Vulnerabilities exploitable today
363,254in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610
Distribution · last window
- Critical2,901
- High12,392
- Medium7,637
- Low722
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-50243—12.6%
——4——CVE-2026-112318.1 HIG12.6%
——4Inappropriate implementation in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via a malicious file. (Chromium security severity: Low)28dCVE-2023-54055—12.6%
——4——CVE-2023-42537—12.6%
——4——CVE-2026-476487.0 HIG12.6%
——4Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.28dCVE-2022-26724—12.6%
——4——CVE-2025-50012—12.6%
——4——CVE-2022-50809—12.6%
——4——CVE-2022-29957—12.6%
——4——CVE-2022-50830—12.6%
——4——CVE-2026-32416—12.6%
——4——CVE-2022-50730—12.6%
——4——CVE-2023-42536—12.6%
——4——CVE-2024-49807—12.6%
——4——CVE-2024-8595—12.6%
——4——CVE-2025-50026—12.6%
——4——CVE-2026-144259.6 CRI12.6%
——4Use after free in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)48dCVE-2025-21170—12.6%
——4——CVE-2022-50826—12.6%
——4——CVE-2025-59467—12.6%
——4——CVE-2023-53859—12.6%
——4——CVE-2024-500758.0 HIG12.6%
——4In the Linux kernel, the following vulnerability has been resolved:
xhci: tegra: fix checked USB2 port number
If USB virtualizatoin is enabled, USB2 ports are shared between all
Virtual Functions. The USB2 port number owned by an USB2 root hub in
a Virtual Function may be less than total USB2 phy number supported
by the Tegra XUSB controller.
Using total USB2 phy number as port number to check all PORTSC values
would cause invalid memory access.
[ 116.923438] Unable to handle kernel paging request at virtual address 006c622f7665642f
...
[ 117.213640] Call trace:
[ 117.216783] tegra_xusb_enter_elpg+0x23c/0x658
[ 117.222021] tegra_xusb_runtime_suspend+0x40/0x68
[ 117.227260] pm_generic_runtime_suspend+0x30/0x50
[ 117.232847] __rpm_callback+0x84/0x3c0
[ 117.237038] rpm_suspend+0x2dc/0x740
[ 117.241229] pm_runtime_work+0xa0/0xb8
[ 117.245769] process_scheduled_works+0x24c/0x478
[ 117.251007] worker_thread+0x23c/0x328
[ 117.255547] kthread+0x104/0x1b0
[ 117.259389] ret_from_fork+0x10/0x20
[ 117.263582] Code: 54000222 f9461ae8 f8747908 b4ffff48 (f9400100)16dCVE-2025-48314—12.6%
——4——CVE-2026-58865.3 MED12.6%
——4Out of bounds read in WebAudio in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)27dCVE-2025-48167—12.6%
——4——CVE-2026-396645.3 MED12.6%
——4Missing Authorization vulnerability in leadrebel Leadrebel leadrebel allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Leadrebel: from n/a through <= 1.0.2.27dCVE-2024-24706—12.6%
——4——CVE-2024-9826—12.6%
——4——CVE-2025-380037.8 HIG12.6%
——4In the Linux kernel, the following vulnerability has been resolved:
can: bcm: add missing rcu read protection for procfs content
When the procfs content is generated for a bcm_op which is in the process
to be removed the procfs output might show unreliable data (UAF).
As the removal of bcm_op's is already implemented with rcu handling this
patch adds the missing rcu_read_lock() and makes sure the list entries
are properly removed under rcu protection.21dCVE-2024-13484—12.6%
——4——CVE-2024-49793—12.6%
——4——CVE-2025-50015—12.6%
——4——CVE-2024-49339—12.6%
——4——CVE-2023-54058—12.6%
——4——CVE-2023-3078—12.6%
——4——CVE-2024-50252—12.6%
——4——CVE-2026-39396—12.6%
——4——CVE-2026-178396.5 MED12.6%
——4Inappropriate implementation in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)17dCVE-2026-40340—12.6%
——4——CVE-2024-50133—12.6%
——4——