PULSE
LIVE13signals / 24h
FEED
ransomdragonforce reclama a GB Group S.A · PL · Financial Servicesransomqilin reclama a D & J Beverage Service · US · Hospitalityransomakira reclama a CF Supply · Retail & E-Commerceransompayload reclama a Zara Investment Holding · ES · Financial Servicesransomailock reclama a DAISEN · JP · Technologyransomailock reclama a Yaomasa · JP · Not Foundransomthegentlemen reclama a Safeware · US · Technologyransomincransom reclama a clgroup · US · Professional Servicesransomblacknevas reclama a Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... · US · Technologyransomsilentransomgroup reclama a Riker Danzig Scherer Hyland & Perretti · Professional Servicesransomkairos reclama a Hightech Signs · US · Manufacturingransomsilentransomgroup reclama a Riker Danzig LLP · US · Professional Servicesransomincransom reclama a gamaus.com · US · Technologyransomblacknevas reclama a Westbrook Greenhouse Systems www.westbrooksystems.com serviced by an IT company Computer C... · US · Agriculture and Food Productionransomdragonforce reclama a GB Group S.A · PL · Financial Servicesransomqilin reclama a D & J Beverage Service · US · Hospitalityransomakira reclama a CF Supply · Retail & E-Commerceransompayload reclama a Zara Investment Holding · ES · Financial Servicesransomailock reclama a DAISEN · JP · Technologyransomailock reclama a Yaomasa · JP · Not Foundransomthegentlemen reclama a Safeware · US · Technologyransomincransom reclama a clgroup · US · Professional Servicesransomblacknevas reclama a Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... · US · Technologyransomsilentransomgroup reclama a Riker Danzig Scherer Hyland & Perretti · Professional Servicesransomkairos reclama a Hightech Signs · US · Manufacturingransomsilentransomgroup reclama a Riker Danzig LLP · US · Professional Servicesransomincransom reclama a gamaus.com · US · Technologyransomblacknevas reclama a Westbrook Greenhouse Systems www.westbrooksystems.com serviced by an IT company Computer C... · US · Agriculture and Food Production
CVE Watch358,955 in full archive

Vulnerabilities exploitable today

358,955in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,665
New KEV · 24H0
Exploit Today ≥ 701,607

Distribution · last window

  • Critical
    2,672
  • High
    11,518
  • Medium
    7,234
  • Low
    670
Filters

Window

Severity

Flags

Vulnerabilities320,281–320,320 · 358,955
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-53079
10.6%
3
CVE-2024-53050
10.6%
3
CVE-2022-50229
10.6%
3
CVE-2025-23817
10.6%
3
CVE-2025-23844
10.6%
3
CVE-2025-51044
10.6%
3
CVE-2024-0161
10.6%
3
CVE-2018-11958
10.6%
3
CVE-2026-92537.2 HIG
10.6%
3The WP Cost Estimation & Payment Forms Builder (E&P Forms) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'customerInfos' parameter in all versions up to, and including, 10.5.97 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.35d
CVE-2025-23842
10.6%
3
CVE-2021-34411
10.6%
3
CVE-2018-13885
10.6%
3
CVE-2024-1605
10.6%
3
CVE-2026-1680
10.6%
3
CVE-2024-7701
10.6%
3
CVE-2026-18324.3 MED
10.6%
3The ThriveDesk – Live Chat, AI Chatbot, Helpdesk & Knowledge Base plugin for WordPress is vulnerable to unauthorized cache deletion due to a missing capability check on the 'thrivedesk_clear_cache' AJAX action in all versions up to, and including, 2.1.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to clear the plugin's cache.31d
CVE-2025-58623
10.6%
3
CVE-2025-15345
10.6%
3
CVE-2025-58593
10.6%
3
CVE-2025-58620
10.6%
3
CVE-2025-58607
10.6%
3
CVE-2025-58612
10.6%
3
CVE-2024-1906
10.6%
3
CVE-2026-1754
10.6%
3
CVE-2026-24591
10.6%
3
CVE-2025-66680
10.6%
3
CVE-2025-23810
10.6%
3
CVE-2023-0201
10.6%
3
CVE-2026-28263
10.6%
3
CVE-2025-6478
10.6%
3
CVE-2025-23804
10.6%
3
CVE-2025-49433
10.6%
3
CVE-2022-20007
10.6%
3
CVE-2026-14506.1 MED
10.6%
3The rognone plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'mode' parameter in versions up to, and including, 0.6.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.22d
CVE-2021-34397
10.6%
3
CVE-2026-10530
10.6%
3
CVE-2023-41654
10.6%
3
CVE-2025-58787
10.6%
3
CVE-2024-1578
10.6%
3
CVE-2025-54680
10.6%
3