Vulnerabilities exploitable today
351,929in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,590
Distribution · last window
- Critical1,913
- High6,189
- Medium5,025
- Low479
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-26708—2.5%
——1——CVE-2026-43227—2.5%
——1——CVE-2025-24826—2.5%
——1——CVE-2022-25709—2.5%
——1——CVE-2021-30299—2.5%
——1——CVE-2025-67461—2.5%
——1——CVE-2026-43077—2.5%
——1——CVE-2021-39676—2.5%
——1——CVE-2023-54338—2.5%
——1——CVE-2025-36438—2.5%
——1——CVE-2026-43502—2.5%
——1——CVE-2024-38807—2.5%
——1——CVE-2022-25712—2.5%
——1——CVE-2026-43156—2.5%
——1——CVE-2026-31762—2.5%
——1——CVE-2026-31595—2.5%
——1——CVE-2022-33233—2.5%
——1——CVE-2026-43295—2.5%
——1——CVE-2022-490427.8 HIG2.5%
——1An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backup Explorer before 3.0.1-0156 allows local users to execute arbitrary code via unspecified vectors.14hCVE-2026-2646—2.5%
——1——CVE-2026-338025.5 MED2.5%
——1A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated attacker to cause a Denial-of-Service (DoS).
On EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400 switches, an authenticated, local attacker with no specific permissions or class can execute a specific, privileged CLI 'request' command which will cause complete traffic impact until the system automatically recovers.
This issue affects Junos OS on EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400:
* 23.2R2 versions before 23.2R2-S6,
* 23.4 versions before 23.4R2-S8,
* 24.2 versions before 24.2R2-S4,
* 24.4 versions before 24.4R2-S3,
* 25.2 versions before 25.2R2,
* 25.4 versions before 25.4R1-S1.9dCVE-2023-40727—2.5%
——1——CVE-2026-54530—2.5%
——1——CVE-2025-23105—2.5%
——1——CVE-2025-21006—2.5%
——1——CVE-2026-46048—2.5%
——1——CVE-2024-14012—2.5%
——1——CVE-2026-43130—2.5%
——1——CVE-2025-66861—2.5%
——1——CVE-2026-23310—2.5%
——1——CVE-2025-48510—2.5%
——1——CVE-2025-45526—2.5%
——1——CVE-2026-44612—2.5%
——1——CVE-2026-49396—2.5%
——1——CVE-2026-46044—2.5%
——1——CVE-2026-23082—2.5%
——1——CVE-2022-40531—2.5%
——1——CVE-2026-31512—2.5%
——1——CVE-2026-68915.0 MED2.5%
——1Improper handling of symbolic links in the installer of My Image Garden for macOS Version 3.6.8 or earlier may allow a local attacker with login privileges to exploit a specially crafted symbolic link during installation to modify permissions of files for which they would not normally have authorization.2dCVE-2026-23312—2.5%
——1——