Vulnerabilities exploitable today
352,785in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,653
New KEV · 24H0
Exploit Today ≥ 701,600
Distribution · last window
- Critical2,281
- High7,880
- Medium7,174
- Low676
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-20779—0.1%
——0——CVE-2025-48607—0.1%
——0——CVE-2025-47336—0.1%
——0——CVE-2025-47335—0.1%
——0——CVE-2022-26450—0.1%
——0——CVE-2026-11347—0.1%
——0——CVE-2026-23153—0.1%
——0——CVE-2025-48629—0.1%
——0——CVE-2024-49735—0.1%
——0——CVE-2025-48599—0.1%
——0——CVE-2017-13310—0.1%
——0——CVE-2025-26445—0.1%
——0——CVE-2026-43053—0.1%
——0——CVE-2026-20429—0.1%
——0——CVE-2025-47408—0.1%
——0——CVE-2026-35374—0.1%
——0——CVE-2026-26104—0.1%
——0——CVE-2024-47033—0.1%
——0——CVE-2025-47337—0.1%
——0——CVE-2025-20770—0.1%
——0——CVE-2024-49840—0.1%
——0——CVE-2026-0143—0.1%
——0——CVE-2026-462984.7 MED0.1%
——0In the Linux kernel, the following vulnerability has been resolved:
pseries/papr-hvpipe: Fix race with interrupt handler
While executing ->ioctl handler or ->release handler, if an interrupt
fires on the same cpu, then we can enter into a deadlock.
This patch fixes both these handlers to take spin_lock_irq{save|restore}
versions of the lock to prevent this deadlock.4dCVE-2025-48601—0.1%
——0——CVE-2024-49744—0.1%
——0——CVE-2025-48597—0.1%
——0——CVE-2025-13492—0.1%
——0——CVE-2025-21433—0.1%
——0——CVE-2026-01007.8 HIG0.1%
——0In Load of LoadedArsc.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.4dCVE-2018-9344—0.1%
——0——CVE-2024-43765—0.1%
——0——CVE-2025-598663.3 LOW0.1%
——0The HCL DFMPro, DFXAnalytics and DFXServer installers are affected by ‘Insecure file permissions Leading to Privilege Escalation’ vulnerability, which enables any logged-in non-administrative user to overwrite or replace the executable file with a malicious binary.9dCVE-2024-47016—0.1%
——0——CVE-2022-44420—0.1%
——0——CVE-2025-20786—0.1%
——0——CVE-2025-47376—0.1%
——0——CVE-2025-47375—0.1%
——0——CVE-2025-47377—0.1%
——0——CVE-2025-20769—0.1%
——0——CVE-2026-00185.5 MED0.1%
——0In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.5d