Vulnerabilities exploitable today
373,979in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,709
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,324
- High8,430
- Medium6,377
- Low704
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-47182—25.1%
——8——CVE-2026-897298.8 HIG25.1%
——8In the Linux kernel, the following vulnerability has been resolved:
HID: sensor-hub: Fix out-of-bounds write in sensor_hub_get_feature
sensor_hub_get_feature() clamps its return value to the caller's buffer
size, but the copy loop still copies field->report_size / 8 bytes for
each report value. A malicious HID descriptor can advertise a large
feature field size while an IIO caller supplies a small stack buffer,
such as a single s32, causing an out-of-bounds write.
HID core stores parsed report values in __s32 slots and clamps extracted
values to 32 bits. Reject feature fields that require more than one slot
per value, guard the total byte count calculation, and clamp each
per-value copy to the remaining caller buffer.22hCVE-2026-656737.8 HIG25.1%
——8Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync allows an authorized attacker to elevate privileges locally.29dCVE-2021-47961—25.1%
——8——CVE-2024-2911—25.1%
——8——CVE-2025-47575—25.1%
——8——CVE-2026-86194—25.1%
——8Grav Form Plugin before 9.1.22 fails to verify page authorization when resolving forms by name across pages, allowing anonymous visitors to execute form actions defined on login-restricted or unpublished pages. Attackers can POST to any public page with a restricted form's name to trigger save, upload, email, or call actions without authentication.7dCVE-2024-56089—25.1%
——8——CVE-2026-44476—25.1%
——8——CVE-2026-29774—25.1%
——8——CVE-2026-42087—25.1%
——8——CVE-2018-4379—25.1%
——8——CVE-2016-5454—25.1%
——8——CVE-2006-1285—25.1%
——8——CVE-2026-287407.1 HIG25.1%
——8Gitea versions up to and including 1.26.2 allow Git LFS object reuse to authorize private source objects for users who have repository access but lack Code-unit access.70dCVE-2026-754198.8 HIG25.1%
——8go-wind-cms (GoWind) before 1.0.0 has a missing authorization vulnerability. The NewAuthorizer() function in app/admin/service/internal/data/data.go and app/app/service/internal/data/data.go returns a no-op authorization engine (noop.State{}), so the authz middleware always allows requests. Any authenticated user (regardless of role or tenant) can invoke administrative APIs such as deleting users, resetting passwords, and creating tenants.14dCVE-2026-33346—25.1%
——8——CVE-2026-6578—25.1%
——8——CVE-2020-1803—25.1%
——8——CVE-2026-789606.5 MED25.1%
——8Information leak in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted Chrome extension. (Chromium security severity: Medium)15dCVE-2025-22304—25.1%
——8——CVE-2026-737528.8 HIG25.1%
——8An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.11dCVE-2026-704284.3 MED25.1%
——8Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file parameter names, allowing attackers with Item/Configure and Item/Build permission to write files to arbitrary locations on the controller file system.7dCVE-2026-89616.5 MED25.1%
——8Spoofing issue in the Form Autofill component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.54dCVE-2023-25834—25.1%
——8——CVE-2024-46081—25.1%
——8——CVE-2009-1601—25.1%
——8——CVE-2017-6666—25.1%
——8——CVE-2024-10187—25.1%
——8——CVE-2017-1176—25.1%
——8——CVE-2026-240658.1 HIG25.1%
——8Waves Central for macOS versions 13.0.9 through 16.5.5 contain a local privilege escalation vulnerability in the privileged helper service. The helper validates connecting XPC clients using the client process identifier (PID) to verify code-signing identity. Because process identifiers can be reused, a local attacker can exploit a race condition between the time a connection request is made and the time the helper performs validation, causing the helper to trust an attacker-controlled process. This allows the attacker to invoke privileged operations, resulting in arbitrary code execution as root. The issue is fixed in version 16.6.2.54dCVE-2026-21621—25.1%
——8——CVE-2026-04134.5 MED25.1%
——8A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.54dCVE-2025-45847—25.1%
——8——CVE-2024-4011—25.1%
——8——CVE-2024-48039—25.1%
——8——CVE-2023-2646—25.1%
——8——CVE-2025-1504—25.1%
——8——CVE-2023-7019—25.1%
——8——CVE-2010-2539—25.1%
——8——