Vulnerabilities exploitable today
371,173in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,695
New KEV · 24H0
Exploit Today ≥ 701,637
Distribution · last window
- Critical2,229
- High8,582
- Medium6,298
- Low585
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-28584——
———In createSessionInternal of PackageInstallerService.java, there is a possible way to permanently DoS the device due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-28583——
———In validate_camera_metadata_structure of camera_metadata.c, there is a possible out of bounds write due to a logical error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-28582——
———In onCreate of ConfirmDeviceCredentialActivity.java, there is a possible unauthorized access to and modification of device credentials due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-28572——
———In onCreate of InstallLaunch.kt, there is a possible misleading UI due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-0084——
———In multiple functions of HostEmulationManager.java, there is a possible background activity launch due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-0065——
———In areBackgroundActivityStartsAllowed of BackgroundLaunchProcessController.java, there is a possible unintended way to launch activities in the background due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-0054——
———In isCallerAllowed of WalletContextualLocationsService.kt, there is a possible way to get wallet information due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.9hCVE-2026-866703.7 LOW—
———A flaw has been found in aircheng-org iWebShop-5 up to 5.15. This impacts an unknown function of the file controllers/admin.php of the component Authentication Storage. Executing a manipulation of the argument Password can lead to password hash with insufficient computational effort. It is possible to launch the attack remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.9hCVE-2026-819637.8 HIG—
———Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.9hCVE-2026-762019.3 CRI—
———Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field, potentially gaining elevated access or control over the victim's account or session. Scope is changed.9hCVE-2026-819577.8 HIG—
———Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.9hCVE-2026-762028.2 HIG—
———Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain elevated access to sensitive information. Exploitation of this issue does not require user interaction.9hCVE-2026-800937.0 HIG—
———Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.5hCVE-2026-819976.3 MED—
———Acrobat Reader is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized write access. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.7hCVE-2026-785078.8 HIG—
———Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.7hCVE-2026-819968.8 HIG—
———Acrobat Reader is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulnerability to gain elevated access. Exploitation of this issue does not require user interaction. Scope is changed.7hCVE-2026-784516.8 MED—
———Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.9hCVE-2026-784477.8 HIG—
———Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.9hCVE-2026-784448.1 HIG—
———Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.9hCVE-2026-784428.8 HIG—
———Heap-based buffer overflow in Windows OLE DB allows an unauthorized attacker to execute code over a network.8hCVE-2026-784416.5 MED—
———Out-of-bounds read in Windows OLE DB allows an unauthorized attacker to disclose information over a network.8hCVE-2026-784398.8 HIG—
———Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.9hCVE-2026-779116.5 MED—
———Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.7hCVE-2026-779097.7 HIG—
———Insufficiently protected credentials in Azure CycleCloud allows an authorized attacker to disclose information over a network.7hCVE-2026-819948.2 HIG—
———Acrobat Reader is affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.7hCVE-2026-819935.5 MED—
———Acrobat Reader is affected by a Heap-based Buffer Overflow vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.7hCVE-2026-778887.5 HIG—
———Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.7hCVE-2026-730259.8 CRI—
———Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a network.9hCVE-2026-730057.0 HIG—
———Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.9hCVE-2026-771087.5 HIG—
———Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain elevated access to sensitive information. Exploitation of this issue does not require user interaction.9hCVE-2026-729856.8 MED—
———Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges with a physical attack.8hCVE-2026-729637.0 HIG—
———Use after free in Windows Modern Execution Server allows an authorized attacker to elevate privileges locally.9hCVE-2026-771098.6 HIG—
———Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain elevated access to restricted resources. Exploitation of this issue does not require user interaction. Scope is changed.9hCVE-2026-771107.6 HIG—
———Adobe Commerce is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. An attacker with high privileges could leverage this vulnerability to access unauthorized files or directories outside the intended restrictions, causing a limited disruption to availability. Exploitation of this issue does not require user interaction. Scope is changed.9hCVE-2026-729237.5 HIG—
———In Microsoft.OpenApi.YamlReader from 2.0.0-preview.11 until 2.12.0 and from 3.0.0 until 3.10.0, and in Microsoft.OpenApi.Readers prior to 1.6.30, a small YAML OpenAPI document containing nested anchors and aliases can cause uncontrolled resource consumption when parsed through the public YAML reader APIs. YAML is parsed through SharpYaml, which represents aliases as shared nodes in a directed acyclic graph, so the parsed YAML graph stays small, but converting that graph to System.Text.Json.Nodes.JsonNode requires every alias to be materialized as an independent node because a JsonNode cannot be attached to multiple parents. Without a bound on that conversion work, a document with N nested anchors each referenced k times can require k^N materialized JSON nodes, leading to excessive memory allocation and process termination through out-of-memory conditions, a billion laughs style denial of service. The patched versions bound the YAML-to-JSON conversion by node count and nesting depth and report an OpenApiDiagnostic error instead of expanding without limit. This vulnerability is fixed in Microsoft.OpenApi.YamlReader 2.12.0 and 3.10.0, and Microsoft.OpenApi.Readers 1.6.30.10hCVE-2026-713537.0 HIG—
———Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.9hCVE-2026-713347.8 HIG—
———Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attacker to elevate privileges locally.9hCVE-2026-705826.4 MED—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.9hCVE-2026-700657.5 HIG—
———Missing release of memory after effective lifetime in Windows DHCP Server allows an unauthorized attacker to deny service over a network.8hCVE-2026-699295.9 MED—
———Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to disclose information over a network.7h