Vulnerabilities exploitable today
371,767in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,703
New KEV · 24H0
Exploit Today ≥ 701,643
Distribution · last window
- Critical2,217
- High8,135
- Medium6,162
- Low606
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2009-0141—22.9%
——7——CVE-2026-49108—22.9%
——7——CVE-2024-31395—22.9%
——7——CVE-2026-160935.4 MED22.9%
——7Keycloak provides a mechanism called Client Policies to enforce security requirements on clients, such as requiring them to use signed JWTs for authentication. A flaw was discovered where this enforcement can be bypassed. An attacker with valid client credentials can provide a fake, unsigned assertion header that tricks the system into thinking the policy requirements have been met. This allows the attacker to authenticate using simpler methods like a client secret even when the administrator has mandated more secure, signed assertions.32dCVE-2025-65900—22.9%
——7——CVE-2015-0601—22.9%
——7——CVE-2016-8224—22.9%
——7——CVE-2016-8222—22.9%
——7——CVE-2025-40659—22.9%
——7——CVE-2026-272469.3 CRI22.9%
——7Adobe Connect versions 2025.3, 12.10 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.14dCVE-2025-10234—22.9%
——7——CVE-2026-102077.5 HIG22.9%
——7The PickPlugins Question Answer plugin for WordPress is vulnerable to SQL Injection in versions up to and including 1.2.73. This is due to insufficient sanitization of user-supplied input via the 'id' GET parameter in the user profile template combined with the use of wp_unslash() which removes WordPress's magic quotes protection, followed by direct concatenation into a SQL query without proper escaping or prepared statements in the qa_user_profile_card() function. This makes it possible for unauthenticated attackers to append additional SQL queries into existing queries, which can be used to extract sensitive information from the database.44dCVE-2025-59968—22.9%
——7——CVE-2026-545096.5 MED22.9%
——7TREK is a collaborative travel planner. From 3.0.0 until 3.1.0, the GET /api/journeys/:id/share-link route in server/src/routes/journey.ts returns the result of getJourneyShareLink() from server/src/services/journeyShareService.ts without checking whether the authenticated requester can access the journey. Any ordinary authenticated user can enumerate sequential journey IDs and retrieve tokens from journey_share_tokens for another user's journey. The token grants unauthenticated access through GET /api/public/journey/:token to the shared journey's entries, captions, locations, moods, gallery photos, photo paths, and asset identifiers. This issue is fixed in version 3.1.0.20dCVE-2025-40658—22.9%
——7——CVE-2008-0163—22.9%
——7——CVE-2026-32272—22.9%
——7——CVE-2014-8180—22.9%
——7——CVE-2026-824638.1 HIG22.9%
——7pac4j-core before 6.5.6 contains an authentication bypass vulnerability in CheckProfileTypeAuthorizer that reverses the profile type validation logic. Attackers can authenticate through a weaker client and access resources requiring a stronger profile type by satisfying generic profile checks.8dCVE-2025-41014—22.9%
——7——CVE-2026-789067.5 HIG22.9%
——7Race condition in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)15dCVE-2023-25144—22.9%
——7——CVE-2026-1654—22.9%
——7——CVE-2020-4607—22.9%
——7——CVE-2026-3075—22.9%
——7——CVE-2026-160557.5 HIG22.9%
——7The Contest Gallery WordPress plugin before 30.0.7 does not route its front-end login through the standard WordPress authentication flow, issuing an authentication cookie directly after the password check, which bypasses installed brute-force-protection and two-factor-authentication Contest Gallery WordPress plugin before 30.0.7 and enables unlimited, unthrottled password guessing against any account (including administrators) up to full account takeover.15dCVE-2026-822736.5 MED22.9%
——7Mastra through 1.63.0 contains an authentication bypass vulnerability in the memory API thread ownership validation when mapUserToResourceId callback is omitted from configuration. Authenticated attackers can enumerate all threads via GET /api/memory/threads and read conversation history and metadata of other resource owners.13dCVE-2025-28076—22.9%
——7——CVE-2026-78071—22.9%
——7Joomla Extension - digital-peak.com - Authenticated, privileged stored XSS in DP Calendar 7.0.0 - 10.11.2 - Location title is rendered in data attribute without escaping leads to XSS, needs create permission in DPCalendar.13dCVE-2025-61647—22.9%
——7——CVE-2026-841429.8 CRI22.9%
——7Internally found bugs present in Thunderbird 154. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed in Firefox 155 and Thunderbird 155.7dCVE-2026-34024—22.9%
——7——CVE-2025-64347—22.9%
——7——CVE-2023-27114—22.9%
——7——CVE-2026-27384—22.9%
——7——CVE-2026-732656.5 MED22.9%
——7RustFS is a distributed object storage system built in Rust. RustFS authorizes explicit versionId reads in GetObject, CopyObject sources, and UploadPartCopy sources with s3:GetObject instead of s3:GetObjectVersion, allowing principals without historical-version permission to disclose known historical object content. This issue is fixed in version 1.0.0-beta.11.1dCVE-2026-118977.5 HIG22.9%
——7IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service, caused by sending a specially crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory resources.37dCVE-2024-0690—22.9%
——7——CVE-2025-6366—22.9%
——7——CVE-2024-7054—22.9%
——7——