Vulnerabilities exploitable today
368,008in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,687
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,385
- High9,639
- Medium5,593
- Low552
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-51718—18.9%
——6——CVE-2026-535617.4 HIG18.9%
——6An improper authentication vulnerability in HiveServer2 SAML bearer-token validation in Apache Hive 4.0.0 through 4.2.0 (and later unreleased branches) on deployments using HTTP transport with hive.server2.authentication=SAML allows an unauthenticated network attacker to authenticate as an arbitrary Hive user and obtain an authenticated HiveServer2 session via a forged Authorization: Bearer token sent to the /cliservice HTTP endpoint. Users are recommended to upgrade to 4.2.1 version that includes the fix for this issue.
Access / authorization required: No Hive credentials, SAML IdP login, or knowledge of the server signing secret is required. The attacker only needs network reachability to the HiveServer2 HTTP port (typically /cliservice), directly or through a reverse proxy such as Apache Knox that forwards unauthenticated requests to HS2. The instance must have SAML authentication enabled in HTTP mode. Deployments where Knox handles SSO and HiveServer2 uses LDAP/Kerberos (not native SAML mode) are not affected by this specific issue.6dCVE-2024-51713—18.9%
——6——CVE-2025-13148—18.9%
——6——CVE-2024-49308—18.9%
——6——CVE-2024-51716—18.9%
——6——CVE-2024-51710—18.9%
——6——CVE-2024-51717—18.9%
——6——CVE-2024-51691—18.9%
——6——CVE-2025-58079—18.9%
——6——CVE-2024-43241—18.9%
——6——CVE-2025-8268—18.9%
——6——CVE-2026-43660—18.9%
——6——CVE-2019-9445—18.9%
——6——CVE-2025-59449—18.9%
——6——CVE-2022-49404—18.9%
——6——CVE-2024-27263—18.9%
——6——CVE-2020-8702—18.9%
——6——CVE-2022-49171—18.9%
——6——CVE-2026-542624.3 MED18.9%
——6Wagtail is an open source content management system built on Django. In versions prior to 7.0.8, 7.3.3 and 7.4.2, a low-level user with the "Can submit translation" permission can create translations for any page, including those they do not have permissions for. This issue has been fixed in versions 7.0.8, 7.3.3, and 7.4.2.62dCVE-2026-55838—18.9%
——6——CVE-2023-31421—18.9%
——6——CVE-2026-0600—18.9%
——6——CVE-2026-123974.3 MED18.9%
——6The WP Job Portal WordPress plugin before 2.5.5 does not verify ownership when returning an employer's contact email for a given job, allowing authenticated users with a subscriber-level (self-registerable) account to read other employers' private account email addresses by enumerating job identifiers.51dCVE-2025-2045—18.9%
——6——CVE-2025-43532—18.9%
——6——CVE-2026-341704.3 MED18.9%
——6Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.471, the GithubApp api_url field is used as the base URL for server-side HTTP requests without allowlisting or private IP blocking, allowing an authenticated user to configure a GitHub App source that causes Coolify to request internal services or cloud metadata endpoints. This issue is reported as fixed in version 4.0.0-beta.471.57dCVE-2026-57293—18.9%
——6——CVE-2009-0935—18.9%
——6——CVE-2026-542594.3 MED18.9%
——6Wagtail is an open source content management system built on Django. In versions prior to 7.0.8, 7.3.3 and 7.4.2, the Documents and Images chooser's chosen endpoint incorrectly listed items for which the user has not been granted choose permission. A user with access to the Wagtail admin could see the filename and name and URLs of documents and images in those collections. The vulnerability is not exploitable by an ordinary site visitor without access to the Wagtail admin. This issue has been fixed in versions 7.0.8, 7.3.3, and 7.4.2.62dCVE-2026-577304.3 MED18.9%
——6Subscriber Broken Access Control in Flatsome <= 3.20.5 versions.62dCVE-2018-254158.2 HIG18.9%
——6AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the director parameter. Attackers can send GET requests to director.php with crafted SQL payloads in the director parameter to extract sensitive database information including usernames, database names, and version details.42dCVE-2025-24966—18.9%
——6——CVE-2025-0858—18.9%
——6——CVE-2017-202448.2 HIG18.9%
——6Wow Forms WordPress Plugin version 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to read arbitrary database information by exploiting an unescaped POST parameter. Attackers can inject SQL code through the 'mwpformid' parameter in requests to the admin-ajax.php endpoint with the 'send_mwp_form' action to extract sensitive database contents.43dCVE-2023-52365—18.9%
——6——CVE-2018-254198.2 HIG18.9%
——6AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the genre parameter. Attackers can send GET requests to genre.php with crafted SQL payloads in the genre parameter to extract sensitive database information including usernames, database names, and version details.42dCVE-2022-49457—18.9%
——6——CVE-2026-328194.3 MED18.9%
——6dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycle-CORE, the module handling core processing and framework rules, before and including version 25.07.3, a Standard user can enumerate other users' names and email addresses through `/users/search`, even though direct access to those user profiles is denied. This leaks internal staff addresses, full names, and existence of guest and external test accounts.43dCVE-2025-53135—18.9%
——6——