Vulnerabilities exploitable today
366,836in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,301
- High9,466
- Medium5,342
- Low515
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-505585.9 MED16.2%
——5Penelope Shell Handler is a post-exploitation shell handler for authorized security testing. Prior to 0.20.0, the Unix download() implementation in penelope.py used tar.extractall(local_download_folder) on tar archives returned by remote sessions without validating member paths, allowing a malicious or compromised session to write files outside the intended download directory and potentially overwrite ~/.penelope/peneloperc. This issue is fixed in version 0.20.0.31dCVE-2026-111016.5 MED16.2%
——5Uninitialized Use in Dawn in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)38dCVE-2026-111416.5 MED16.2%
——5Uninitialized Use in Audio in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)38dCVE-2022-3977—16.2%
——5——CVE-2026-1206—16.2%
——5——CVE-2024-38465—16.2%
——5——CVE-2024-49881—16.2%
——5——CVE-2002-1696—16.2%
——5——CVE-2025-12944—16.2%
——5——CVE-2021-1081—16.2%
——5——CVE-2025-53486—16.2%
——5——CVE-2024-35973—16.2%
——5——CVE-2026-6041—16.2%
——5——CVE-2024-34557—16.2%
——5——CVE-2026-46464.3 MED16.2%
——5Mattermost versions 11.6.x <= 11.6.0, 11.5.x <= 11.5.3, 11.4.x <= 11.4.4, 10.11.x <= 10.11.14 fail to validate user-supplied input in API request handlers which allows an authenticated attacker to crash the plugin process via a crafted HTTP request to the PR details endpoint.. Mattermost Advisory ID: MMSA-2026-0063837dCVE-2026-713136.9 MED16.2%
——5rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.go relies on the configurable filename encoder to prevent remote filename data from becoming operating-system path syntax, so a local destination using Slash, None, Raw, or on Windows an encoding that preserves backslash can decode a standard-encoded fullwidth dot-dot component or native backslash form into an actual parent-directory component before filepath.Join resolves it outside the configured local root, allowing an attacker-controlled source object to create or overwrite files outside the selected destination directory as the rclone process. This issue is fixed in v1.75.0.23dCVE-2024-49877—16.2%
——5——CVE-2021-1083—16.2%
——5——CVE-2024-26855—16.2%
——5——CVE-2021-474017.1 HIG16.2%
——5In the Linux kernel, the following vulnerability has been resolved:
ipack: ipoctal: fix stack information leak
The tty driver name is used also after registering the driver and must
specifically not be allocated on the stack to avoid leaking information
to user space (or triggering an oops).
Drivers should not try to encode topology information in the tty device
name but this one snuck in through staging without anyone noticing and
another driver has since copied this malpractice.
Fixing the ABI is a separate issue, but this at least plugs the security
hole.25dCVE-2021-47641—16.2%
——5——CVE-2026-24039—16.2%
——5——CVE-2021-32845—16.2%
——5——CVE-2026-422185.3 MED16.2%
——5xrdp is an open source RDP server. Versions 0.10.6 and prior contain a timing side-channel vulnerability in the login interface. Due to a discrepancy in response processing times, a remote attacker can infer the existence of a username on the system, leading to unauthorized information disclosure via username enumeration. This issue has been fixed in version 0.10.6.1.38dCVE-2024-45781—16.2%
——5——CVE-2026-29143—16.2%
——5——CVE-2022-45869—16.2%
——5——CVE-2025-23723—16.2%
——5——CVE-2023-38512—16.2%
——5——CVE-2026-112686.5 MED16.2%
——5Uninitialized Use in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)38dCVE-2026-80206—16.2%
——5——CVE-2026-196085.3 MED16.2%
——5A flaw was found in the group policy provider of Keycloak authorization services, which is used to manage fine-grained access control to resources. The issue occurs when the system evaluates group-based policies using tokens that only contain group names rather than full paths. If two groups in different parts of the organization share the same name, a user in the unauthorized group can be mistaken for a member of the authorized group. This can allow a user to gain unauthorized access to protected resources they should not be able to reach.11dCVE-2021-1612—16.2%
——5——CVE-2026-110576.5 MED16.2%
——5Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)38dCVE-2026-110896.5 MED16.2%
——5Uninitialized Use in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)38dCVE-2025-23427—16.2%
——5——CVE-2026-110396.5 MED16.2%
——5Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)38dCVE-2025-23545—16.2%
——5——CVE-2024-49957—16.2%
——5——CVE-2025-23835—16.2%
——5——