Vulnerabilities exploitable today
350,257in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,647
New KEV · 24H0
Exploit Today ≥ 701,583
Distribution · last window
- Critical1,426
- High4,742
- Medium3,931
- Low306
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2021-0643—1.3%
——0——CVE-2026-21039—1.3%
——0——CVE-2022-20354—1.3%
——0——CVE-2022-33685—1.3%
——0——CVE-2025-58356—1.3%
——0——CVE-2025-34428—1.3%
——0——CVE-2022-25833—1.3%
——0——CVE-2026-21495—1.3%
——0——CVE-2026-28267—1.3%
——0——CVE-2025-66264—1.3%
——0——CVE-2026-133164.4 MED1.3%
——0A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.15dCVE-2026-21041—1.3%
——0——CVE-2026-143614.7 MED1.3%
——0The consul-template library before version 0.42.1 is vulnerable to a path redirection issue in the writeToFile template helper that may allow template output to be written outside the intended directory or to overwrite an existing file. This vulnerability (CVE-2026-14361) is fixed in consul-template 0.42.1.12dCVE-2026-56412—1.3%
——0——CVE-2025-27700—1.3%
——0——CVE-2025-6571—1.3%
——0——CVE-2025-36603—1.3%
——0——CVE-2018-9383—1.3%
——0——CVE-2024-51516—1.3%
——0——CVE-2026-13037—1.3%
——0——CVE-2025-58484—1.3%
——0——CVE-2026-46222—1.3%
——0——CVE-2026-8672—1.3%
——0——CVE-2025-58475—1.3%
——0——CVE-2024-34664—1.3%
——0——CVE-2025-39754—1.3%
——0——CVE-2025-47371—1.3%
——0——CVE-2025-36192—1.3%
——0——CVE-2026-583046.1 MED1.3%
——0Out-of-bounds read, Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.
This issue affects Escargot: before 779f6bedf58f334dec64b0a51ebb724b4708b84a.12dCVE-2026-210377.1 HIG1.3%
——0Improper input validation in Samsung Members prior to version 5.8.01.5 allows local attackers to access arbitrary URL and launch arbitrary activity with Samsung Members privilege.21dCVE-2026-40604—1.3%
——0——CVE-2016-10408—1.3%
——0——CVE-2025-58991—1.3%
——0——CVE-2025-58217—1.3%
——0——CVE-2022-20264—1.3%
——0——CVE-2021-0922—1.3%
——0——CVE-2026-618622.9 LOW1.3%
——0ImageMagick before 7.1.2-26 and 6.9.13-51 contains an information disclosure vulnerability: when a profile is displayed with the identify command and the profile value is not printable, a single byte at the end of the profile can be printed (read past the profile boundary). This behavior occurs when debug output is enabled.6dCVE-2025-21057—1.3%
——0——CVE-2026-24775—1.3%
——0——CVE-2026-12190—1.3%
——0——