836
25.4%
8
CVE-2025-4213
25.4%
8
CVE-2025-31547
25.4%
8
CVE-2026-703137.8 HIG
25.4%
8Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.32d
CVE-2021-1558
25.4%
8
CVE-2018-25123
25.4%
8
CVE-2024-11627
25.4%
8
CVE-2023-4604
25.4%
8
CVE-2018-4179
25.4%
8
CVE-2026-34354
25.4%
8
CVE-2024-49824
25.4%
8
CVE-2026-24287
25.4%
8
CVE-2021-0145
25.4%
8
CVE-2024-13056
25.4%
8
CVE-2024-39495
25.4%
8
CVE-2024-51859
25.4%
8
CVE-2026-33769
25.4%
8
CVE-2026-17106
25.4%
8The tar extraction routines in moby/go-archive (Unpack, UnpackLayer, Untar/UntarUncompressed, and the ApplyLayer helpers) do not confine filesystem operations to the destination directory. The extractor decides where each archive entry lands using lexical string checks and then performs the filesystem operation on a path that is resolved by the OS, so links introduced by the archive can be followed out of the destination directory. An attacker who controls the contents of an archive can create or overwrite files at arbitrary paths writable by the extracting process.18d
CVE-2022-41136
25.4%
8
CVE-2025-40897
25.4%
8
CVE-2010-0156
25.4%
8
CVE-2024-23503
25.4%
8
CVE-2017-0709
25.4%
8
CVE-2021-1557
25.4%
8
CVE-2024-1166
25.4%
8
CVE-2024-51880
25.4%
8
CVE-2024-27707
25.4%
8
CVE-2026-687967.8 HIG
25.4%
8Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.33d