Vulnerabilities exploitable today
352,232in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,590
Distribution · last window
- Critical2,107
- High7,066
- Medium6,094
- Low575
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-643907.4 HIG0.4%
——0A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file.1dCVE-2023-21313—0.4%
——0——CVE-2023-30920—0.4%
——0——CVE-2023-30921—0.4%
——0——CVE-2023-30915—0.4%
——0——CVE-2022-21776—0.4%
——0——CVE-2023-30942—0.4%
——0——CVE-2025-67825—0.4%
——0——CVE-2025-20641—0.4%
——0——CVE-2024-25989—0.4%
——0——CVE-2025-13593—0.4%
——0——CVE-2025-37112—0.4%
——0——CVE-2025-54340—0.4%
——0——CVE-2025-63729—0.4%
——0——CVE-2023-30926—0.4%
——0——CVE-2023-40112—0.4%
——0——CVE-2023-32834—0.4%
——0——CVE-2026-641587.3 HIG0.4%
——0In the Linux kernel, the following vulnerability has been resolved:
netfs: Fix write streaming disablement if fd open O_RDWR
In netfs_perform_write(), "write streaming" (the caching of dirty data in
dirty but !uptodate folios) is performed to avoid the need to read data
that is just going to get immediately overwritten. However, this is/will
be disabled in three circumstances: if the fd is open O_RDWR, if fscache is
in use (as we need to round out the blocks for DIO) or if content
encryption is enabled (again for rounding out purposes).
The idea behind disabling it if the fd is open O_RDWR is that we'd need to
flush the write-streaming page before we could read the data, particularly
through mmap. But netfs now fills in the gaps if ->read_folio() is called
on the page, so that is unnecessary. Further, this doesn't actually work
if a separate fd is open for reading.
Fix this by removing the check for O_RDWR, thereby allowing streaming
writes even when we might read.
This caused a number of problems with the generic/522 xfstest, but those
are now fixed.3dCVE-2023-30941—0.4%
——0——CVE-2023-21143—0.4%
——0——CVE-2023-21231—0.4%
——0——CVE-2025-66593—0.4%
——0——CVE-2024-56191—0.4%
——0——CVE-2022-28794—0.4%
——0——CVE-2022-44429—0.4%
——0——CVE-2025-21472—0.4%
——0——CVE-2022-39120—0.4%
——0——CVE-2022-39132—0.4%
——0——CVE-2022-44445—0.4%
——0——CVE-2023-30937—0.4%
——0——CVE-2022-44444—0.4%
——0——CVE-2022-39118—0.4%
——0——CVE-2022-44426—0.4%
——0——CVE-2026-20417—0.4%
——0——CVE-2024-20105—0.4%
——0——CVE-2024-20032—0.4%
——0——CVE-2026-210343.3 LOW0.4%
——0Improper export of android application components in Samsung Auto prior to version 3.1.2.61 in Android 15 and 3.2.0.38 in Android 16 allows local attacker to change audio configuration.23dCVE-2025-47319—0.4%
——0——CVE-2026-24922—0.4%
——0——CVE-2022-39122—0.4%
——0——