Vulnerabilities exploitable today
367,284in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,687
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,311
- High9,414
- Medium5,381
- Low529
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2020-12377—18.0%
——5——CVE-2026-48610—18.0%
——5——CVE-2020-24481—18.0%
——5——CVE-2026-41505—18.0%
——5——CVE-2026-23996—18.0%
——5——CVE-2026-43580—18.0%
——5——CVE-2026-586534.3 MED18.0%
——5PraisonAI before 0.1.7 fails to validate that project_id in issue create and update request bodies belongs to the URL workspace. An attacker can create issues referencing projects from other workspaces, causing cross-tenant data pollution in project statistics aggregation without workspace constraints.61dCVE-2026-25127—18.0%
——5——CVE-2012-5037—18.0%
——5——CVE-2023-5899—18.0%
——5——CVE-2026-394757.6 HIG18.0%
——5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Syed Balkhi User Feedback userfeedback-lite allows Blind SQL Injection.This issue affects User Feedback: from n/a through <= 1.10.1.39dCVE-2020-12384—18.0%
——5——CVE-2007-3721—18.0%
——5——CVE-2026-50639—18.0%
——5——CVE-2007-0832—18.0%
——5——CVE-2025-12269—18.0%
——5——CVE-2025-71310—18.0%
——5——CVE-2026-25088—18.0%
——5——CVE-2024-5210—18.0%
——5——CVE-2020-12380—18.0%
——5——CVE-2025-32139—18.0%
——5——CVE-2007-3723—18.0%
——5——CVE-2025-67562—18.0%
——5——CVE-2022-49248—18.0%
——5——CVE-2023-49775—18.0%
——5——CVE-2023-5626—18.0%
——5——CVE-2007-0833—18.0%
——5——CVE-2025-117313.1 LOW18.0%
——5A flaw was found in the exsltFuncResultComp() function of libxslt, which handles EXSLT <func:result> elements during stylesheet parsing. Due to improper type handling, the function may treat an XML document node as a regular XML element node, resulting in a type confusion. This can cause unexpected memory reads and potential crashes. While difficult to exploit, the flaw could lead to application instability or denial of service.8hCVE-2025-67560—18.0%
——5——CVE-2023-3006—18.0%
——5——CVE-2021-0394—18.0%
——5——CVE-2007-3722—18.0%
——5——CVE-2020-24462—18.0%
——5——CVE-2025-53108—18.0%
——5——CVE-2023-47806—18.0%
——5——CVE-2023-48772—18.0%
——5——CVE-2025-1284—18.0%
——5——CVE-2011-1603—18.0%
——5——CVE-2017-3741—18.0%
——5——CVE-2020-24453—18.0%
——5——