Vulnerabilities exploitable today
373,010in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,709
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,220
- High8,128
- Medium6,188
- Low611
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-58413—24.3%
——7——CVE-2025-13495—24.3%
——7——CVE-2025-54741—24.3%
——7——CVE-2020-24612—24.3%
——7——CVE-2026-32149—24.3%
——7——CVE-2025-41090—24.3%
——7——CVE-2026-749057.1 HIG24.3%
——7SiYuan before v3.7.4 contains a server-side request forgery (SSRF) vulnerability in the isPrivateIP function in kernel/util/net.go, used by SSRFSafeDialer to enforce SSRF protection in SafeMode. The function only checks for loopback, link-local unicast, private, and unspecified addresses and does not recognize IPv6 transition addresses (NAT64 64:ff9b::/96, 6to4 2002::/16, Teredo 2001::/32) that embed private IPv4 destinations. When SafeMode is enabled, an authenticated attacker can bypass the SSRF guard via the network forward proxy, WebSocket proxy, or SSE proxy endpoints by supplying a URL whose hostname resolves to such a transition address, reaching internal services and cloud metadata endpoints (e.g., 169.254.169.254). Because the forward proxy returns the full response body, this is a full-read SSRF that can be used to steal instance credentials, reach internal services, and port-scan internal infrastructure.24dCVE-2020-8013—24.3%
——7——CVE-2025-39350—24.3%
——7——CVE-2026-35157—24.3%
——7——CVE-2026-44345—24.3%
——7——CVE-2023-44330—24.3%
——7——CVE-2023-31906—24.3%
——7——CVE-2025-8341—24.3%
——7——CVE-2024-6755—24.3%
——7——CVE-2023-7248—24.3%
——7——CVE-2025-39601—24.3%
——7——CVE-2023-6408—24.3%
——7——CVE-2010-4338—24.3%
——7——CVE-2024-9241—24.3%
——7——CVE-2025-14770—24.3%
——7——CVE-2025-3636—24.3%
——7——CVE-2026-40331—24.3%
——7Masa CMS is an open source content management system. In versions 7.2.0 through 7.2.9, 7.3.0 through 7.3.14, 7.4.0 through 7.4.9, and 7.5.0 through 7.5.2, the unauthenticated JSON API accepts an altTable parameter that is stored via the setAltTable() method without validation or sanitization. This value is injected directly into a SQL FROM clause within feedGateway.cfc. An unauthenticated attacker can pass an arbitrary subquery into the altTable parameter to read sensitive data from any table in the database in a single HTTP request, including administrative credentials and password reset tokens.
This issue has been fixed in versions 7.2.10, 7.3.15, 7.4.10, and 7.5.3. As a workaround, apply validation to the setAltTable function in core/mura/content/feed/feedBean.cfc to restrict input to simple alphanumeric table names, or disable the JSON API if it is not required.50dCVE-2026-46689—24.3%
——7Kanidm is an identity management platform. Prior to version 1.9.3, a single unauthenticated GET to any /scim/v1/... endpoint with a ?filter= query string of a few thousand nested parentheses (≈ 4–12 KB) drives the recursive-descent PEG parser past the worker thread's stack guard page. Rust responds to stack overflow with std::process::abort() — the entire kanidmd process exits. The parse runs inside axum's Query<ScimEntryGetQuery> extractor, before any handler body and therefore before any ACL check. This issue has been patched in version 1.9.3.51dCVE-2026-45323—24.3%
——7——CVE-2006-7037—24.3%
——7——CVE-2016-7625—24.3%
——7——CVE-2024-12126—24.3%
——7——CVE-2024-6240—24.3%
——7——CVE-2023-29586—24.3%
——7——CVE-2025-3113—24.3%
——7——CVE-2022-4662—24.3%
——7——CVE-2025-8030—24.3%
——7——CVE-2012-5635—24.3%
——7——CVE-2026-4476—24.3%
——7——CVE-2025-54745—24.3%
——7——CVE-2023-46195—24.3%
——7——CVE-2026-704217.2 HIG24.3%
——7Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Privilege Management vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.22dCVE-2025-8029—24.3%
——7——CVE-2008-5909—24.3%
——7——