Vulnerabilities exploitable today
356,740in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,662
New KEV · 24H0
Exploit Today ≥ 701,605
Distribution · last window
- Critical2,544
- High10,606
- Medium6,750
- Low668
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-1506—91.5%
——27——CVE-2020-25901—91.5%
——27——CVE-2016-10146—91.5%
——27——CVE-2016-4390—91.5%
——27——CVE-2022-31325—91.5%
——27——CVE-2017-17451—91.5%
——27——CVE-2012-5351—91.5%
——27——CVE-2009-1422—91.5%
——27——CVE-2008-4058—91.5%
——27——CVE-2019-9232—91.5%
——27——CVE-2016-4389—91.5%
——27——CVE-2011-3834—91.5%
——27——CVE-2014-9002—91.5%
——27——CVE-2018-19239—91.5%
——27——CVE-2005-3818—91.5%
——27——CVE-2017-8056—91.5%
——27——CVE-2005-3172—91.5%
——27——CVE-2015-3250—91.5%
——27——CVE-2019-11068—91.5%
——27——CVE-2016-4388—91.5%
——27——CVE-2016-1031—91.5%
——27——CVE-2006-0450—91.5%
——27——CVE-2001-0390—91.5%
——27——CVE-2017-3629—91.5%
——27——CVE-2022-30220—91.5%
——27——CVE-2011-0252—91.5%
——27——CVE-2008-3103—91.5%
——27——CVE-2005-2804—91.5%
——27——CVE-2016-4212—91.5%
——27——CVE-2016-0988—91.5%
——27——CVE-2020-249149.8 CRI91.5%
——27A PHP object injection bug in profile.php in qcubed (all versions including 3.1.1) unserializes the untrusted data of the POST-variable "strProfileData" and allows an unauthenticated attacker to execute code via a crafted POST request.32dCVE-2009-0956—91.5%
——27——CVE-2008-0192—91.5%
——27——CVE-2005-1030—91.5%
——27——CVE-2010-0127—91.5%
——27——CVE-2006-4037—91.5%
——27——CVE-2016-5535—91.5%
——27——CVE-2001-0688—91.5%
——27——CVE-2010-4828—91.5%
——27——CVE-2020-8945—91.5%
——27——