Vulnerabilities exploitable today
363,765in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,673
New KEV · 24H0
Exploit Today ≥ 701,611
Distribution · last window
- Critical2,923
- High12,261
- Medium7,481
- Low679
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2023-30934—0.4%
——0——CVE-2023-30931—0.4%
——0——CVE-2026-112815.0 MED0.4%
——0Integer overflow in Chromoting in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted ETW event. (Chromium security severity: Low)29dCVE-2023-21364—0.4%
——0——CVE-2024-43764—0.4%
——0——CVE-2018-9403—0.4%
——0——CVE-2023-33906—0.4%
——0——CVE-2023-30941—0.4%
——0——CVE-2023-30921—0.4%
——0——CVE-2023-30938—0.4%
——0——CVE-2026-57916—0.4%
——0proCertum SmartSign opens Certificate Practice Statement (CPS) URI without schema validation. An attacker can prepare arbitrary certificate with CPS URI pointing to a local executable file or any URL, sign a document with it, and send it to the victim. When the victim opens the document in the application, the specified file will be executed (or webpage will be opened).
This issue was fixed in version 9.4.3.90.22dCVE-2026-28830—0.4%
——0——CVE-2024-27218—0.4%
——0——CVE-2023-32819—0.4%
——0——CVE-2025-62318—0.4%
——0——CVE-2023-30932—0.4%
——0——CVE-2023-21352—0.4%
——0——CVE-2025-643907.4 HIG0.4%
——0A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file.30dCVE-2026-22078—0.4%
——0——CVE-2023-30940—0.4%
——0——CVE-2023-30865—0.4%
——0——CVE-2023-32788—0.4%
——0——CVE-2018-9386—0.4%
——0——CVE-2026-106816.5 MED0.4%
——0In Zephyr's userspace dynamic-objects subsystem, thread_idx_alloc() in kernel/userspace/userspace.c allocated a new thread permission index from the global _thread_idx_map[] bitmap without holding lists_lock.
On SMP systems, two user-mode threads invoking the k_object_alloc(K_OBJ_THREAD) syscall concurrently can both observe the same low free bit, perform the same non-atomic RMW to clear it, and return the identical tidx.
The two newly created K_OBJ_THREAD objects are then assigned the same thread_id, so the two user threads alias a single bit position in every kernel object's perms[] bitfield: any subsequent grant of access on a kernel object to one thread is implicitly a grant to the other, defeating userspace ACL isolation. A secondary lost-update window between the unlocked &=~BIT() in alloc and the locked |= BIT() in thread_idx_free() can also leak entries from the thread-index pool.
The defect is reachable from any user-mode thread via the unrestricted __syscall k_object_alloc and is gated on CONFIG_USERSPACE, CONFIG_DYNAMIC_OBJECTS, and CONFIG_SMP. The flaw was introduced when the per-thread permission index was added in 2018 and is present in every release up to and including v4.4.0. Fixed by holding lists_lock across the bitmap RMW and the permissions clear (and inlining the obj_list traversal that previously took the lock itself).9dCVE-2023-40112—0.4%
——0——CVE-2023-32836—0.4%
——0——CVE-2021-0533—0.4%
——0——CVE-2023-32834—0.4%
——0——CVE-2022-47329—0.4%
——0——CVE-2025-6026—0.4%
——0——CVE-2022-21776—0.4%
——0——CVE-2025-37112—0.4%
——0——CVE-2022-47324—0.4%
——0——CVE-2023-40131—0.4%
——0——CVE-2025-36905—0.4%
——0——CVE-2025-32326—0.4%
——0——CVE-2026-2638—0.4%
——0A vulnerability in the quarantine and restore workflow of the X-VPN macOS website versions 77.0 through 77.5 allow a local attacker to leverage a race condition and symlink manipulation to achieve privileged file corruption.29dCVE-2023-33907—0.4%
——0——CVE-2026-625635.4 MED0.4%
——0Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.5-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Work in Process. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Work in Process, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Work in Process accessible data as well as unauthorized read access to a subset of Oracle Work in Process accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).15dCVE-2023-21313—0.4%
——0——