Vulnerabilities exploitable today
365,633in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,682
New KEV · 24H0
Exploit Today ≥ 701,626
Distribution · last window
- Critical2,365
- High10,107
- Medium5,002
- Low469
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-25805—14.8%
——4——CVE-2017-9635—14.8%
——4——CVE-2026-77134—14.8%
——4——CVE-2024-47734—14.8%
——4——CVE-2026-76609—14.8%
——4Joomla Extension - fabrikar.com - Unauthenticated modification of any comment in Fabrik < 4.7.2 - The onUpdateComment endpoint did not perform any access checks.3dCVE-2025-6071—14.8%
——4——CVE-2026-77141—14.8%
——4——CVE-2022-40679—14.8%
——4——CVE-2026-77143—14.8%
——4——CVE-2026-7428—14.8%
——4——CVE-2026-77142—14.8%
——4——CVE-2024-369099.3 CRI14.8%
——4In the Linux kernel, the following vulnerability has been resolved:
Drivers: hv: vmbus: Don't free ring buffers that couldn't be re-encrypted
In CoCo VMs it is possible for the untrusted host to cause
set_memory_encrypted() or set_memory_decrypted() to fail such that an
error is returned and the resulting memory is shared. Callers need to
take care to handle these errors to avoid returning decrypted (shared)
memory to the page allocator, which could lead to functional or security
issues.
The VMBus ring buffer code could free decrypted/shared pages if
set_memory_decrypted() fails. Check the decrypted field in the struct
vmbus_gpadl for the ring buffers to decide whether to free the memory.23dCVE-2026-53523—14.8%
——4——CVE-2025-10320—14.8%
——4——CVE-2024-20740—14.8%
——4——CVE-2025-58460—14.8%
——4——CVE-2026-772206.5 MED14.8%
——4PDFio before 1.6.5 contains a dangling pointer vulnerability in the dictionary string-formatting function that stores a pointer to a stack-local buffer in the document dictionary without copying the string value. In multi-threaded or pooled-request environments, attackers or concurrent users can trigger stack memory reuse across requests, causing cross-tenant document content corruption by silently overwriting one caller's dictionary string values with another caller's data.3dCVE-2025-24744—14.8%
——4——CVE-2026-17596—14.8%
——4Nexus Repository 3 was found to be vulnerable to stored cross-site scripting (XSS). A user with the nexus:blobstores:create or nexus:blobstores:update permission could set a blob store name containing malicious script content, which would later execute in the browser of another user viewing system health-check status. This issue has been fixed in version 3.95.0.20dCVE-2024-20744—14.8%
——4——CVE-2025-8881—14.8%
——4——CVE-2025-41003—14.8%
——4——CVE-2026-42429—14.8%
——4——CVE-2021-22907—14.8%
——4——CVE-2024-37457—14.8%
——4——CVE-2025-54478—14.8%
——4——CVE-2024-32618—14.8%
——4——CVE-2023-45317—14.8%
——4——CVE-2018-3689—14.8%
——4——CVE-2025-41117—14.8%
——4——CVE-2024-44944—14.8%
——4——CVE-2026-37598—14.8%
——4——CVE-2026-33549—14.8%
——4——CVE-2025-40978—14.8%
——4——CVE-2026-5254—14.8%
——4——CVE-2026-74566.5 MED14.8%
——4The Udimi Tools plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `ajax_disconnect()` function in all versions up to, and including, 3.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete the plugin's six configuration options — including the API key, connected Udimi user email, and tracking-script payload — effectively disconnecting the site from the configured Udimi account. The companion `ajax_connect()` handler is missing the same checks, allowing the same low-privilege attackers to overwrite those options with an attacker-supplied API key.15dCVE-2026-26933—14.8%
——4——CVE-2026-562935.4 MED14.8%
——4Capgo before 12.128.2 contains an authorization flaw in transfer_app() that fails to update deploy_history.owner_org when transferring applications between organizations. Attackers can exploit this omission to retain unauthorized access to deployment history records in the source organization or cause the destination organization to lose access to transferred application deployment records.50dCVE-2024-32619—14.8%
——4——CVE-2025-31196—14.8%
——4——