Vulnerabilities exploitable today
369,690in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,695
New KEV · 24H0
Exploit Today ≥ 701,637
Distribution · last window
- Critical2,132
- High7,666
- Medium5,751
- Low559
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-453647.3 HIG21.7%
——7Better Auth is an authentication and authorization library for TypeScript. Prior to 1.4.17 and 1.5.0-beta.9, Better Auth's HTTP rate limiter keyed each request by the exact textual IP address it received in x-forwarded-for (or the configured IP-bearing header). IPv6 clients controlling a typical /64 allocation could rotate through 2^64 distinct source addresses without exhausting the per-address counter, defeating rate limiting on /sign-in/email, /sign-up/email, /forget-password, and every other path the limiter protects. The same bug allowed a single client to vary the textual encoding of one IPv6 address (uppercase, compression, IPv4-mapped, hex-encoded IPv4-in-IPv6) and produce multiple distinct keys. This vulnerability is fixed in 1.4.17 and 1.5.0-beta.9.49dCVE-2024-26600—21.7%
——7——CVE-2023-43082—21.7%
——7——CVE-2026-629997.5 HIG21.7%
——7Copier is a library and CLI app for rendering project templates. From 9.5.0 through 9.16.0, percent-encoded parent-directory segments or encoded path separators in a template URL can match a configured trusted repository prefix before an HTTP server or Git transport decodes the path, allowing unsafe template features from a repository outside the trusted prefix to run after user interaction. This issue is fixed in version 9.17.0.39dCVE-2026-52235.3 MED21.7%
——7Cargo incorrectly handled symlinks inside of crate tarballs downloaded from third-party registries, allowing a malicious crate to override the source code of another crate from the same registry. The severity of the vulnerability is **medium** for users of third-party registries. Users of crates.io are **not affected**, as crates.io forbids uploading crates containing any symlink.47dCVE-2008-5139—21.7%
——7——CVE-2022-44739—21.7%
——7——CVE-2023-47718—21.7%
——7——CVE-2026-41146—21.7%
——7——CVE-2024-0431—21.7%
——7——CVE-2020-5316—21.7%
——7——CVE-2025-66511—21.7%
——7——CVE-2025-5475—21.7%
——7——CVE-2026-42205—21.7%
——7——CVE-2025-26484—21.7%
——7——CVE-2024-140436.3 MED21.7%
——7A vulnerability was determined in Open5GS up to 2.7.1. This vulnerability affects the function mme_s6a_subscription_data_from_avp of the file src/mme/mme-fd-path.c of the component Diameter S6a Interface. Executing a manipulation of the argument msisdn_len can lead to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.7.2 is able to resolve this issue. This patch is called 7ea82cb87bb65c3694d8d7c7a5efed1c4d3c9304. Upgrading the affected component is recommended.27dCVE-2025-62889—21.7%
——7——CVE-2003-0603—21.7%
——7——CVE-2022-25807—21.7%
——7——CVE-2023-35127—21.7%
——7——CVE-2016-4652—21.7%
——7——CVE-2026-2597—21.7%
——7——CVE-2023-44153—21.7%
——7——CVE-2025-25105—21.7%
——7——CVE-2023-5691—21.7%
——7——CVE-2026-160338.5 HIG21.7%
——7A path traversal vulnerability in LXD allows an attacker to achieve arbitrary host file read or unconstrained file creation. When processing image metadata templates, LXD fails to properly sanitize or restrict template file paths from escaping the instance templates directory (specifically affecting virtual machine / QEMU driver execution paths). An attacker can exploit this flaw by providing a crafted image archive with malicious template directives containing path traversal sequences, causing LXD to access or write files outside the intended template directory on the host system.11dCVE-2024-33302—21.7%
——7——CVE-2017-202498.2 HIG21.7%
——7Apptha Slider Gallery 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the albid parameter. Attackers can send GET requests with crafted SQL payloads in the albid parameter to extract sensitive database information including user credentials and authentication hashes.49dCVE-2023-49763—21.7%
——7——CVE-2018-4448—21.7%
——7——CVE-2025-5699—21.7%
——7——CVE-2025-66306—21.7%
——7——CVE-2018-12223—21.7%
——7——CVE-2024-31874—21.7%
——7——CVE-2026-91005.9 MED21.7%
——7The MongoDB C Driver's legacy GridFS API accepts malformed file metadata from the database without adequate validation. Crafted documents in a GridFS collection may cause any application that reads those files via the legacy API to either crash (via a division-by-zero) or silently leak process memory contents (via an out-of-bounds read).47dCVE-2024-7543—21.7%
——7——CVE-2026-143514.3 MED21.7%
——7GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.8 before 19.0.5, 19.1 before 19.1.3, and 19.2 before 19.2.1 that under certain conditions could have allowed an unauthenticated user to view the title of a confidential issue through a publicly accessible merge request due to improper authorization checks.36dCVE-2024-269947.8 HIG21.7%
——7In the Linux kernel, the following vulnerability has been resolved:
speakup: Avoid crash on very long word
In case a console is set up really large and contains a really long word
(> 256 characters), we have to stop before the length of the word buffer.35dCVE-2025-53246—21.7%
——7——CVE-2025-53424—21.7%
——7——