Vulnerabilities exploitable today
366,901in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,296
- High9,357
- Medium5,292
- Low508
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-6244—16.6%
——5——CVE-2024-48929—16.6%
——5——CVE-2024-33993—16.6%
——5——CVE-2024-51571—16.6%
——5——CVE-2026-00396.5 MED16.6%
——5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.39dCVE-2026-1826—16.6%
——5——CVE-2026-1809—16.6%
——5——CVE-2022-49245—16.6%
——5——CVE-2026-72769—16.6%
——5n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution vulnerability in the VM expression engine. An authenticated user able to create or edit a workflow expression can abuse the engine's array-element access to obtain a reference to a host built-in and pollute its prototype in the main n8n process (a sandbox escape), leading to a denial of service. Both self-hosted and cloud instances running the VM expression engine are affected.19dCVE-2026-00406.5 MED16.6%
——5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.39dCVE-2022-50834—16.6%
——5——CVE-2022-47175—16.6%
——5——CVE-2022-49709—16.6%
——5——CVE-2026-00416.5 MED16.6%
——5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible UBSan failure due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.39dCVE-2023-40559—16.6%
——5——CVE-2023-40671—16.6%
——5——CVE-2026-00516.5 MED16.6%
——5In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.39dCVE-2022-49659—16.6%
——5——CVE-2025-24339—16.6%
——5——CVE-2024-56206—16.6%
——5——CVE-2024-34789—16.6%
——5——CVE-2026-35245—16.6%
——5——CVE-2021-3037—16.6%
——5——CVE-2017-18310—16.6%
——5——CVE-2022-49417—16.6%
——5——CVE-2026-4261—16.6%
——5——CVE-2025-41452—16.6%
——5——CVE-2022-49654—16.6%
——5——CVE-2018-11850—16.6%
——5——CVE-2018-11849—16.6%
——5——CVE-2026-37977—16.6%
——5——CVE-2026-49397—16.6%
——5——CVE-2024-51629—16.6%
——5——CVE-2024-4745—16.6%
——5——CVE-2024-51628—16.6%
——5——CVE-2022-49483—16.6%
——5——CVE-2018-11821—16.6%
——5——CVE-2018-11822—16.6%
——5——CVE-2022-49621—16.6%
——5——CVE-2023-52835—16.6%
——5——