Vulnerabilities exploitable today
372,926in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,229
- High8,251
- Medium6,231
- Low615
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2017-6726—23.9%
——7——CVE-2023-0737—23.9%
——7——CVE-2024-0911—23.9%
——7——CVE-2025-4988—23.9%
——7——CVE-2025-12601—23.9%
——7——CVE-2026-612938.1 HIG23.9%
——7Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Calculation Manager. Successful attacks of this vulnerability can result in takeover of Oracle Hyperion Calculation Manager. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).18dCVE-2025-66515—23.9%
——7——CVE-2023-24405—23.9%
——7——CVE-2008-4085—23.9%
——7——CVE-2025-14318—23.9%
——7——CVE-2025-36428—23.9%
——7——CVE-2023-28618—23.9%
——7——CVE-2023-44038—23.9%
——7——CVE-2024-29098—23.9%
——7——CVE-2025-4985—23.9%
——7——CVE-2020-9295—23.9%
——7——CVE-2022-46832—23.9%
——7——CVE-2025-67718—23.8%
——7——CVE-2024-11886—23.9%
——7——CVE-2026-98788.8 HIG23.9%
——7Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Critical)53dCVE-2023-28986—23.9%
——7——CVE-2024-55886—23.9%
——7——CVE-2024-8444—23.9%
——7——CVE-2024-13561—23.9%
——7——CVE-2025-62791—23.9%
——7——CVE-2025-26914—23.9%
——7——CVE-2007-3916—23.9%
——7——CVE-2026-56295—23.9%
——7——CVE-2022-29974—23.9%
——7——CVE-2025-4983—23.9%
——7——CVE-2025-4992—23.9%
——7——CVE-2025-4984—23.9%
——7——CVE-2019-19341—23.9%
——7——CVE-2005-1472—23.9%
——7——CVE-2025-12423—23.9%
——7——CVE-2023-6938—23.9%
——7——CVE-2024-38684—23.9%
——7——CVE-2026-770808.8 HIG23.9%
——7n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in the Snowflake node, which passes free-form Execute Query input, including client-side commands, directly to the Snowflake SDK without applying n8n's file-access restrictions. An authenticated user with usable Snowflake credentials can upload a local file from the n8n host or overwrite an existing file with a staged one.10dCVE-2025-51867—23.9%
——7——CVE-2025-33079—23.9%
——7——