Vulnerabilities exploitable today
353,511in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,655
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,435
- High8,291
- Medium7,422
- Low691
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-53269—4.1%
——1——CVE-2025-46457—4.1%
——1——CVE-2025-38549—4.0%
——1——CVE-2022-50539—4.1%
——1——CVE-2024-58067—4.1%
——1——CVE-2025-20900—4.1%
——1——CVE-2025-46465—4.1%
——1——CVE-2024-58065—4.1%
——1——CVE-2025-39423—4.1%
——1——CVE-2025-38605—4.0%
——1——CVE-2025-46466—4.1%
——1——CVE-2025-39416—4.1%
——1——CVE-2025-39421—4.1%
——1——CVE-2025-39419—4.1%
——1——CVE-2025-39418—4.1%
——1——CVE-2025-39414—4.1%
——1——CVE-2025-39433—4.1%
——1——CVE-2026-4286—4.1%
——1——CVE-2023-53181—4.1%
——1——CVE-2025-46492—4.1%
——1——CVE-2025-24864—4.0%
——1——CVE-2024-68586.5 MED4.0%
——1In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.6dCVE-2025-38318—4.0%
——1——CVE-2025-39960—4.0%
——1——CVE-2026-341934.3 MED4.0%
——1Kernel software installed and running inside a Guest/Host VM may post improper commands to the GPU Firmware to trigger a write of data outside the intended GPU memory.
A logic error in the address translation allowed a compromised Host (Kernel) to perform arbitrary writes to firmware memory.7dCVE-2026-35375—4.0%
——1——CVE-2023-53620—4.0%
——1——CVE-2023-41817—4.0%
——1——CVE-2025-9380—4.0%
——1——CVE-2020-0154—4.0%
——1——CVE-2025-65430—4.0%
——1——CVE-2026-23078—4.0%
——1——CVE-2025-43345—4.0%
——1——CVE-2026-4407—4.0%
——1——CVE-2025-68603—4.0%
——1——CVE-2026-13021—4.0%
——1——CVE-2025-67745—4.0%
——1——CVE-2025-39809—4.0%
——1——CVE-2025-39837—4.0%
——1——CVE-2026-40883—4.0%
——1——