PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / SwitchvoxvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / Switchvox
CVE Watch371,767 in full archive

Vulnerabilities exploitable today

371,767in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,703
New KEV · 24H0
Exploit Today ≥ 701,643

Distribution · last window

  • Critical
    2,222
  • High
    8,147
  • Medium
    6,175
  • Low
    607
Filters

Window

Severity

Flags

Vulnerabilities286,441–286,480 · 371,767
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-40793
22.8%
7
CVE-2026-710604.4 MED
22.8%
7Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Financial Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hyperion Financial Management accessible data. CVSS 3.1 Base Score 4.4 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N).21d
CVE-2024-6718
22.8%
7
CVE-2024-10551
22.8%
7
CVE-2024-20922
22.8%
7
CVE-2025-10486
22.8%
7
CVE-2025-46270
22.8%
7
CVE-2025-53854
22.8%
7
CVE-2021-20117
22.8%
7
CVE-2023-27611
22.8%
7
CVE-2023-47851
22.8%
7
CVE-2025-20383
22.8%
7
CVE-2002-1956
22.8%
7
CVE-2025-66573
22.8%
7
CVE-2023-36848
22.8%
7
CVE-2006-6680
22.8%
7
CVE-2024-50579
22.8%
7
CVE-2008-2389
22.8%
7
CVE-2022-0672
22.8%
7
CVE-2026-24771
22.8%
7
CVE-2016-3095
22.8%
7
CVE-2023-52124
22.8%
7
CVE-2023-40327
22.8%
7
CVE-2016-20071
22.8%
7
CVE-2023-30560
22.8%
7
CVE-2024-11502
22.8%
7
CVE-2024-50335
22.8%
7
CVE-2021-20118
22.8%
7
CVE-2006-4393
22.8%
7
CVE-2023-34025
22.8%
7
CVE-2017-13801
22.8%
7
CVE-2021-47726
22.8%
7
CVE-2023-28747
22.8%
7
CVE-2026-34271
22.8%
7
CVE-2007-4751
22.8%
7
CVE-2025-54495
22.8%
7
CVE-2015-7049
22.8%
7
CVE-2024-485399.8 CRI
22.8%
7Neye3C v4.5.2.0 was discovered to contain a hardcoded encryption key in the firmware update mechanism.68d
CVE-2015-7057
22.8%
7
CVE-2026-593358.7 HIG
22.8%
7Improper handling of case sensitivity (CWE-178) in the identity zone authorization check in the Identity Zone Endpoint in Cloud Foundry UAA allows a remote authenticated attacker holding only the zones.write authority to bypass the intended restriction that this authority does not grant access to the privileged uaa (system) identity zone, by referring to the zone identifier in a non-lowercase form (e.g. UAA) in the request path and body. The authorization layer performs a case-sensitive comparison against the system zone identifier, while the underlying MySQL persistence layer resolves identifiers case-insensitively under its default collation, so the request is authorized incorrectly and is then resolved against the real system zone record. This allows the attacker to overwrite the system zone's JWT signing key with attacker-controlled key material, forge JWTs claiming the admin client and administrator scopes, and fully compromise UAA and any Cloud Foundry deployment that trusts it. This issue only affects UAA deployments backed by MySQL using its default collation; PostgreSQL and HSQLDB backends are not affected.13d