Vulnerabilities exploitable today
353,511in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,655
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,435
- High8,291
- Medium7,422
- Low691
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-58321—4.1%
——1——CVE-2019-25250—4.1%
——1——CVE-2025-15642—4.1%
——1——CVE-2025-2154—4.1%
——1——CVE-2025-21944—4.1%
——1——CVE-2025-49384—4.1%
——1——CVE-2021-22450—4.1%
——1——CVE-2026-645247.7 HIG4.1%
——1In the Linux kernel, the following vulnerability has been resolved:
drm/hyperv: validate resolution_count and fix WIN8 fallback
A SYNTHVID_RESOLUTION_RESPONSE with resolution_count > 64 walks past
the supported_resolution[SYNTHVID_MAX_RESOLUTION_COUNT] array in the
parse loop. Bound resolution_count against the array size, folded
into the existing zero-check.
When the WIN10 resolution probe fails, the caller in
hyperv_connect_vsp() left hv->screen_*_max / preferred_* unpopulated,
which sets mode_config.max_width / max_height to 0 and makes
drm_internal_framebuffer_create() reject every userspace framebuffer
with -EINVAL. The pre-WIN10 branch had the same gap for
preferred_width / preferred_height. Use a single post-probe fallback
guarded by screen_width_max == 0 so both paths converge on the WIN8
defaults.2dCVE-2024-51764—4.1%
——1——CVE-2024-51765—4.1%
——1——CVE-2025-38088—4.1%
——1——CVE-2026-31368—4.1%
——1——CVE-2026-461897.8 HIG4.1%
——1In the Linux kernel, the following vulnerability has been resolved:
RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path
Sashiko points out that pvrdma_uar_free() is already called within
pvrdma_dealloc_ucontext(), so calling it before triggers a double free.13dCVE-2024-21816—4.1%
——1——CVE-2024-58074—4.1%
——1——CVE-2026-42743—4.1%
——1——CVE-2021-22461—4.1%
——1——CVE-2026-33902—4.1%
——1——CVE-2022-50461—4.1%
——1——CVE-2021-22462—4.1%
——1——CVE-2022-50266—4.1%
——1——CVE-2025-7844—4.1%
——1——CVE-2026-5409—4.1%
——1——CVE-2026-3196—4.1%
——1——CVE-2022-50236—4.1%
——1——CVE-2025-39422—4.1%
——1——CVE-2025-39441—4.1%
——1——CVE-2022-50284—4.1%
——1——CVE-2025-29952—4.1%
——1——CVE-2022-50316—4.1%
——1——CVE-2023-53211—4.1%
——1——CVE-2023-53540—4.1%
——1——CVE-2026-95303.3 LOW4.1%
——1A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_section of the file src/decode.c of the component Dwgbmp Utility. Executing a manipulation can lead to out-of-bounds read. The attack requires local access. The exploit has been made available to the public and could be used for attacks. This patch is called 8f03865f37f5d4ffd616fef802acc980be54d300. It is advisable to implement a patch to correct this issue.6dCVE-2025-46497—4.1%
——1——CVE-2024-53755—4.1%
——1——CVE-2025-39695—4.1%
——1——CVE-2026-24016—4.1%
——1——CVE-2025-39415—4.1%
——1——CVE-2025-23446—4.1%
——1——CVE-2022-50331—4.1%
——1——