Vulnerabilities exploitable today
373,979in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,709
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,324
- High8,430
- Medium6,377
- Low704
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-49969—25.0%
——8——CVE-2020-3416—25.0%
——8——CVE-2024-48877—25.0%
——8——CVE-2026-592226.5 MED25.0%
——8Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 before 0.10.0, GET /api/v1/channels//members returned full UserModelResponse objects for channel members, including settings.ui.toolServers[].key and webhook configuration, allowing a normal channel participant to retrieve other users’ sensitive settings. This issue is fixed in version 0.10.0.67dCVE-2020-5983—25.0%
——8——CVE-2017-11672—25.0%
——8——CVE-2024-49548—25.0%
——8——CVE-2017-11171—25.0%
——8——CVE-2026-453007.4 HIG25.0%
——8The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. Versions on the 2.x branch prior to 2.15.0 and the 3.x branch prior to 3.0.10 leak `Cookie` headers to cross-origin redirect targets. When following a redirect to a different origin, the `propagatedHeaders()` method in `Redirect30xInterceptor.java` strips `Authorization` and `Proxy-Authorization` headers but does not strip the `Cookie` header, causing session cookies and other sensitive cookie values to be sent to attacker-controlled servers. Versions 2.15.0 and 3.0.10 patch the issue.54dCVE-2025-57320—25.0%
——8——CVE-2023-52099—25.0%
——8——CVE-2018-10497—25.0%
——8——CVE-2025-56405—25.0%
——8——CVE-2025-26994—25.0%
——8——CVE-2025-60118—25.0%
——8——CVE-2024-49546—25.0%
——8——CVE-2025-4282—25.0%
——8——CVE-2025-54474—25.0%
——8——CVE-2007-5023—25.0%
——8——CVE-2017-8266—25.0%
——8——CVE-2026-542777.5 HIG25.0%
——8AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, it is possible to bypass the max_line_size check in parts of an HTTP request in the C parser. If using the optimised C parser (the default in pre-built wheels), then an attacker may be able to send oversized lines through the HTTP parser and use an excessive amount of memory, potentially leading to DoS. This vulnerability is fixed in 3.14.1.77dCVE-2026-29067—25.0%
——8——CVE-2024-4087—25.0%
——8——CVE-2026-55732—25.0%
——8Out-of-bounds Read (CWE-125) in BACnet packet parsing (`bacdt_datetime_to_tod`) in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.18 on LINX-A64 allows an unauthenticated remote attacker to crash `linx_a64.exe` and ultimately reboot the device via a malformed BACnet TimeSynchronization or UTC-TimeSynchronization packet with an invalid month value. The same vulnerability affects multiple other Loytec products.50dCVE-2024-6282—25.0%
——8——CVE-2023-32587—25.0%
——8——CVE-2025-30155—25.0%
——8——CVE-2026-262377.5 HIG25.0%
——8A missing authorization vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to access unauthorized data or perform unauthorized actions.
We have already fixed the vulnerability in the following version:
QuMagie 2.9.0 and later54dCVE-2024-4273—25.0%
——8——CVE-2026-440687.6 HIG25.0%
——8Incomplete sanitization of extended attribute (EA) path components in Netatalk 2.1.0 through 4.4.2 allows a remote authenticated attacker to write to files outside the intended metadata namespace via crafted EA names.54dCVE-2025-11482—25.0%
——8——CVE-2016-1849—25.0%
——8——CVE-2007-4536—25.0%
——8——CVE-2026-367197.5 HIG25.0%
——8An information disclosure vulnerability in the /api/v1/user/info endpoint of AgentChat v2.3.0 allows unauthenticated attackers to obtain sensitive information, including SHA256 password hashes, via enumerating user IDs.54dCVE-2024-5628—25.0%
——8——CVE-2026-0399—25.0%
——8——CVE-2025-27109—25.0%
——8——CVE-2017-14610—25.0%
——8——CVE-2024-5327—25.0%
——8——CVE-2025-10987—25.0%
——8——