Vulnerabilities exploitable today
372,403in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,280
- High8,398
- Medium6,460
- Low636
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-13510—23.6%
——7——CVE-2023-20526—23.6%
——7——CVE-2026-48032—23.5%
——7Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, IAM-role policy checks can be bypassed when the role trusts multiple OIDC providers. This issue has been patched in version 1.4.0.43dCVE-2026-147383.7 LOW23.6%
——7A security flaw has been discovered in exo-explore exo up to 1.0.71. Affected is the function _image_cache_key of the file src/exo/worker/engines/mlx/vision.py of the component Vision Feature Cache. The manipulation results in use of weak hash. It is possible to launch the attack remotely. A high complexity level is associated with this attack. The exploitability is told to be difficult. The exploit has been released to the public and may be used for attacks. The pull request to fix this issue awaits acceptance.67dCVE-2025-67919—23.6%
——7——CVE-2026-498409.1 CRI23.6%
——7FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.11.1, esl_recv_event() parses Content-Length with atol() and passes the result straight to malloc(len + 1) with no sign or magnitude check. A malicious or man-in-the-middle ESL peer can send a frame with a negative Content-Length to corrupt the heap of, or crash, any process linked against libesl, before the client has authenticated to that peer. This issue has been patched in version 1.11.1.51dCVE-2016-5938—23.6%
——7——CVE-2023-7320—23.6%
——7——CVE-2025-32019—23.6%
——7——CVE-2024-27674—23.6%
——7——CVE-2023-51368—23.6%
——7——CVE-2025-13260—23.6%
——7——CVE-2017-7138—23.6%
——7——CVE-2026-2154—23.6%
——7——CVE-2025-7864—23.6%
——7——CVE-2025-62236—23.6%
——7——CVE-2025-43764—23.6%
——7——CVE-2024-410387.8 HIG23.6%
——7In the Linux kernel, the following vulnerability has been resolved:
firmware: cs_dsp: Prevent buffer overrun when processing V2 alg headers
Check that all fields of a V2 algorithm header fit into the available
firmware data buffer.
The wmfw V2 format introduced variable-length strings in the algorithm
block header. This means the overall header length is variable, and the
position of most fields varies depending on the length of the string
fields. Each field must be checked to ensure that it does not overflow
the firmware data buffer.
As this ia bugfix patch, the fixes avoid making any significant change to
the existing code. This makes it easier to review and less likely to
introduce new bugs.38dCVE-2023-46200—23.6%
——7——CVE-2026-825884.3 MED23.6%
——7A vulnerability was identified in Open5GS up to 2.7.7. This issue affects some unknown processing of the file src/amf/namf-handler.c of the component Transfer Endpoint. Such manipulation leads to null pointer dereference. The attack can be launched remotely. Upgrading to version 2.8.0 is capable of addressing this issue. The name of the patch is abf8a836564b966b5141110fc25ed413c4f17522. Upgrading the affected component is advised.10dCVE-2020-274134.2 MED23.6%
——7An issue was discovered in Mahavitaran android application 7.50 and below, allows local attackers to read cleartext username and password while the user is logged into the application.65dCVE-2024-45271—23.6%
——7——CVE-2019-11097—23.5%
——7——CVE-2024-24101—23.6%
——7——CVE-2025-48133—23.6%
——7——CVE-2026-20142—23.6%
——7——CVE-2022-42538—23.6%
——7——CVE-2023-46810—23.6%
——7——CVE-2025-11843—23.6%
——7——CVE-2018-7822—23.6%
——7——CVE-2026-39079—23.6%
——7——CVE-2020-4352—23.6%
——7——CVE-2023-53900—23.6%
——7——CVE-2012-6689—23.6%
——7——CVE-2024-5531—23.6%
——7——CVE-2026-825904.3 MED23.6%
——7A weakness has been identified in Open5GS up to 2.7.7. The affected element is the function smf_nudm_sdm_handle_get of the file src/smf/nudm-handler.c of the component SMF. Executing a manipulation of the argument preemptCap can lead to reachable assertion. The attack may be launched remotely. Upgrading to version 2.8.0 is sufficient to fix this issue. This patch is called 4554405f29bffd7562abedbee63484825bd90cd5. You should upgrade the affected component.12dCVE-2026-825874.3 MED23.6%
——7A vulnerability was determined in Open5GS up to 2.7.7. This vulnerability affects the function amf_namf_comm_decode_ue_mm_context_list of the file src/amf/namf-handler.c of the component AMF. This manipulation of the argument ueContext.mmContextList[*].allowedNssai causes memory corruption. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.8.0 is able to resolve this issue. Patch name: abf8a836564b966b5141110fc25ed413c4f17522. It is recommended to upgrade the affected component.11dCVE-2026-773657.2 HIG23.6%
——7The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'a' (above_fold_images) parameter in all versions up to, and including, 4.2.10 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.14dCVE-2026-338287.8 HIG23.6%
——7Trust boundary violation in Windows Attestation allows an authorized attacker to elevate privileges locally.51dCVE-2024-24923—23.6%
——7——