Vulnerabilities exploitable today
372,967in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,231
- High8,251
- Medium6,234
- Low615
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-7754—24.0%
——7——CVE-2023-3428—24.0%
——7——CVE-2026-65758—24.0%
——7Joomla Extension - tassos.gr - Sensitive data exposure in Convert Forms extension 2.5.0-5.2.2 - The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.51dCVE-2025-11638—24.0%
——7——CVE-2026-27849—24.0%
——7——CVE-2025-60374—24.0%
——7——CVE-2007-6046—24.0%
——7——CVE-2026-184875.4 MED24.0%
——7A flaw was found in Epiphany. An issue in how the browser reads web addresses allows attackers to fake the domain name shown in the address bar. If a user clicks a specially crafted link containing a colon (for example, [https://trusted.com:80@attacker.com/](https://trusted.com:80@attacker.com/)), the address bar and security menus will display the safe website (trusted.com) but it will actually load the attacker website (attacker.com) on the screen. This allows attackers to create convincing phishing pages to trick users into trusting a malicious site.15dCVE-2025-22385—24.0%
——7——CVE-2026-175619.8 CRI24.0%
——7Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software, Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM allows Code Injection.
This issue affects Logsign SIEM: before 6.4.115.17dCVE-2022-29583—24.0%
——7——CVE-2024-51552—24.0%
——7——CVE-2012-0081—24.0%
——7——CVE-2025-3391—24.0%
——7——CVE-2026-46554—24.0%
——7——CVE-2025-11042—24.0%
——7——CVE-2022-30694—24.0%
——7——CVE-2026-27939.8 CRI24.0%
——7Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 148, Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.59dCVE-2024-28126—24.0%
——7——CVE-2024-54447—24.0%
——7——CVE-2025-46115—24.0%
——7——CVE-2025-68270—24.0%
——7——CVE-2025-32306—24.0%
——7——CVE-2023-45700—24.0%
——7——CVE-2021-30972—24.0%
——7——CVE-2026-35656—24.0%
——7——CVE-2015-4822—24.0%
——7——CVE-2025-11741—24.0%
——7——CVE-2026-27929.8 CRI24.0%
——7Memory safety bugs present in Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.59dCVE-2024-37480—24.0%
——7——CVE-2023-28494—24.0%
——7——CVE-2019-4243—24.0%
——7——CVE-2020-36312—24.0%
——7——CVE-2025-39355—24.0%
——7——CVE-2023-26521—24.0%
——7——CVE-2021-47895—24.0%
——7——CVE-2012-5660—24.0%
——7——CVE-2026-6183—24.0%
——7——CVE-2020-25697—24.0%
——7——CVE-2024-43236—24.0%
——7——