Vulnerabilities exploitable today
363,980in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,673
New KEV · 24H0
Exploit Today ≥ 701,611
Distribution · last window
- Critical2,856
- High11,759
- Medium7,145
- Low670
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-36026—13.1%
——4——CVE-2023-1637—13.1%
——4——CVE-2025-20022—13.1%
——4——CVE-2024-377734.8 MED13.1%
——4An HTML injection vulnerability in Sunbird DCIM dcTrack 9.1.2 allows attackers authenticated as administrators to inject arbitrary HTML code in an admin screen.48dCVE-2025-32100—13.1%
——4——CVE-2021-47413—13.1%
——4——CVE-2025-54966—13.1%
——4——CVE-2025-12680—13.1%
——4——CVE-2022-26837—13.1%
——4——CVE-2019-0114—13.1%
——4——CVE-2023-40129—13.1%
——4——CVE-2025-32885—13.1%
——4——CVE-2021-474315.5 MED13.1%
——4In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: fix gart.bo pin_count leak
gmc_v{9,10}_0_gart_disable() isn't called matched with
correspoding gart_enbale function in SRIOV case. This will
lead to gart.bo pin_count leak on driver unload.11dCVE-2024-439137.0 HIG13.1%
——4In the Linux kernel, the following vulnerability has been resolved:
nvme: apple: fix device reference counting
Drivers must call nvme_uninit_ctrl after a successful nvme_init_ctrl.
Split the allocation side out to make the error handling boundary easier
to navigate. The apple driver had been doing this wrong, leaking the
controller device memory on a tagset failure.18dCVE-2026-579805.4 MED13.1%
——4Authentication bypass using an alternate path or channel in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform tampering over a network.32dCVE-2021-47414—13.1%
——4——CVE-2026-604268.5 HIG13.1%
——4Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via LDAP to compromise Oracle Unified Directory. While the vulnerability is in Oracle Unified Directory, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Unified Directory accessible data as well as unauthorized update, insert or delete access to some of Oracle Unified Directory accessible data. CVSS 3.1 Base Score 8.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N).25dCVE-2021-47602—13.1%
——4——CVE-2025-30648—13.1%
——4——CVE-2026-2899—13.1%
——4——CVE-2025-68357—13.1%
——4——CVE-2025-218145.5 MED13.1%
——4In the Linux kernel, the following vulnerability has been resolved:
ptp: Ensure info->enable callback is always set
The ioctl and sysfs handlers unconditionally call the ->enable callback.
Not all drivers implement that callback, leading to NULL dereferences.
Example of affected drivers: ptp_s390.c, ptp_vclock.c and ptp_mock.c.
Instead use a dummy callback if no better was specified by the driver.39dCVE-2026-125154.3 MED13.1%
——4A flaw was found in Katello's of Red Hat Satellite. A content upload functionality where insufficient authorization checks in the ContentUploadsController allowed users with the edit_products permission to query content information for repositories outside the products they were authorized to manage. An authenticated attacker could exploit this issue to determine whether specific content exists within repositories that should otherwise be inaccessible. This issue does not allow unauthorized modification, import, or publication of content.17dCVE-2022-50169—13.1%
——4——CVE-2021-47426—13.1%
——4——CVE-2025-13215—13.1%
——4——CVE-2025-20202—13.1%
——4——CVE-2024-54300—13.1%
——4——CVE-2024-38624—13.1%
——4——CVE-2024-13247—13.1%
——4——CVE-2026-146084.3 MED13.1%
——4A security vulnerability has been detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. This vulnerability affects unknown code of the file /index.php?action=view_student of the component POST Handler. The manipulation of the argument ID leads to authorization bypass. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used.46dCVE-2022-48750—13.1%
——4——CVE-2019-10617—13.1%
——4——CVE-2025-5256—13.1%
——4——CVE-2026-704857.1 HIG13.1%
——4Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, Open WebUI checked whether a user-supplied URL destination was globally routable by applying ipaddress.is_global to the literal IPv6 address without examining IPv4 addresses embedded in transition encodings. On a deployment with a NAT64 gateway, any verified user could wrap an internal or cloud-metadata IPv4 address in the NAT64 well-known prefix, pass the filter, and receive the internal response body through RAG URL ingestion, URL-to-markdown conversion, or web-search content retrieval. This issue is fixed in 0.11.0.17dCVE-2026-24540—13.1%
——4——CVE-2025-53858—13.1%
——4——CVE-2025-56382—13.1%
——4——CVE-2026-22422—13.1%
——4——CVE-2021-32010—13.1%
——4——