Vulnerabilities exploitable today
352,162in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,590
Distribution · last window
- Critical2,073
- High6,924
- Medium5,904
- Low547
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-102305.3 MED2.7%
——1A vulnerability was identified in Assimp up to 6.0.4. This impacts the function Assimp::MDL::HalfLife::HL1MDLLoader::read_animations of the file HL1MDLLoader.cpp of the component Half-Life 1 MDL Loader. Such manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit is publicly available and might be used. The project tagged the reported issue as bug.1dCVE-2026-48693—2.7%
——1——CVE-2020-0481—2.7%
——1——CVE-2026-24988—2.7%
——1——CVE-2025-62962—2.7%
——1——CVE-2024-47588—2.7%
——1——CVE-2025-42927—2.7%
——1——CVE-2025-9190—2.7%
——1——CVE-2025-31971—2.7%
——1——CVE-2022-38194—2.7%
——1——CVE-2025-32922—2.7%
——1——CVE-2025-7378—2.7%
——1——CVE-2025-0139—2.7%
——1——CVE-2026-226827.1 HIG2.7%
——1OpenHarness prior to commit 166fcfe contains an improper access control vulnerability in built-in file tools due to inconsistent parameter handling in permission enforcement, allowing attackers who can influence agent tool execution to read arbitrary local files outside the intended repository scope. Attackers can exploit the path parameter not being passed to the PermissionChecker in read_file, write_file, edit_file, and notebook_edit tools to bypass deny rules and access sensitive files such as configuration files, credentials, and SSH material, or create and overwrite files in restricted host paths in full_auto mode.9dCVE-2021-25482—2.7%
——1——CVE-2026-20794—2.7%
——1——CVE-2025-46528—2.7%
——1——CVE-2025-0140—2.7%
——1——CVE-2025-28981—2.7%
——1——CVE-2025-14625—2.7%
——1——CVE-2025-39497—2.7%
——1——CVE-2024-4046—2.7%
——1——CVE-2025-52765—2.7%
——1——CVE-2025-47648—2.7%
——1——CVE-2025-62742—2.7%
——1——CVE-2025-62125—2.7%
——1——CVE-2026-604497.1 HIG2.7%
——1Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle WebCenter Content executes to compromise Oracle WebCenter Content. While the vulnerability is in Oracle WebCenter Content, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebCenter Content accessible data. CVSS 3.1 Base Score 7.1 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).2dCVE-2026-411242.3 LOW2.7%
——1Dell PowerProtect Data Domain, versions 7.7.1.0 through 8.6, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1.0 through 8.3.1.30, LTS2024 release versions 7.13.1.0 through 7.13.1.70 contain an Improper limitation of a pathname to a restricted directory ('path traversal') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.15dCVE-2026-638177.8 HIG2.7%
——1In the Linux kernel, the following vulnerability has been resolved:
f2fs: validate compress cache inode only when enabled
F2FS_COMPRESS_INO() uses NM_I(sbi)->max_nid as the synthetic inode
number for the compressed page cache inode. That inode only exists when
the compress_cache mount option is enabled.
When compress_cache is disabled, max_nid is outside the valid inode
range. A corrupted directory entry that points to ino == max_nid should
therefore be rejected by f2fs_check_nid_range(). However, is_meta_ino()
currently treats F2FS_COMPRESS_INO() as a meta inode unconditionally,
so f2fs_iget() bypasses do_read_inode() and its nid range check, and
instantiates a fake internal inode instead.
Gate the compressed cache inode case on COMPRESS_CACHE, matching
f2fs_init_compress_inode(). With compress_cache disabled, ino ==
max_nid now follows the normal inode path and is rejected as an
out-of-range nid.3dCVE-2025-46512—2.7%
——1——CVE-2025-46522—2.7%
——1——CVE-2026-24617—2.7%
——1——CVE-2026-231857.8 HIG2.7%
——1In the Linux kernel, the following vulnerability has been resolved:
wifi: iwlwifi: mld: cancel mlo_scan_start_wk
mlo_scan_start_wk is not canceled on disconnection. In fact, it is not
canceled anywhere except in the restart cleanup, where we don't really
have to.
This can cause an init-after-queue issue: if, for example, the work was
queued and then drv_change_interface got executed.
This can also cause use-after-free: if the work is executed after the
vif is freed.9dCVE-2026-22185—2.7%
——1——CVE-2024-52906—2.7%
——1——CVE-2025-62746—2.7%
——1——CVE-2025-62110—2.7%
——1——CVE-2025-46707—2.7%
——1——CVE-2024-35648—2.7%
——1——CVE-2025-46520—2.7%
——1——