PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / ServervulnKEV agrega CVE-2023-49105 — ownCloud / ownCloudvulnKEV agrega CVE-2026-53362 — Linux / KernelvulnKEV agrega CVE-2026-66384 — JFrog / ArtifactoryvulnKEV agrega CVE-2021-23758 — Ajax.NET Professional / Ajax.NET ProfessionalvulnKEV agrega CVE-2015-3246 — Red Hat / LibuservulnKEV agrega CVE-2015-5287 — Red Hat / Automatic Bug Reporting ToolvulnKEV agrega CVE-2022-0995 — Linux / KernelvulnKEV agrega CVE-2026-8452 — Citrix / NetScaler ADC and NetScaler GatewayvulnKEV agrega CVE-2019-1068 — Microsoft / SQL ServervulnKEV agrega CVE-2026-60004 — Gitea / GiteavulnKEV agrega CVE-2026-21962 — Oracle / HTTP Server and Oracle Weblogic Server Proxy Plug-invulnKEV agrega CVE-2026-73570 — Synacor / Zimbra Collaboration Suite (ZCS)vulnKEV agrega CVE-2026-72530 — TrueConf / ServervulnKEV agrega CVE-2026-72529 — TrueConf / Server
CVE Watch367,165 in full archive

Vulnerabilities exploitable today

4,337in current view

Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.

In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629

Distribution · last window

  • Critical
    2,263
  • High
    9,269
  • Medium
    5,274
  • Low
    508
Filters

Window

Severity

Flags

Vulnerabilities3,681–3,720 · 4,337
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2019-5434
99.0%
30
CVE-2005-1009
99.0%
30
CVE-2025-48988
99.0%
30
CVE-2018-1612
99.0%
30
CVE-2024-27317
99.0%
30
CVE-2021-45428
99.0%
30
CVE-2022-28731
99.0%
30
CVE-2022-30780
99.0%
30
CVE-2009-2622
99.0%
30
CVE-2022-28080
99.0%
30
CVE-2008-0320
99.0%
30
CVE-2017-6361
99.0%
30
CVE-2014-0782
99.0%
30
CVE-2013-3632
99.0%
30
CVE-2005-2287
99.0%
30
CVE-2025-4443
99.0%
30
CVE-2022-29847
99.0%
30
CVE-2022-48323
99.0%
30
CVE-2017-9788
99.0%
30
CVE-2016-3222
99.0%
30
CVE-2001-0731
99.0%
30
CVE-2023-38099
99.0%
30
CVE-2020-28018
99.0%
30
CVE-2015-4553
99.0%
30
CVE-2023-36041
99.0%
30
CVE-2022-25237
99.0%
30
CVE-2020-1927
99.0%
30
CVE-2015-1397
99.0%
30
CVE-2021-252978.8 HIG
99.0%
KEV80Nagios XI OS Command Injection53d
CVE-2006-4364
99.0%
30
CVE-2017-6527
99.0%
30
CVE-2020-94847.0 HIG
99.0%
30When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a) an attacker is able to control the contents and name of a file on the server; and b) the server is configured to use the PersistenceManager with a FileStore; and c) the PersistenceManager is configured with sessionAttributeValueClassNameFilter="null" (the default unless a SecurityManager is used) or a sufficiently lax filter to allow the attacker provided object to be deserialized; and d) the attacker knows the relative file path from the storage location used by FileStore to the file the attacker has control over; then, using a specifically crafted request, the attacker will be able to trigger remote code execution via deserialization of the file under their control. Note that all of conditions a) to d) must be true for the attack to succeed.6d
CVE-2002-0072
99.0%
30
CVE-2021-24472
99.0%
30
CVE-2004-0842
99.0%
30
CVE-2023-5044
99.0%
30
CVE-2008-1087
99.0%
30
CVE-2015-2856
99.0%
30
CVE-2023-6989
99.0%
30
CVE-2015-3080
99.0%
30