Vulnerabilities exploitable today
363,707in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,671
New KEV · 24H0
Exploit Today ≥ 701,610
Distribution · last window
- Critical2,921
- High12,266
- Medium7,474
- Low679
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2024-38418—0.1%
——0——CVE-2026-00675.5 MED0.1%
——0In multiple functions of ubsan_throwing_runtime.cpp, there is a possible way to cause a permanent denial of service due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.30dCVE-2026-168967.1 HIG0.1%
——0IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to obtain unauthorized access to files due to a time-of-check time-of-use (TOCTOU) race condition.4dCVE-2025-20781—0.1%
——0——CVE-2024-49735—0.1%
——0——CVE-2024-47034—0.1%
——0——CVE-2026-11347—0.1%
——0——CVE-2025-54422—0.1%
——0——CVE-2023-48420—0.1%
——0——CVE-2026-00425.5 MED0.1%
——0In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.30dCVE-2024-47029—0.1%
——0——CVE-2026-00695.5 MED0.1%
——0In verifySignature of ApkChecksums.java, there is a possible way to cause a crash due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.30dCVE-2026-240766.7 MED0.1%
——0Memory Corruption when processing registry values with incorrect types using a direct query method.15dCVE-2023-3781—0.1%
——0——CVE-2024-0028—0.1%
——0——CVE-2025-47346—0.1%
——0——CVE-2025-47388—0.1%
——0——CVE-2025-47406—0.1%
——0——CVE-2026-240888.2 HIG0.1%
——0Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader.30dCVE-2026-00185.5 MED0.1%
——0In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.30dCVE-2023-21290—0.1%
——0——CVE-2026-24929—0.1%
——0——CVE-2025-2713—0.1%
——0——CVE-2025-485707.8 HIG0.1%
——0In multiple functions of PipTaskOrganizer.java, there is a possible way to launch an activity from the background due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.30dCVE-2025-20800—0.1%
——0——CVE-2025-47380—0.1%
——0——CVE-2025-27039—0.1%
——0——CVE-2026-00795.5 MED0.1%
——0In multiple functions of ubsan_throwing_runtime.cpp, there is a possible persistent denial of service due to an integer overflow. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.32dCVE-2025-48569—0.1%
——0——CVE-2026-20424—0.1%
——0——CVE-2026-0134—0.1%
——0——CVE-2024-47016—0.1%
——0——CVE-2025-9142—0.1%
——0——CVE-2025-20788—0.1%
——0——CVE-2025-21431—0.1%
——0——CVE-2025-47356—0.1%
——0——CVE-2026-0138—0.1%
——0——CVE-2026-0152—0.1%
——0——CVE-2026-21444—0.1%
——0——CVE-2026-285807.8 HIG0.1%
——0In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.30d