PULSE
LIVE70signals / 24h
FEED
ransomthegentlemen reclama a Safeware · US · Technologyransomincransom reclama a clgroup · US · Professional Servicesransomblacknevas reclama a Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... · US · Technologyransomsilentransomgroup reclama a Riker Danzig Scherer Hyland & Perretti · Professional Servicesransomkairos reclama a Hightech Signs · US · Manufacturingransomsilentransomgroup reclama a Riker Danzig LLP · US · Professional Servicesransomincransom reclama a gamaus.com · US · Technologyransomblacknevas reclama a Westbrook Greenhouse Systems www.westbrooksystems.com serviced by an IT company Computer C... · US · Agriculture and Food Productionransomblacknevas reclama a Enteroptyx Ophthalmology Products www.enteroptyx.com serviced by an IT company Computer Co... · US · Healthcareransomblacknevas reclama a Jack Rutherford Customs Brokers Ltd / The Rutherford Group www.therg.ca serviced by an IT ... · CA · Professional Servicesransomqilin reclama a United Association Local Union 345 · US · Otherransomincransom reclama a BEDC.COM.AU · AU · Energy & Utilitiesransomincransom reclama a diabetesandmetabolism.com · US · Healthcareransomclop reclama a AOL.COM · US · Technologyransomthegentlemen reclama a Safeware · US · Technologyransomincransom reclama a clgroup · US · Professional Servicesransomblacknevas reclama a Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... · US · Technologyransomsilentransomgroup reclama a Riker Danzig Scherer Hyland & Perretti · Professional Servicesransomkairos reclama a Hightech Signs · US · Manufacturingransomsilentransomgroup reclama a Riker Danzig LLP · US · Professional Servicesransomincransom reclama a gamaus.com · US · Technologyransomblacknevas reclama a Westbrook Greenhouse Systems www.westbrooksystems.com serviced by an IT company Computer C... · US · Agriculture and Food Productionransomblacknevas reclama a Enteroptyx Ophthalmology Products www.enteroptyx.com serviced by an IT company Computer Co... · US · Healthcareransomblacknevas reclama a Jack Rutherford Customs Brokers Ltd / The Rutherford Group www.therg.ca serviced by an IT ... · CA · Professional Servicesransomqilin reclama a United Association Local Union 345 · US · Otherransomincransom reclama a BEDC.COM.AU · AU · Energy & Utilitiesransomincransom reclama a diabetesandmetabolism.com · US · Healthcareransomclop reclama a AOL.COM · US · Technology
CVE Watch358,921 in full archive

Vulnerabilities exploitable today

358,921in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,665
New KEV · 24H0
Exploit Today ≥ 701,607

Distribution · last window

  • Critical
    2,708
  • High
    11,664
  • Medium
    7,446
  • Low
    684
Filters

Window

Severity

Flags

Vulnerabilities321,841–321,880 · 358,921
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2017-8158
9.9%
3
CVE-2026-90248.7 HIG
9.9%
3A Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x could allow an attacker to execute arbitrary script code in user's browser session.22d
CVE-2025-64873
9.9%
3
CVE-2026-20260
9.9%
3
CVE-2025-64563
9.9%
3
CVE-2025-64857
9.9%
3
CVE-2019-14130
9.9%
3
CVE-2026-712368.7 HIG
9.9%
3Grocy's API request-body parser (controllers/Api/BaseApiController.php, GetParsedAndFilteredRequestBody) purifies incoming field values with HTMLPurifier, then manually reverses HTML-entity encoding of the resulting output by replacing &amp;lt;, &amp;gt;, and &amp;amp; back to <, >, and & immediately after purification.3d
CVE-2025-0033
9.9%
3
CVE-2025-64875
9.9%
3
CVE-2025-64853
9.9%
3
CVE-2026-34341
9.9%
3
CVE-2020-9096
9.9%
3
CVE-2021-1931
9.9%
3
CVE-2026-32413
9.9%
3
CVE-2022-50635
9.9%
3
CVE-2025-64817
9.9%
3
CVE-2025-64553
9.9%
3
CVE-2022-36416
9.9%
3
CVE-2026-2851
9.9%
3
CVE-2025-11161
9.9%
3
CVE-2025-46713
9.9%
3
CVE-2025-30963
9.9%
3
CVE-2026-22727
9.9%
3
CVE-2026-41350
9.9%
3
CVE-2020-11164
9.9%
3
CVE-2023-29504
9.9%
3
CVE-2025-11160
9.9%
3
CVE-2026-56236.3 MED
9.9%
3A vulnerability was identified in hcengineering Huly Platform 0.7.382. This affects an unknown part of the file server/front/src/index.ts of the component Import Endpoint. Such manipulation leads to server-side request forgery. The attack can be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.20d
CVE-2026-32396
9.9%
3
CVE-2025-23148
9.9%
3
CVE-2026-45348
9.9%
3
CVE-2025-40181
9.9%
3
CVE-2026-447466.1 MED
9.9%
3Due to a reflected cross-site scripting (XSS) vulnerability in SAP NetWeaver JAVA (JDBC Test Servlet), an unauthenticated attacker could craft a URL that embeds a malicious script. If a victim clicks this link, the injected input is processed during web page generation, resulting in the execution of malicious content in the victim's browser. This could allow the attacker to access and/or modify information related to the webclient, impacting the confidentiality and integrity of the application, with no impact to availability.21d
CVE-2023-51711
9.9%
3
CVE-2026-25428
9.9%
3
CVE-2025-30961
9.9%
3
CVE-2025-64833
9.9%
3
CVE-2024-0109
9.9%
3
CVE-2019-14100
9.9%
3