PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCentervulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2026-64849 — MLflow / MLflowvulnKEV agrega CVE-2026-33824 — Microsoft / Internet Key Exchange (IKE) Service ExtensionsvulnKEV agrega CVE-2026-59310 — Broadcom / VMware vCenter
CVE Watch365,446 in full archive

Vulnerabilities exploitable today

365,446in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,682
New KEV · 24H0
Exploit Today ≥ 701,626

Distribution · last window

  • Critical
    2,309
  • High
    9,908
  • Medium
    4,857
  • Low
    455
Filters

Window

Severity

Flags

Vulnerabilities311,801–311,840 · 365,446
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-10868
14.6%
4
CVE-2025-58088
14.6%
4
CVE-2024-49898
14.6%
4
CVE-2026-0676
14.6%
4
CVE-2025-7285
14.6%
4
CVE-2026-49064
14.6%
4
CVE-2026-44563
14.6%
4
CVE-2025-53526
14.6%
4
CVE-2024-26747
14.6%
4
CVE-2026-0593
14.6%
4
CVE-2026-685807.5 HIG
14.6%
4FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES backends that fail to validate the FramesPerPacket parameter from RDP servers. Attackers can supply a malicious FramesPerPacket value causing allocation size wraparound, resulting in heap-based buffer overflow on ALSA or denial of service on all platforms.22d
CVE-2023-38329
14.6%
4
CVE-2026-99214.3 MED
14.6%
4Uninitialized Use in WebGL in Google Chrome on Android prior to 148.0.7778.216 allowed a remote attacker to leak cross-origin information via a crafted HTML page. (Chromium security severity: High)37d
CVE-2025-12366
14.6%
4
CVE-2024-46742
14.6%
4
CVE-2024-26902
14.6%
4
CVE-2025-22880
14.6%
4
CVE-2025-10837
14.6%
4
CVE-2026-182987.8 HIG
14.6%
4GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581.7d
CVE-2024-26774
14.6%
4
CVE-2026-138686.5 MED
14.6%
4Inappropriate implementation in Network in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)52d
CVE-2023-24509
14.6%
4
CVE-2025-71179
14.6%
4
CVE-2025-1627
14.6%
4
CVE-2024-31413
14.6%
4
CVE-2026-116728.3 HIG
14.6%
4Heap buffer overflow in GPU in Google Chrome on Android prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)35d
CVE-2024-49927
14.6%
4
CVE-2025-13283
14.6%
4
CVE-2026-99086.5 MED
14.6%
4Out of bounds read in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)37d
CVE-2025-46936
14.6%
4
CVE-2024-37535
14.6%
4
CVE-2025-46998
14.6%
4
CVE-2025-31389
14.6%
4
CVE-2025-22873
14.6%
4
CVE-2025-0763
14.6%
4
CVE-2025-58092
14.6%
4
CVE-2025-14719
14.6%
4
CVE-2025-58089
14.6%
4
CVE-2025-53377
14.6%
4
CVE-2026-7233
14.6%
4