PULSE
LIVE20signals / 24h
FEED
ransomincransom reclama a Oleoductos del Valle · AR · Energy & Utilitiesransomsafepay reclama a pradotuylaw.com · US · Professional Servicesransomsafepay reclama a naskdoorinc.com · US · Manufacturingransomsafepay reclama a new-point.it · IT · Technologyransomsafepay reclama a simonrack.com · ES · Manufacturingransomsafepay reclama a hanan-hov.co.il · IL · Otherransomanubis reclama a BLACKBURN'S · US · Healthcareransomanubis reclama a Cameron Regional Medical Center · US · Healthcareransomsafepay reclama a azn.co.jp · JP · Retail & E-Commerceransomsafepay reclama a southshorerecycling.com · US · Manufacturingransomsafepay reclama a cpu-ag.com · DE · Manufacturingransomsafepay reclama a multiaqua.com · US · Agriculture and Food Productionransomanubis reclama a Winn-Dixie · US · Retail & E-Commerceransomanubis reclama a BLACKBURN'S Physicians Pharmacy, Inc. · US · Healthcareransomincransom reclama a Oleoductos del Valle · AR · Energy & Utilitiesransomsafepay reclama a pradotuylaw.com · US · Professional Servicesransomsafepay reclama a naskdoorinc.com · US · Manufacturingransomsafepay reclama a new-point.it · IT · Technologyransomsafepay reclama a simonrack.com · ES · Manufacturingransomsafepay reclama a hanan-hov.co.il · IL · Otherransomanubis reclama a BLACKBURN'S · US · Healthcareransomanubis reclama a Cameron Regional Medical Center · US · Healthcareransomsafepay reclama a azn.co.jp · JP · Retail & E-Commerceransomsafepay reclama a southshorerecycling.com · US · Manufacturingransomsafepay reclama a cpu-ag.com · DE · Manufacturingransomsafepay reclama a multiaqua.com · US · Agriculture and Food Productionransomanubis reclama a Winn-Dixie · US · Retail & E-Commerceransomanubis reclama a BLACKBURN'S Physicians Pharmacy, Inc. · US · Healthcare
CVE Watch355,177 in full archive

Vulnerabilities exploitable today

355,177in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,656
New KEV · 24H0
Exploit Today ≥ 701,601

Distribution · last window

  • Critical
    2,532
  • High
    9,184
  • Medium
    7,411
  • Low
    691
Filters

Window

Severity

Flags

Vulnerabilities330,721–330,760 · 355,177
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-41629
6.8%
2
CVE-2026-49406
6.8%
2
CVE-2026-7511
6.8%
2
CVE-2025-38138
6.8%
2
CVE-2025-49358
6.8%
2
CVE-2024-43299
6.8%
2
CVE-2024-31870
6.8%
2
CVE-2023-53736
6.8%
2
CVE-2023-30722
6.8%
2
CVE-2025-43341
6.8%
2
CVE-2025-48021
6.8%
2
CVE-2026-27977
6.8%
2
CVE-2025-48022
6.8%
2
CVE-2026-533667.8 HIG
6.8%
2In the Linux kernel, the following vulnerability has been resolved: ipv4: account for fraggap on the paged allocation path In __ip_append_data(), when the paged-allocation branch is taken, alloclen and pagedlen are computed as alloclen = fragheaderlen + transhdrlen; pagedlen = datalen - transhdrlen; datalen already includes fraggap, but the fraggap bytes carried over from the previous skb are copied into the new skb's linear area at offset transhdrlen by the subsequent skb_copy_and_csum_bits(). The linear area is therefore undersized by fraggap bytes while pagedlen is overstated by the same amount. The non-paged branch sets alloclen to fraglen, which already accounts for fraggap because datalen does. Bring the paged branch in line by adding fraggap to alloclen and subtracting it from pagedlen. After this adjustment, copy no longer collapses to -fraggap on the paged path, so remove the stale comment describing that old arithmetic.10d
CVE-2026-273494.3 MED
6.8%
2Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WPFunnels Team Mail Mint allows Retrieve Embedded Sensitive Data. This issue affects Mail Mint: from n/a through 1.19.5.11d
CVE-2026-565713.7 LOW
6.8%
2HCL iControl was affected by Improper Error Handling vulnerabilities. It involves Out of memory, null pointer exceptions, system call failure, database unavailable, network timeout, and hundreds of other common conditions can cause errors to be generated.3d
CVE-2025-62258
6.8%
2
CVE-2025-48023
6.8%
2
CVE-2026-485595.4 MED
6.8%
2Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers to execute arbitrary JavaScript by embedding malicious HTML in media file metadata tags such as GENRE, ARTIST, or ALBUM. Attackers can introduce a crafted media file into the victim's library, causing the payload to be saved during library scanning and executed automatically in the web interface due to tag content being rendered using Wt::TextFormat::UnsafeXHTML without sanitization in src/lms/ui/Utils.cpp.13d
CVE-2023-20597
6.8%
2
CVE-2021-36277
6.8%
2
CVE-2025-2793
6.8%
2
CVE-2024-22449
6.8%
2
CVE-2025-39701
6.8%
2
CVE-2023-38299
6.8%
2
CVE-2025-38332
6.8%
2
CVE-2025-67858
6.8%
2
CVE-2023-21510
6.8%
2
CVE-2026-387667.8 HIG
6.8%
2An issue in Unistal Systems Pvt. Ltd.Protegent 360 v2.0.0.4 allows a local attacker to escalate privileges via the sub_186f4 function10d
CVE-2024-2502
6.8%
2
CVE-2024-54455
6.8%
2
CVE-2023-24502
6.8%
2
CVE-2023-4129
6.8%
2
CVE-2025-14412
6.8%
2
CVE-2025-62752
6.8%
2
CVE-2025-68257
6.8%
2
CVE-2025-68258
6.8%
2
CVE-2023-21500
6.8%
2
CVE-2025-258185.1 MED
6.8%
2A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the postStrVar function at article_save.php.30d
CVE-2025-62095
6.8%
2