Vulnerabilities exploitable today
358,921in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,665
New KEV · 24H0
Exploit Today ≥ 701,607
Distribution · last window
- Critical2,708
- High11,664
- Medium7,446
- Low684
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-377987.8 HIG10.0%
——3In the Linux kernel, the following vulnerability has been resolved:
codel: remove sch->q.qlen check before qdisc_tree_reduce_backlog()
After making all ->qlen_notify() callbacks idempotent, now it is safe to
remove the check of qlen!=0 from both fq_codel_dequeue() and
codel_qdisc_dequeue().14dCVE-2026-341675.0 MED10.0%
——3Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta.471, the ActivityMonitor Livewire component exposes a public $activityId property without Livewire's #[Locked] attribute. It loads activities via Activity::find($this->activityId) with no authorization or team scoping. Activity IDs are auto-incrementing integers. Any authenticated user can enumerate activity records across all teams and read the full command output from remote SSH processes, which may include secrets, configuration files, and infrastructure details. This issue is fixed in version 4.0.0-beta.471.36dCVE-2025-14275—10.0%
——3——CVE-2026-1191—10.0%
——3——CVE-2025-62114—10.0%
——3——CVE-2025-218025.5 MED10.0%
——3In the Linux kernel, the following vulnerability has been resolved:
net: hns3: fix oops when unload drivers paralleling
When unload hclge driver, it tries to disable sriov first for each
ae_dev node from hnae3_ae_dev_list. If user unloads hns3 driver at
the time, because it removes all the ae_dev nodes, and it may cause
oops.
But we can't simply use hnae3_common_lock for this. Because in the
process flow of pci_disable_sriov(), it will trigger the remove flow
of VF, which will also take hnae3_common_lock.
To fixes it, introduce a new mutex to protect the unload process.30dCVE-2023-53697—10.0%
——3——CVE-2025-65858—10.0%
——3——CVE-2026-585277.8 HIG10.0%
——3Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.22dCVE-2022-50556—10.0%
——3——CVE-2026-45134—10.0%
——3——CVE-2025-43877—10.0%
——3——CVE-2025-7961—10.0%
——3——CVE-2026-503177.8 HIG10.0%
——3Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.21dCVE-2021-22307—10.0%
——3——CVE-2026-45549—10.0%
——3——CVE-2026-503787.8 HIG10.0%
——3Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows an authorized attacker to elevate privileges locally.22dCVE-2025-63011—10.0%
——3——CVE-2026-41431—10.0%
——3——CVE-2025-6634—10.0%
——3——CVE-2026-27023—10.0%
——3——CVE-2024-501747.8 HIG10.0%
——3In the Linux kernel, the following vulnerability has been resolved:
drm/panthor: Fix race when converting group handle to group object
XArray provides it's own internal lock which protects the internal array
when entries are being simultaneously added and removed. However there
is still a race between retrieving the pointer from the XArray and
incrementing the reference count.
To avoid this race simply hold the internal XArray lock when
incrementing the reference count, this ensures there cannot be a racing
call to xa_erase().9dCVE-2025-39593—10.0%
——3——CVE-2026-41321—10.0%
——3——CVE-2026-40581—10.0%
——3——CVE-2025-21654—10.0%
——3——CVE-2020-12730—10.0%
——3——CVE-2025-36027—10.0%
——3——CVE-2023-5158—10.0%
——3——CVE-2026-506767.8 HIG10.0%
——3Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.22dCVE-2026-25428—9.9%
——3——CVE-2024-0109—9.9%
——3——CVE-2026-447466.1 MED9.9%
——3Due to a reflected cross-site scripting (XSS) vulnerability in SAP NetWeaver JAVA (JDBC Test Servlet), an unauthenticated attacker could craft a URL that embeds a malicious script. If a victim clicks this link, the injected input is processed during web page generation, resulting in the execution of malicious content in the victim's browser. This could allow the attacker to access and/or modify information related to the webclient, impacting the confidentiality and integrity of the application, with no impact to availability.21dCVE-2025-64833—9.9%
——3——CVE-2026-32332—9.9%
——3——CVE-2019-14100—9.9%
——3——CVE-2025-30961—9.9%
——3——CVE-2023-51711—9.9%
——3——CVE-2026-26972—9.9%
——3——CVE-2025-64881—9.9%
——3——