Vulnerabilities exploitable today
372,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,271
- High8,382
- Medium6,462
- Low636
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-13406—23.5%
——7——CVE-2024-42389—23.5%
——7——CVE-2023-36857—23.5%
——7——CVE-2024-12309—23.5%
——7——CVE-2025-42961—23.5%
——7——CVE-2024-13412—23.5%
——7——CVE-2025-43329—23.5%
——7——CVE-2026-861778.8 HIG23.5%
——7Pterodactyl Panel before 1.14.1 fails to validate action-specific permissions in scheduled task creation, allowing subusers with only schedule.update permission to execute arbitrary console commands. Attackers can create and immediately trigger scheduled tasks that run game-server console commands, control server power state, or create backups without proper authorization checks.3dCVE-2026-567907.3 HIG23.5%
——7CANBoat through 6.22, fixed in commit a5a22b7, contains an off-by-one global buffer overflow in the searchForPgn() function in analyzer/pgn.c that allows remote attackers to crash the application. Attackers can deliver a crafted NMEA-2000 message with an out-of-range PGN value over CAN bus or N2K-over-IP to trigger an out-of-bounds array access and denial of service.59dCVE-2024-6201—23.5%
——7——CVE-2026-21447—23.5%
——7——CVE-2024-41945—23.5%
——7——CVE-2025-2108—23.5%
——7——CVE-2025-49312—23.5%
——7——CVE-2025-67547—23.5%
——7——CVE-2026-8725—23.5%
——7——CVE-2024-20410—23.5%
——7——CVE-2026-189048.2 HIG23.5%
——7IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to obtain sensitive information and inject unauthorized messages due to a namespace collision between user identifiers.11dCVE-2020-4651—23.5%
——7——CVE-2026-8349—23.5%
——7——CVE-2019-0381—23.5%
——7——CVE-2026-44089—23.5%
——7——CVE-2025-58628—23.5%
——7——CVE-2025-50405—23.5%
——7——CVE-2024-11900—23.5%
——7——CVE-2024-53797—23.5%
——7——CVE-2019-4031—23.5%
——7——CVE-2026-2328—23.5%
——7——CVE-2026-22600—23.5%
——7——CVE-2024-47426—23.5%
——7——CVE-2026-7898—23.5%
——7——CVE-2025-30447—23.5%
——7——CVE-2024-52947—23.5%
——7——CVE-2026-32706—23.5%
——7——CVE-2024-53802—23.5%
——7——CVE-2026-42303—23.4%
——7——CVE-2026-812724.9 MED23.5%
——7Editor Broken Access Control in FluentPlayer Pro <= 1.3.2 versions.14dCVE-2024-55199—23.5%
——7——CVE-2025-10044—23.5%
——7——CVE-2018-9354—23.5%
——7——