PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-82078 — PaperCut / NG/MFvulnKEV agrega CVE-2026-81578 — PaperCut / NG/MFvulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-82078 — PaperCut / NG/MFvulnKEV agrega CVE-2026-81578 — PaperCut / NG/MFvulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)
CVE Watch367,284 in full archive

Vulnerabilities exploitable today

367,284in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,687
New KEV · 24H0
Exploit Today ≥ 701,629

Distribution · last window

  • Critical
    2,295
  • High
    9,357
  • Medium
    5,357
  • Low
    528
Filters

Window

Severity

Flags

Vulnerabilities301,761–301,800 · 367,284
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2021-29801
17.7%
5
CVE-2026-13202
17.7%
5A vulnerability in OpenText Opentext Directory Services allows Input Data Manipulation. This issue affects Opentext Directory Services: through 22.2.15d
CVE-2025-56514
17.7%
5
CVE-2026-646379.9 CRI
17.7%
5Improper privilege management in the XML-RPC API of Plesk before 18.0.80, allows an authenticated reseller to obtain an administrative session for the root user account.25d
CVE-2007-3635
17.7%
5
CVE-2024-41734
17.7%
5
CVE-2024-47310
17.7%
5
CVE-2026-44371
17.7%
5
CVE-2026-2079
17.7%
5
CVE-2026-16881
17.7%
5A code injection vulnerability exists in the LINE Android app prior to version 26.7.2. The profile rendering component does not adequately validate or sandbox externally supplied script content embedded in profile templates. As a result, an attacker who is able to place crafted content in a profile could cause unintended code to execute with the application's privileges when a victim views that profile. A server-side mitigation has been deployed that also protects existing Android clients that have not been updated to version 26.7.2.4d
CVE-2025-9815
17.7%
5
CVE-2025-54343
17.7%
5
CVE-2024-44025
17.7%
5
CVE-2026-10097
17.7%
5
CVE-2025-9191
17.7%
5
CVE-2017-18293
17.7%
5
CVE-2026-27496
17.7%
5
CVE-2024-32785
17.7%
5
CVE-2022-32925
17.7%
5
CVE-2025-11080
17.7%
5
CVE-2017-20015
17.7%
5
CVE-2024-58273
17.7%
5
CVE-2021-29741
17.7%
5
CVE-2026-35041
17.7%
5
CVE-2025-459396.5 MED
17.7%
5Apwide Golive 10.2.0 Jira plugin allows Server-Side Request Forgery (SSRF) via the test webhook function.59d
CVE-2026-464475.8 MED
17.7%
5OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info.41d
CVE-2026-2076
17.7%
5
CVE-2024-44027
17.7%
5
CVE-2025-43788
17.7%
5
CVE-2023-47791
17.6%
5
CVE-2022-32857
17.7%
5
CVE-2019-25462
17.7%
5
CVE-2017-202478.2 HIG
17.7%
5WordPress Plugin PICA Photo Gallery 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the aid parameter. Attackers can send GET requests with crafted SQL payloads in the aid parameter to extract sensitive database information including user credentials and table contents.42d
CVE-2024-27871
17.7%
5
CVE-2025-24112
17.7%
5
CVE-2025-54607
17.7%
5
CVE-2025-8487
17.7%
5
CVE-2025-49485
17.7%
5
CVE-2024-47172
17.7%
5
CVE-2019-25433
17.7%
5