Vulnerabilities exploitable today
372,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,705
New KEV · 24H0
Exploit Today ≥ 701,644
Distribution · last window
- Critical2,279
- High8,418
- Medium6,481
- Low636
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-23653—23.4%
——7——CVE-2024-323854.3 MED23.4%
——7An issue in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attacker to obtain sensitive information via a boardID and revisionID components56dCVE-2026-17593—23.4%
——7An account holding the nexus:settings:update permission in Nexus Repository 3 (or the equivalent nexus:settings permission in the legacy Nexus Repository 2) could submit arbitrary values as realm identifiers through an internal configuration API that did not validate them against the set of registered realms. Because unrecognized entries were persisted and re-evaluated on every realm load via a legacy code path, this could result in unintended code executing inside the Nexus Repository process, and in some cases a persistent authentication lockout that was not visible through the administrative UI.10dCVE-2024-10693—23.4%
——7——CVE-2025-13732—23.4%
——7——CVE-2011-4922—23.4%
——7——CVE-2023-25364—23.4%
——7——CVE-2023-31981—23.4%
——7——CVE-2023-25667—23.4%
——7——CVE-2025-7891—23.4%
——7——CVE-2024-23559—23.4%
——7——CVE-2024-33984—23.4%
——7——CVE-2024-33988—23.4%
——7——CVE-2018-20941—23.4%
——7——CVE-2025-23657—23.4%
——7——CVE-2024-4174—23.4%
——7——CVE-2025-39590—23.4%
——7——CVE-2024-50448—23.4%
——7——CVE-2019-20652—23.4%
——7——CVE-2025-23651—23.4%
——7——CVE-2023-0685—23.4%
——7——CVE-2016-6774—23.4%
——7——CVE-2025-23568—23.4%
——7——CVE-2024-47369—23.4%
——7——CVE-2019-2227—23.4%
——7——CVE-2023-22875—23.4%
——7——CVE-2023-0726—23.4%
——7——CVE-2026-610219.9 CRI23.4%
——7Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Sites. While the vulnerability is in Oracle WebCenter Sites, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Sites. CVSS 3.1 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).21dCVE-2025-23742—23.4%
——7——CVE-2025-23523—23.4%
——7——CVE-2023-5451—23.4%
——7——CVE-2023-0724—23.4%
——7——CVE-2026-1793—23.4%
——7——CVE-2003-0207—23.4%
——7——CVE-2024-23850—23.4%
——7——CVE-2023-48628—23.4%
——7——CVE-2025-23525—23.4%
——7——CVE-2019-6679—23.4%
——7——CVE-2026-21569—23.4%
——7——CVE-2020-29479—23.4%
——7——