Vulnerabilities exploitable today
350,369in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,647
New KEV · 24H0
Exploit Today ≥ 701,583
Distribution · last window
- Critical1,484
- High4,943
- Medium4,052
- Low320
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-27700—1.3%
——0——CVE-2025-66269—1.3%
——0——CVE-2026-143614.7 MED1.3%
——0The consul-template library before version 0.42.1 is vulnerable to a path redirection issue in the writeToFile template helper that may allow template output to be written outside the intended directory or to overwrite an existing file. This vulnerability (CVE-2026-14361) is fixed in consul-template 0.42.1.12dCVE-2025-6571—1.3%
——0——CVE-2023-48406—1.3%
——0——CVE-2021-25488—1.3%
——0——CVE-2017-11012—1.3%
——0——CVE-2025-47384—1.3%
——0——CVE-2026-12189—1.3%
——0——CVE-2026-1836—1.3%
——0——CVE-2026-46239—1.3%
——0——CVE-2024-23706—1.3%
——0——CVE-2025-38114—1.3%
——0——CVE-2026-8672—1.3%
——0——CVE-2026-21051—1.3%
——0——CVE-2026-21050—1.3%
——0——CVE-2025-38276—1.3%
——0——CVE-2024-51521—1.3%
——0——CVE-2026-3669—1.3%
——0——CVE-2026-154755.3 MED1.3%
——0A weakness has been identified in MiniTool Partition Wizard up to 13.6. The affected element is an unknown function in the library pwdrvio.sys of the component Signed Kernel Driver. This manipulation causes improper access controls. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. Upgrading to version 13.9 is sufficient to fix this issue. The affected component should be upgraded. The vendor was contacted early about this disclosure.8dCVE-2025-47371—1.3%
——0——CVE-2026-583046.1 MED1.3%
——0Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.
This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a.12dCVE-2025-58475—1.3%
——0——CVE-2026-40604—1.3%
——0——CVE-2025-58484—1.3%
——0——CVE-2026-46222—1.3%
——0——CVE-2026-210377.1 HIG1.3%
——0Improper input validation in Samsung Members prior to version 5.8.01.5 allows local attackers to access arbitrary URL and launch arbitrary activity with Samsung Members privilege.21dCVE-2025-36192—1.3%
——0——CVE-2026-13037—1.3%
——0——CVE-2025-39754—1.3%
——0——CVE-2024-34664—1.3%
——0——CVE-2025-66264—1.3%
——0——CVE-2021-30290—1.3%
——0——CVE-2025-25253—1.3%
——0——CVE-2026-618622.9 LOW1.3%
——0ImageMagick before 7.1.2-26 and 6.9.13-51 contains an information disclosure vulnerability: when a profile is displayed with the identify command and the profile value is not printable, a single byte at the end of the profile can be printed (read past the profile boundary). This behavior occurs when debug output is enabled.6dCVE-2025-55310—1.3%
——0——CVE-2024-29741—1.3%
——0——CVE-2022-39098—1.3%
——0——CVE-2022-39097—1.3%
——0——CVE-2021-39740—1.3%
——0——