Vulnerabilities exploitable today
356,780in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,662
New KEV · 24H0
Exploit Today ≥ 701,605
Distribution · last window
- Critical2,532
- High10,545
- Medium6,712
- Low670
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2006-1469—91.1%
——27——CVE-2020-21937—91.1%
——27——CVE-2012-2111—91.1%
——27——CVE-1999-0751—91.1%
——27——CVE-2010-3768—91.1%
——27——CVE-2017-6017—91.1%
——27——CVE-2014-1537—91.1%
——27——CVE-2012-3757—91.1%
——27——CVE-2016-2175—91.1%
——27——CVE-2015-0886—91.1%
——27——CVE-2018-1288—91.1%
——27——CVE-2012-4181—91.1%
——27——CVE-2010-2349—91.1%
——27——CVE-2017-18635—91.1%
——27——CVE-2019-7061—91.1%
——27——CVE-2025-9727—91.1%
——27——CVE-2024-1597—91.1%
——27——CVE-2012-3969—91.1%
——27——CVE-2016-5005—91.1%
——27——CVE-2020-13985—91.1%
——27——CVE-2015-8969—91.1%
——27——CVE-2010-3772—91.1%
——27——CVE-2011-3185—91.1%
——27——CVE-2008-5354—91.1%
——27——CVE-2006-1737—91.1%
——27——CVE-2004-1279—91.1%
——27——CVE-2006-2537—91.1%
——27——CVE-2014-5414—91.1%
——27——CVE-2009-2852—91.1%
——27——CVE-2016-98408.8 HIG91.1%
——27inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.27dCVE-2022-4221—91.1%
——27——CVE-2004-2673—91.1%
——27——CVE-2026-82286.3 MED91.1%
——27A security vulnerability has been detected in Wavlink NU516U1 240425. Impacted is the function advance of the file /cgi-bin/wireless.cgi. Such manipulation of the argument wlan_conf/Channel/skiplist/ieee_80211h leads to os command injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure.17dCVE-2015-3040—91.1%
——27——CVE-2026-81896.3 MED91.1%
——27A vulnerability was found in Wavlink NU516U1 M16U1_V240425. Affected by this vulnerability is the function wzdrepeater of the file /cgi-bin/adm.cgi. The manipulation of the argument wlan_bssid/sel_Automode/sel_EncrypTyp results in os command injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure.17dCVE-2009-2961—91.1%
——27——CVE-2014-8337—91.1%
——27——CVE-2011-0084—91.1%
——27——CVE-2017-3238—91.1%
——27——CVE-2009-1838—91.1%
——27——