Vulnerabilities exploitable today
352,969in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,334
- High8,050
- Medium7,230
- Low682
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-426837.1 HIG3.9%
——1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS allows DOM-Based XSS.
This issue affects VikBooking Hotel Booking Engine & PMS: from n/a through 1.8.8.6dCVE-2020-0390—3.9%
——1——CVE-2025-69082—3.9%
——1——CVE-2025-23257—3.9%
——1——CVE-2018-25150—3.9%
——1——CVE-2026-57337—3.9%
——1——CVE-2026-429367.8 HIG3.9%
——1The installer of HYPER SBI 2 insecurely loads Dynamic Link Libraries. If there is a crafted DLL at the same directory when invoking the affected installer, arbitrary code may be executed with the privilege of the user invoking the installer.12dCVE-2025-63000—3.9%
——1——CVE-2025-21911—3.9%
——1——CVE-2025-38221—3.9%
——1——CVE-2026-32544—3.9%
——1——CVE-2026-27279—3.9%
——1——CVE-2025-12590—3.9%
——1——CVE-2026-46123—3.9%
——1——CVE-2025-47272—3.9%
——1——CVE-2025-23245—3.9%
——1——CVE-2026-41257—3.9%
——1——CVE-2025-62146—3.9%
——1——CVE-2026-4105—3.9%
——1——CVE-2026-28490—3.9%
——1——CVE-2020-36918—3.9%
——1——CVE-2021-0602—3.9%
——1——CVE-2026-595167.1 HIG3.9%
——1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Room 34 Creative Services, LLC ICS Calendar ics-calendar allows Reflected XSS.This issue affects ICS Calendar: from n/a through <= 12.1.1.14dCVE-2026-578147.1 HIG3.9%
——1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Forminator forminator allows DOM-Based XSS.This issue affects Forminator: from n/a through <= 1.55.0.1.14dCVE-2026-446115.4 MED3.9%
——1Danelec MacGregor Voyage Data Recorder
passwords are stored with a hashing method which limits password length and is susceptible to brute force attacks.6dCVE-2026-57333—3.9%
——1——CVE-2026-30987—3.9%
——1——CVE-2018-25152—3.9%
——1——CVE-2026-27273—3.9%
——1——CVE-2024-34670—3.9%
——1——CVE-2026-22817—3.9%
——1——CVE-2026-54188—3.9%
——1——CVE-2025-62137—3.9%
——1——CVE-2020-27027—3.9%
——1——CVE-2024-46941—3.9%
——1——CVE-2025-43360—3.9%
——1——CVE-2024-36292—3.9%
——1——CVE-2024-22385—3.9%
——1——CVE-2024-6749—3.9%
——1——CVE-2025-31262—3.9%
——1——