PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / SwitchvoxvulnKEV agrega CVE-2026-83548 — SonicWall / SMA1000 AppliancesvulnKEV agrega CVE-2026-83549 — SonicWall / SMA1000 AppliancesvulnKEV agrega CVE-2026-82078 — PaperCut / NG/MFvulnKEV agrega CVE-2026-81578 — PaperCut / NG/MFvulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / SwitchvoxvulnKEV agrega CVE-2026-83548 — SonicWall / SMA1000 AppliancesvulnKEV agrega CVE-2026-83549 — SonicWall / SMA1000 AppliancesvulnKEV agrega CVE-2026-82078 — PaperCut / NG/MFvulnKEV agrega CVE-2026-81578 — PaperCut / NG/MFvulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET Professional
CVE Watch369,220 in full archive

Vulnerabilities exploitable today

369,220in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,695
New KEV · 24H0
Exploit Today ≥ 701,636

Distribution · last window

  • Critical
    2,169
  • High
    7,791
  • Medium
    5,692
  • Low
    539
Filters

Window

Severity

Flags

Vulnerabilities295,401–295,440 · 369,220
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-37460
19.8%
6
CVE-2025-52497
19.8%
6
CVE-2026-0139
19.8%
6
CVE-2023-50859
19.8%
6
CVE-2026-32023
19.8%
6
CVE-2026-44214
19.8%
6
CVE-2026-4276
19.8%
6
CVE-2025-57976
19.7%
6
CVE-2017-1378
19.7%
6
CVE-2024-13708
19.7%
6
CVE-2025-52817
19.7%
6
CVE-2020-3503
19.7%
6
CVE-2025-538318.2 HIG
19.7%
6DrawIO for ownCloud is an application for using DrawIO with the file storage, synchronization, and sharing application ownCloud Classic. In DrawIO for ownCloud prior to version 1.0.2, which corresponds to ownCloud 10 prior to version 10.15.3, attackers with access to the DrawIO app can leverage improper neutralization of input during web page generation to achieve stored XSS. Upgrade ownCloud 10 to version 10.15.3 or later or upgrade DrawIO for ownCloud 10 to version 1.0.2 or later to receive a patch.61d
CVE-2025-36625
19.7%
6
CVE-2025-66553
19.7%
6
CVE-2021-33436
19.7%
6
CVE-2025-10048
19.7%
6
CVE-2024-27158
19.7%
6
CVE-2022-42947
19.7%
6
CVE-2025-32228
19.7%
6
CVE-2023-53820
19.7%
6
CVE-2026-4739
19.7%
6
CVE-2024-21670
19.7%
6
CVE-2025-3809
19.7%
6
CVE-2022-50659
19.7%
6
CVE-2025-47585
19.7%
6
CVE-2017-1201
19.7%
6
CVE-2019-25713
19.7%
6
CVE-2017-18450
19.7%
6
CVE-2025-20385
19.7%
6
CVE-2026-1898
19.7%
6
CVE-2025-32056
19.7%
6
CVE-2023-33760
19.7%
6
CVE-2026-12822
19.7%
6
CVE-2026-580516.5 MED
19.7%
6libssh2 through 1.11.1 grows its publickey list with SSH2_REALLOC but does not zero-initialize new entries before parsing populates them, so a parse failure reaching the cleanup path leaves libssh2_publickey_list_free operating on an uninitialized entry. A malicious SSH server offering the publickey subsystem can use a malformed response to make cleanup free an uninitialized, attacker-influenceable attrs pointer in a connecting libssh2 client.67d
CVE-2026-1720
19.7%
6
CVE-2021-34577
19.7%
6
CVE-2023-51390
19.7%
6
CVE-2023-32240
19.7%
6
CVE-2025-59814
19.7%
6