Vulnerabilities exploitable today
359,691in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,665
New KEV · 24H0
Exploit Today ≥ 701,608
Distribution · last window
- Critical2,519
- High11,198
- Medium7,132
- Low649
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2021-29560—11.1%
——3——CVE-2025-11888—11.1%
——3——CVE-2025-42996—11.1%
——3——CVE-2026-45106—11.1%
——3——CVE-2024-56765—11.1%
——3——CVE-2024-8596—11.1%
——3——CVE-2025-12687—11.1%
——3——CVE-2017-18068—11.1%
——3——CVE-2025-30964—11.1%
——3——CVE-2024-43287—11.1%
——3——CVE-2024-45012—11.1%
——3——CVE-2026-12588—11.1%
——3An attacker with access to an HX 10.0.0 and previous versions, may send specially-crafted data to the HX console. The malicious detection would then trigger decompression of a large file that consumes an excessive amount of system resources thus causing a Denial of Service.30dCVE-2024-45015—11.1%
——3——CVE-2026-153244.4 MED11.1%
——3The SysBasics Customize My Account for WooCommerce – Live My Account Customizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'row_type' parameter in all versions up to, and including, 4.4.14 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with shop manager-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.29dCVE-2022-50703—11.1%
——3——CVE-2025-14735—11.1%
——3——CVE-2023-6338—11.1%
——3——CVE-2022-0029—11.1%
——3——CVE-2017-18064—11.1%
——3——CVE-2025-11823—11.1%
——3——CVE-2024-8599—11.1%
——3——CVE-2025-64636—11.1%
——3——CVE-2022-41954—11.1%
——3——CVE-2026-577815.3 MED11.1%
——3Missing Authorization vulnerability in Sovlix MeetingHub meetinghub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MeetingHub: from n/a through <= 1.25.10.33dCVE-2024-9996—11.1%
——3——CVE-2024-7672—11.1%
——3——CVE-2024-7305—11.1%
——3——CVE-2026-59794—11.1%
——3——CVE-2025-15385—11.1%
——3——CVE-2026-6775—11.1%
——3——CVE-2024-20878—11.1%
——3——CVE-2021-34381—11.1%
——3——CVE-2022-48876—11.1%
——3——CVE-2026-97384.4 MED11.1%
——3The Print, PDF, Email by PrintFriendly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'content_position_css' parameter in all versions up to, and including, 5.5.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.33dCVE-2023-52902—11.1%
——3——CVE-2003-1226—11.1%
——3——CVE-2025-46732—11.1%
——3——CVE-2023-52918—11.1%
——3——CVE-2020-11148—11.1%
——3——CVE-2021-47490—11.1%
——3——