PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-86060 — MikroTik / RouterOSvulnKEV agrega CVE-2026-67277 — MikroTik / RouterOSvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSS
CVE Watch372,337 in full archive

Vulnerabilities exploitable today

372,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644

Distribution · last window

  • Critical
    2,274
  • High
    8,391
  • Medium
    6,468
  • Low
    636
Filters

Window

Severity

Flags

Vulnerabilities284,361–284,400 · 372,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-0314
23.4%
7
CVE-2017-17176
23.4%
7
CVE-2026-198344.7 MED
23.4%
7A vulnerability was determined in Webkul Bagisto up to 2.4.4. Affected is an unknown function of the file /admin/customers/login-as-customer/ of the component Admin Customer Impersonation Feature. This manipulation of the argument ID causes authorization bypass. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. The vendor confirms: "The reported issues were already identified through our internal security assessment process prior to this notification and are being handled through our established internal security and development lifecycle. Some of these items have already been addressed, while the remaining items are planned for resolution in upcoming product releases."25d
CVE-2023-45004
23.4%
7
CVE-2025-43752
23.4%
7
CVE-2026-81818
23.4%
7Affected versions of Flowintel contain an authorization flaw in the administrative user-edit API. The existing authorization check correctly prevented an organization administrator from editing users in another organization, but it did not prevent them from editing a full administrator within their own organization. As a result, an org admin could modify that full administrator account, including changing its password. The upstream commit explicitly describes the issue as: “Org admin can change the password of a full admin in the same organization.” The fix adds a higher-privilege boundary check: if user_to_edit.is_admin(): return ... 403 so organization administrators can no longer modify full administrator accounts. Version impacted >=3.3.014d
CVE-2025-30954
23.4%
7
CVE-2026-45339
23.4%
7
CVE-2025-49325
23.4%
7
CVE-2024-12062
23.4%
7
CVE-2019-4140
23.4%
7
CVE-2018-4046
23.4%
7
CVE-2025-9708
23.4%
7
CVE-2018-4033
23.4%
7
CVE-2001-0378
23.4%
7
CVE-2026-302506.1 MED
23.4%
7Cross-site scripting vulnerability in the user documentation field in Beta Systems Software AG ANOW! Automate v.3.3.1.90 allows a remote attacker to execute arbitrary code2d
CVE-2024-33764
23.4%
7
CVE-2026-168488.8 HIG
23.4%
7IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of shell metacharacters in DHCP options.18d
CVE-2026-163809.1 CRI
23.4%
7Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.49d
CVE-2015-6369
23.4%
7
CVE-2023-37225
23.4%
7
CVE-2018-4034
23.4%
7
CVE-2024-2726
23.4%
7
CVE-2023-1544
23.4%
7
CVE-2024-28028
23.4%
7
CVE-2021-38119
23.4%
7
CVE-2024-0317
23.4%
7
CVE-2020-8352
23.4%
7
CVE-2025-53675
23.4%
7
CVE-2024-0318
23.4%
7
CVE-2022-40291
23.4%
7
CVE-2018-6265
23.4%
7
CVE-2024-25854
23.4%
7
CVE-2007-0668
23.4%
7
CVE-2024-30380
23.4%
7
CVE-2024-2445
23.4%
7
CVE-2026-792694.3 MED
23.4%
7Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)11d
CVE-2018-4047
23.4%
7
CVE-2024-21727
23.4%
7
CVE-2018-4041
23.4%
7