Vulnerabilities exploitable today
359,428in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,665
New KEV · 24H0
Exploit Today ≥ 701,608
Distribution · last window
- Critical2,493
- High11,151
- Medium7,081
- Low649
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-57328—10.8%
——3——CVE-2022-48882—10.8%
——3——CVE-2025-59696—10.8%
——3——CVE-2026-27001—10.8%
——3——CVE-2024-50555—10.8%
——3——CVE-2021-47513—10.8%
——3——CVE-2025-7690—10.8%
——3——CVE-2026-24370—10.8%
——3——CVE-2026-21730—10.8%
——3——CVE-2026-42656—10.8%
——3——CVE-2022-48894—10.8%
——3——CVE-2022-48709—10.8%
——3——CVE-2026-30661—10.8%
——3——CVE-2024-56785—10.8%
——3——CVE-2025-13730—10.8%
——3——CVE-2025-15188—10.8%
——3——CVE-2024-2377—10.8%
——3——CVE-2025-21910—10.8%
——3——CVE-2025-14811—10.8%
——3——CVE-2022-35901—10.8%
——3——CVE-2026-56046—10.8%
——3——CVE-2025-24546—10.8%
——3——CVE-2022-48707—10.8%
——3——CVE-2024-10032—10.8%
——3——CVE-2021-47510—10.8%
——3——CVE-2022-35906—10.8%
——3——CVE-2025-21935—10.8%
——3——CVE-2026-8541—10.8%
——3——CVE-2023-49121—10.8%
——3——CVE-2025-13693—10.8%
——3——CVE-2025-22372—10.8%
——3——CVE-2022-50851—10.8%
——3——CVE-2026-48880—10.8%
——3——CVE-2026-348076.4 MED10.8%
——3Endian Firewall version 3.3.25 and prior allow stored cross-site scripting (XSS) via the remark parameter to /cgi-bin/incoming.cgi. An authenticated attacker can inject arbitrary JavaScript that is stored and executed when other users view the affected page.21dCVE-2024-0066—10.8%
——3——CVE-2026-573296.5 MED10.8%
——3Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions.44dCVE-2024-39155—10.8%
——3——CVE-2018-25261—10.8%
——3——CVE-2025-68222—10.8%
——3——CVE-2025-21854—10.8%
——3——