Vulnerabilities exploitable today
373,979in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,709
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,324
- High8,430
- Medium6,377
- Low704
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2018-3612—25.0%
——8——CVE-2008-1796—25.0%
——8——CVE-2026-462449.1 CRI25.0%
——8In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_inner: Fix IPv6 inner_thoff desync
In nft_inner_parse_l2l3(), when processing inner IPv6 packets,
ipv6_find_hdr() correctly computes the transport header offset
traversing all extension headers, but the result is immediately
overwritten with nhoff + sizeof(_ip6h) (40 bytes), which only
accounts for the IPv6 base header. This creates a desync between
inner_thoff (wrong — points to extension header start) and l4proto
(correct — e.g., IPPROTO_TCP), enabling transport header forgery
and potential firewall bypass. This issue affects stable versions
from Linux 6.2.
For comparison, the normal (non-inner) IPv6 path correctly
preserves ipv6_find_hdr()'s result. Removing the incorrect overwrite
ensures that ipv6_find_hdr()'s calculated transport header offset is
preserved, thereby fixing the desynchronization.27dCVE-2024-31268—25.0%
——8——CVE-2026-487826.8 MED25.0%
——8Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.56.0 through 1.101.0, 2.0.0b1, and 2.0.0b2, the cloud-metadata blocklist could be bypassed by encoding the metadata IP in an IPv6 transition form that the previous fix, CVE-2026-46678, did not decode, exposing cloud IAM short-term credentials. The previous remediation decoded only IPv4-mapped IPv6, 6to4, and the NAT64 well-known prefix, so the metadata guarantee did not hold for the remaining transition forms: IPv4-compatible IPv6 (::a.b.c.d), the NAT64 RFC 8215 local-use prefix (64:ff9b:1::/48), operator-chosen NAT64 prefixes, and ISATAP. The IPv6 wrapper is then delivered to the underlying IPv4 metadata endpoint. This occurs when an application using Pydantic AI opts a URL into force_download='allow-local' (which disables the default block on private/internal IPs) and runs on a network that actually routes the affected IPv6 transition forms: NAT64-configured networks (IPv6-only or dual-stack-with-NAT64 deployments, including some Kubernetes setups) for the NAT64 variants, or networks with an ISATAP tunnel for ISATAP. A standard dual-stack cloud VM or container does not route these forms and is not affected in practice. The IPv4-compatible and Teredo variants are deprecated and addressed as defense-in-depth. This is an incomplete fix of GHSA-cqp8-fcvh-x7r3 / CVE-2026-46678 (itself a follow-up to CVE-2026-25580). This issue has been fixed in version 2.0.0b3.40dCVE-2026-49017—25.0%
——8In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-chunked PUT request body. The StreamingInput class repeatedly appends an empty buffer and re-reads, causing the proxy-server worker handling the request to become permanently unresponsive with increasing CPU and memory consumption. An authenticated attacker can systematically exhaust all proxy-server workers, resulting in denial of service. The defect was introduced in Swift 2.36.0.53dCVE-2025-56405—25.0%
——8——CVE-2023-52099—25.0%
——8——CVE-2025-26994—25.0%
——8——CVE-2026-453007.4 HIG25.0%
——8The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. Versions on the 2.x branch prior to 2.15.0 and the 3.x branch prior to 3.0.10 leak `Cookie` headers to cross-origin redirect targets. When following a redirect to a different origin, the `propagatedHeaders()` method in `Redirect30xInterceptor.java` strips `Authorization` and `Proxy-Authorization` headers but does not strip the `Cookie` header, causing session cookies and other sensitive cookie values to be sent to attacker-controlled servers. Versions 2.15.0 and 3.0.10 patch the issue.54dCVE-2025-57320—25.0%
——8——CVE-2017-11171—25.0%
——8——CVE-2018-10497—25.0%
——8——CVE-2024-49548—25.0%
——8——CVE-2023-50311—25.0%
——8——CVE-2021-31408—25.0%
——8——CVE-2020-8676—25.0%
——8——CVE-2023-2784—25.0%
——8——CVE-2022-40703—25.0%
——8——CVE-2025-26917—25.0%
——8——CVE-2025-43746.5 MED25.0%
——8A flaw was found in Quay. When an organization acts as a proxy cache, and a user or robot pulls an image that hasn't been mirrored yet, they are granted "Admin" permissions on the newly created repository.39dCVE-2025-29866—25.0%
——8——CVE-2024-10226—25.0%
——8——CVE-2020-12323—25.0%
——8——CVE-2012-4899—25.0%
——8——CVE-2016-7615—25.0%
——8——CVE-2024-3498—25.0%
——8——CVE-2024-31929—25.0%
——8——CVE-2024-31363—25.0%
——8——CVE-2026-592226.5 MED25.0%
——8Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 before 0.10.0, GET /api/v1/channels//members returned full UserModelResponse objects for channel members, including settings.ui.toolServers[].key and webhook configuration, allowing a normal channel participant to retrieve other users’ sensitive settings. This issue is fixed in version 0.10.0.67dCVE-2017-11672—25.0%
——8——CVE-2020-3416—25.0%
——8——CVE-2020-5983—25.0%
——8——CVE-2025-49969—25.0%
——8——CVE-2024-48877—25.0%
——8——CVE-2025-49402—25.0%
——8——CVE-2024-20303—25.0%
——8——CVE-2023-25859—25.0%
——8——CVE-2026-703077.0 HIG25.0%
——8Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.30dCVE-2025-57805—25.0%
——8——