Vulnerabilities exploitable today
352,832in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,306
- High8,005
- Medium7,178
- Low677
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-48243—3.8%
——1——CVE-2025-53254—3.8%
——1——CVE-2023-53446—3.8%
——1——CVE-2025-27852—3.8%
——1——CVE-2026-40386—3.8%
——1——CVE-2023-53675—3.8%
——1——CVE-2025-47609—3.8%
——1——CVE-2025-39943—3.8%
——1——CVE-2025-30994—3.8%
——1——CVE-2024-42050—3.8%
——1——CVE-2025-31260—3.8%
——1——CVE-2025-47606—3.8%
——1——CVE-2026-640818.4 HIG3.8%
——1In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_ffa: Validate framework notification message layout
Framework notifications carry an indirect message in the shared RX
buffer. Validate the reported offset and size before using them, reject
zero-length payloads, and ensure that any non-header payload starts at
the UUID field rather than in the middle of the message header.
Use the validated offset and size values for both kmemdup() and the UUID
parsing path so malformed firmware data cannot drive an out-of-bounds
read or an oversized allocation.7dCVE-2025-39951—3.8%
——1——CVE-2025-30980—3.8%
——1——CVE-2025-57895—3.8%
——1——CVE-2025-47468—3.8%
——1——CVE-2023-5450—3.8%
——1——CVE-2026-328647.8 HIG3.8%
——1There is a memory corruption vulnerability due to an out-of-bounds read in mgcore_SH_25_3!aligned_free() in NI LabVIEW. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI file. This vulnerability affects NI LabVIEW 2026 Q1 (26.1.0) and prior versions.3dCVE-2025-38225—3.8%
——1——CVE-2025-47596—3.8%
——1——CVE-2025-47447—3.8%
——1——CVE-2024-0392—3.8%
——1——CVE-2025-53203—3.8%
——1——CVE-2025-398717.8 HIG3.8%
——1In the Linux kernel, the following vulnerability has been resolved:
dmaengine: idxd: Remove improper idxd_free
The call to idxd_free() introduces a duplicate put_device() leading to a
reference count underflow:
refcount_t: underflow; use-after-free.
WARNING: CPU: 15 PID: 4428 at lib/refcount.c:28 refcount_warn_saturate+0xbe/0x110
...
Call Trace:
<TASK>
idxd_remove+0xe4/0x120 [idxd]
pci_device_remove+0x3f/0xb0
device_release_driver_internal+0x197/0x200
driver_detach+0x48/0x90
bus_remove_driver+0x74/0xf0
pci_unregister_driver+0x2e/0xb0
idxd_exit_module+0x34/0x7a0 [idxd]
__do_sys_delete_module.constprop.0+0x183/0x280
do_syscall_64+0x54/0xd70
entry_SYSCALL_64_after_hwframe+0x76/0x7e
The idxd_unregister_devices() which is invoked at the very beginning of
idxd_remove(), already takes care of the necessary put_device() through the
following call path:
idxd_unregister_devices() -> device_unregister() -> put_device()
In addition, when CONFIG_DEBUG_KOBJECT_RELEASE is enabled, put_device() may
trigger asynchronous cleanup via schedule_delayed_work(). If idxd_free() is
called immediately after, it can result in a use-after-free.
Remove the improper idxd_free() to avoid both the refcount underflow and
potential memory corruption during module unload.13dCVE-2024-28607—3.8%
——1——CVE-2023-73464.0 MED3.8%
——1Ledger Bitcoin app versions 2.1.0 and 2.1.1 contain an address derivation vulnerability that allows attackers to cause incorrect Bitcoin addresses to be displayed by exploiting improper handling of miniscript policies containing the a: fragment. Attackers can craft malicious miniscript policies that cause the device to derive and display incorrect receiving addresses, potentially leading to funds being sent to unintended addresses.4dCVE-2026-46913—3.8%
——1——CVE-2025-47590—3.8%
——1——CVE-2023-53322—3.8%
——1——CVE-2026-88335.4 MED3.8%
——1Improper neutralization of HTML-encoded characters in the URL validation function in Checkmk <2.5.0p5, <2.4.0p31, <2.3.0p48, and all 2.2.0 versions allows an authenticated user to bypass URL validation and inject malicious URLs such as javascript: URIs, resulting in cross-site scripting when another user interacts with the crafted link.4dCVE-2025-47551—3.8%
——1——CVE-2024-21530—3.8%
——1——CVE-2025-38042—3.8%
——1——CVE-2026-1393—3.8%
——1——CVE-2026-78452.6 LOW3.8%
——1A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.tobytes of the file libs/chatchat-server/chatchat/webui_pages/dialogue/dialogue.py of the component Vision Chat Paste Image Handler. This manipulation of the argument paste_image.image_data causes use of weak hash. The attacker needs to be present on the local network. The attack is considered to have high complexity. The exploitability is assessed as difficult. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.3dCVE-2022-50058—3.8%
——1——CVE-2026-8938—3.8%
——1——CVE-2026-28958—3.8%
——1——CVE-2026-3332—3.8%
——1——