Vulnerabilities exploitable today
366,194in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,682
New KEV · 24H0
Exploit Today ≥ 701,626
Distribution · last window
- Critical2,415
- High10,330
- Medium5,246
- Low512
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-1454—15.1%
——5——CVE-2022-41851—15.1%
——5——CVE-2025-70342—15.1%
——5——CVE-2025-58353—15.1%
——5——CVE-2023-42240—15.1%
——5——CVE-2025-49246—15.1%
——5——CVE-2024-13667—15.1%
——5——CVE-2021-44794.0 MED15.1%
——5Dräger Atlan A350 versions 1.00 up to and including 1.01 contains an improper input handling vulnerability that allows attackers to cause a denial of service by sending specifically crafted non-Medibus-compliant data through the Medibus interface. Attackers can transmit malformed data to overload the internal processor, gradually disrupting device operation over several hours and causing loss of data transmission, delayed display of real-time curves, and deviation between displayed airway pressure values and screen curves.36dCVE-2023-42237—15.1%
——5——CVE-2021-47073—15.1%
——5——CVE-2016-20044—15.1%
——5——CVE-2025-70040—15.1%
——5——CVE-2026-72698—15.1%
——5——CVE-2026-736088.6 HIG15.1%
——5SiYuan's development branch (endpoint introduced by commit 9b8e8956f, not present in v3.7.3 or master, patched in v3.7.4) contains a missing-authorization vulnerability in the /api/av/getAttributeViewSearchTarget endpoint. The route is registered with CheckAuth only and performs no authorization checks (no CheckReadonly, no publish-access or encrypted-notebook gating). Given a database identifier taken from a published page and a keyword, an anonymous reader can query the endpoint to retrieve matching database row content, including rows that publish filters (FilterAttributeViewByPublishAccess) would otherwise withhold. No released stable version is affected.1dCVE-2024-6974—15.1%
——5——CVE-2026-733919.3 CRI15.1%
——5Unauthenticated SQL Injection in Total Donations <= 2.0.5 versions.8dCVE-2017-18329—15.1%
——5——CVE-2022-49083—15.0%
——5——CVE-2024-53070—15.1%
——5——CVE-2026-786796.5 MED15.1%
——5GitPython before 3.1.59 contains an arbitrary file read vulnerability in TagReference.create() where a positional reference parameter bypasses the unsafe option guard. Attackers can supply a reference value like --file=<path> to read arbitrary files, with contents returned in the annotated tag message.8hCVE-2025-23108—15.1%
——5——CVE-2024-26668—15.1%
——5——CVE-2024-13587—15.1%
——5——CVE-2024-566817.8 HIG15.1%
——5In the Linux kernel, the following vulnerability has been resolved:
crypto: bcm - add error check in the ahash_hmac_init function
The ahash_init functions may return fails. The ahash_hmac_init should
not return ok when ahash_init returns error. For an example, ahash_init
will return -ENOMEM when allocation memory is error.24dCVE-2025-30624—15.1%
——5——CVE-2024-13577—15.1%
——5——CVE-2021-3458—15.1%
——5——CVE-2024-360197.8 HIG15.1%
——5In the Linux kernel, the following vulnerability has been resolved:
regmap: maple: Fix cache corruption in regcache_maple_drop()
When keeping the upper end of a cache block entry, the entry[] array
must be indexed by the offset from the base register of the block,
i.e. max - mas.index.
The code was indexing entry[] by only the register address, leading
to an out-of-bounds access that copied some part of the kernel
memory over the cache contents.
This bug was not detected by the regmap KUnit test because it only
tests with a block of registers starting at 0, so mas.index == 0.24dCVE-2021-21595—15.1%
——5——CVE-2024-13581—15.1%
——5——CVE-2024-13455—15.1%
——5——CVE-2025-453146.1 MED15.1%
——5A cross-site scripting (XSS) vulnerability in the /Calendar endpoint of hortusfox-web v4.4 allows attackers to execute arbitrary JavaScript in the context of a user's browser via a crafted payload injected into the add function.54dCVE-2024-13573—15.1%
——5——CVE-2024-45366—15.1%
——5——CVE-2025-50938—15.1%
——5——CVE-2022-20731—15.1%
——5——CVE-2026-712779.1 CRI15.1%
——5rust-iot-platform's AuthToken request-guard implementation (api/src/main.rs) only checks whether the Authorization HTTP header is present, and never validates its value against any session, token store, or signature. Any request carrying an arbitrary non-empty Authorization header (e.g. ) satisfies the guard, granting access to every endpoint protected only by this request guard.1dCVE-2025-49248—15.1%
——5——CVE-2024-26677—15.1%
——5——CVE-2026-33854—15.1%
——5——