PULSE
LIVE9signals / 24h
FEED
ransomkrybit reclama a studiotibaldi.it · IT · Professional Servicesransompanzer reclama a Siam Oil Product · TH · Energy & Utilitiesransompanzer reclama a Daily Trust · NG · Otherransomqilin reclama a Impact Centre Chrétien · HT · Otherransomincransom reclama a Louisville Bar Association · US · Professional Servicesransomqilin reclama a Clausing · DE · Manufacturingransomqilin reclama a CLLS Co Ltd · SG · Not Foundransomstorm reclama a United Group of Companies · US · Otherransomstorm reclama a Sawyer Savings Bank · US · Financial Servicesransombravox reclama a MEDICOS · FR · Healthcareransomspacebears reclama a Hitech Distribuzione Informatica S.r.l. (HTDI) · IT · Technologyransomstorm reclama a Pioneer Bank · US · Financial Servicesransomthegentlemen reclama a Hartfiel Automation · DE · Manufacturingransomqilin reclama a Astro Electroplating · US · Manufacturingransomkrybit reclama a studiotibaldi.it · IT · Professional Servicesransompanzer reclama a Siam Oil Product · TH · Energy & Utilitiesransompanzer reclama a Daily Trust · NG · Otherransomqilin reclama a Impact Centre Chrétien · HT · Otherransomincransom reclama a Louisville Bar Association · US · Professional Servicesransomqilin reclama a Clausing · DE · Manufacturingransomqilin reclama a CLLS Co Ltd · SG · Not Foundransomstorm reclama a United Group of Companies · US · Otherransomstorm reclama a Sawyer Savings Bank · US · Financial Servicesransombravox reclama a MEDICOS · FR · Healthcareransomspacebears reclama a Hitech Distribuzione Informatica S.r.l. (HTDI) · IT · Technologyransomstorm reclama a Pioneer Bank · US · Financial Servicesransomthegentlemen reclama a Hartfiel Automation · DE · Manufacturingransomqilin reclama a Astro Electroplating · US · Manufacturing
CVE Watch356,708 in full archive

Vulnerabilities exploitable today

356,708in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,662
New KEV · 24H0
Exploit Today ≥ 701,605

Distribution · last window

  • Critical
    2,545
  • High
    10,617
  • Medium
    6,752
  • Low
    668
Filters

Window

Severity

Flags

Vulnerabilities326,321–326,360 · 356,708
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-66108
8.4%
3
CVE-2025-48695
8.4%
3
CVE-2025-58976
8.4%
3
CVE-2022-48228
8.4%
3
CVE-2026-452316.1 MED
8.4%
3DumbAssets through 1.0.11 contains a stored cross-site scripting vulnerability in asset fields including name, description, modelNumber, serialNumber, and tags that are stored without server-side sanitization and rendered using innerHTML without client-side escaping. Attackers can create or update assets with HTML or JavaScript payloads via the asset API endpoints to execute arbitrary scripts in the browsers of users viewing the asset list, and with Content-Security-Policy disabled, the injected scripts can make unrestricted connections to internal network services.25d
CVE-2023-53095
8.4%
3
CVE-2024-50277
8.4%
3
CVE-2025-3230
8.4%
3
CVE-2012-4676
8.4%
3
CVE-2023-29157
8.4%
3
CVE-2025-46820
8.4%
3
CVE-2026-42421
8.4%
3
CVE-2024-36062
8.4%
3
CVE-2025-57902
8.4%
3
CVE-2024-27968
8.4%
3
CVE-2025-22052
8.4%
3
CVE-2024-33578
8.4%
3
CVE-2026-26174
8.4%
3
CVE-2022-40725
8.4%
3
CVE-2026-351595.3 MED
8.4%
3Dell Client Platform BIOS contains an Authentication Bypass by Primary Weakness vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to Information Disclosure.33d
CVE-2022-49837
8.4%
3
CVE-2025-22126
8.4%
3
CVE-2023-53068
8.4%
3
CVE-2022-49860
8.4%
3
CVE-2025-14448
8.4%
3
CVE-2022-49906
8.4%
3
CVE-2025-23138
8.4%
3
CVE-2026-49401
8.4%
3
CVE-2025-33220
8.4%
3
CVE-2023-28745
8.4%
3
CVE-2026-7947
8.4%
3
CVE-2022-49761
8.4%
3
CVE-2025-48581
8.4%
3
CVE-2023-25777
8.4%
3
CVE-2025-47701
8.4%
3
CVE-2023-7241
8.4%
3
CVE-2025-40946
8.4%
3
CVE-2023-52935
8.4%
3
CVE-2025-3704
8.4%
3
CVE-2022-49607
8.4%
3