Vulnerabilities exploitable today
363,980in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,673
New KEV · 24H0
Exploit Today ≥ 701,611
Distribution · last window
- Critical2,846
- High11,718
- Medium7,145
- Low670
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-597153.1 LOW13.1%
——4Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.16 before 0.10.0, the Socket.IO server is configured with always_connect=True. The ydoc:awareness:update and ydoc:document:leave Socket.IO handlers accepted collaborative-document events without requiring an authenticated user, allowing unauthorized manipulation of document collaboration state. This issue is fixed in version 0.10.0.43dCVE-2022-0883—13.1%
——4——CVE-2023-6542—13.1%
——4——CVE-2022-46826—13.1%
——4——CVE-2025-47932—13.1%
——4——CVE-2026-726697.6 HIG13.1%
——4The state that Kibana stores for an Observability Onboarding flow is not bound to the user who created the flow, and the routes that read and update that state do not verify ownership. An authenticated user who holds only generic read access to the space can therefore discover the onboarding flows of other users, read their onboarding state, and write arbitrary progress data into them. A tampered flow can also cause the owner's onboarding view to fail with a server error.8dCVE-2023-38420—13.1%
——4——CVE-2024-47906—13.1%
——4——CVE-2026-99318.3 HIG13.1%
——4Use after free in GPU in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)32dCVE-2023-28179—13.1%
——4——CVE-2023-50309—13.1%
——4——CVE-2025-47773—13.1%
——4——CVE-2026-625577.1 HIG13.1%
——4Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle HRMS (UK). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle HRMS (UK) accessible data as well as unauthorized update, insert or delete access to some of Oracle HRMS (UK) accessible data. CVSS 3.1 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).25dCVE-2021-47422—13.1%
——4——CVE-2026-164544.3 MED13.1%
——4In Eclipse hawkBit versions 1.0.3 and prior, a privilege escalation vulnerability (CWE-284 / CWE-862) has been identified in the Direct Device Integration (DDI) Controller.
This vulnerability allows an authenticated device to escalate its permissions and bypass the strict boundaries of its assigned updates. Under normal operation, a device should be restricted strictly to the specific firmware artifacts explicitly assigned to it. However, this flaw enables any authenticated device to bypass this restriction and download any firmware artifact within the same tenant.
This is not an authentication bypass; the requesting device must possess valid credentials for its respective tenant. Instead, the issue stems from a flaw in object-level authorization validation.
A related, lower-severity helper issue exists in the listing software modules artifacts metadata endpoint. This endpoint does not enforce assignment checks, enabling an authenticated device to list and enumerate available firmware artifacts, which can facilitate targeted exfiltration using the main download authorization bypass.10dCVE-2024-51686—13.1%
——4——CVE-2026-99488.3 HIG13.1%
——4Use after free in Views in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)32dCVE-2025-48065—13.1%
——4——CVE-2021-47428—13.1%
——4——CVE-2024-36021—13.1%
——4——CVE-2023-28190—13.1%
——4——CVE-2021-47424—13.1%
——4——CVE-2024-47117—13.1%
——4——CVE-2023-51354—13.1%
——4——CVE-2024-22236—13.1%
——4——CVE-2023-52877—13.1%
——4——CVE-2026-144008.3 HIG13.1%
——4Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)50dCVE-2025-54562—13.1%
——4——CVE-2022-48844—13.1%
——4——CVE-2026-255665.4 MED13.1%
——4WeKan versions prior to 8.19 contain an authorization vulnerability in card move logic. A user can specify a destination board/list/swimlane without adequate authorization checks for the destination and without validating that destination objects belong to the destination board, potentially enabling unauthorized cross-board moves.39dCVE-2026-0715—13.1%
——4——CVE-2024-38390—13.1%
——4——CVE-2024-13252—13.1%
——4——CVE-2026-44183—13.1%
——4——CVE-2026-44581—13.1%
——4——CVE-2021-39636—13.1%
——4——CVE-2026-98778.3 HIG13.1%
——4Use after free in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)32dCVE-2026-12685—13.1%
——4——CVE-2025-12175—13.1%
——4——CVE-2026-12464—13.1%
——4——