Vulnerabilities exploitable today
4,337in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,263
- High9,268
- Medium5,273
- Low508
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-54085—99.1%
KEV—80AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability—CVE-2018-7756—99.1%
——30——CVE-2021-39906—99.1%
——30——CVE-2020-11100—99.1%
——30——CVE-2023-34225—99.1%
——30——CVE-2008-4572—99.1%
——30——CVE-2023-32986—99.1%
——30——CVE-2013-1428—99.1%
——30——CVE-2023-31419—99.1%
——30——CVE-2015-7603—99.1%
——30——CVE-2022-29775—99.1%
——30——CVE-2024-50599—99.1%
——30——CVE-2013-4074—99.1%
——30——CVE-2018-3639—99.1%
——30——CVE-2008-5444—99.1%
——30——CVE-2024-12971—99.1%
——30——CVE-2021-30181—99.1%
——30——CVE-2004-2416—99.1%
——30——CVE-2025-2748—99.1%
——30——CVE-2024-27921—99.1%
——30——CVE-2025-441489.8 CRI99.1%
——30Cross Site Scripting (XSS) vulnerability in MailEnable before v10 allows a remote attacker to execute arbitrary code via the failure.aspx component58dCVE-2006-1314—99.1%
——30——CVE-2022-36021—99.1%
——30——CVE-2023-34259—99.1%
——30——CVE-2023-0631—99.1%
——30——CVE-2012-4333—99.1%
——30——CVE-2006-5198—99.1%
——30——CVE-2021-30180—99.1%
——30——CVE-2010-0478—99.1%
——30——CVE-2024-48914—99.1%
——30——CVE-2004-1317—99.1%
——30——CVE-2025-40553—99.1%
——30——CVE-2021-20078—99.1%
——30——CVE-2019-1252—99.1%
——30——CVE-2005-2715—99.1%
——30——CVE-2017-6343—99.1%
——30——CVE-2021-30118—99.1%
——30——CVE-2004-0184—99.1%
——30——CVE-2025-252569.8 CRI99.1%
——30An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] vulnerability in Fortinet FortiSIEM 7.3.0 through 7.3.1, FortiSIEM 7.2.0 through 7.2.5, FortiSIEM 7.1.0 through 7.1.7, FortiSIEM 7.0.0 through 7.0.3, FortiSIEM 6.7.0 through 6.7.9, FortiSIEM 6.6 all versions, FortiSIEM 6.5 all versions, FortiSIEM 6.4 all versions, FortiSIEM 6.3 all versions, FortiSIEM 6.2 all versions, FortiSIEM 6.1 all versions, FortiSIEM 5.4 all versions, FortiSIEM 5.3 all versions, FortiSIEM 5.2 all versions, FortiSIEM 5.1 all versions, FortiSIEM 5.0 all versions, FortiSIEM 4.10 all versions, FortiSIEM 4.9 all versions, FortiSIEM 4.7 all versions allows an unauthenticated attacker to execute unauthorized code or commands via crafted CLI requests.13dCVE-2022-21449—99.1%
——30——