Vulnerabilities exploitable today
372,212in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,703
New KEV · 24H0
Exploit Today ≥ 701,643
Distribution · last window
- Critical2,286
- High8,401
- Medium6,423
- Low627
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-79590——
———A NULL pointer dereference vulnerability exists in the Prism parser component of mruby 4.0.0. An attacker can provide a specially crafted Ruby source file that triggers the parser to pass a NULL pointer to nonnull string handling functions, resulting in undefined behavior and application crash.5hCVE-2026-882877.5 HIG—
———GeoVision GV-LPC2211 V1.13 fails to bound the number of Scopes tokens in unauthenticated ONVIF WS-Discovery Probe requests, allowing a remote attacker to corrupt stack control state and crash the discovery process.11hCVE-2026-817898.6 HIG—
———Unauthenticated Arbitrary File Deletion in Advanced Product Fields Extended for WooCommerce <= 3.1.6 versions.6hCVE-2026-817916.5 MED—
———Subscriber Cross Site Scripting (XSS) in EventON <= 2.5.7 versions.11hCVE-2026-882867.5 HIG—
———GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.11hCVE-2026-882859.4 CRI—
———GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.11hCVE-2026-785758.8 HIG—
———IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary commands due to improper validation of command-line arguments in the MCP stdio server configuration.5hCVE-2026-882844.9 MED—
———GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF SetUser requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.11hCVE-2026-817936.5 MED—
———Unauthenticated Broken Access Control in Salon booking system <= 10.31.5 versions.12hCVE-2026-882834.9 MED—
———GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF CreateUsers requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.11hCVE-2026-882827.2 HIG—
———GeoVision GV-LPC2211 V1.13 allows an administrator-controlled FTP username containing shell metacharacters to be executed as arbitrary root commands during a subsequent FTP-account update.11hCVE-2026-817947.5 HIG—
———Unauthenticated Broken Access Control in Shirt Product Designer for WooCommerce 1.0.4 versions.9hCVE-2026-785739.8 CRI—
———IBM ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain administrative access due to the use of default credentials.5hCVE-2026-817957.1 HIG—
———Unauthenticated Cross Site Scripting (XSS) in Page Visits Counter – Lite <= 1.2.3 versions.12hCVE-2026-0303——
———A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Checkov scans a directory that contains an attacker-controlled configuration file.13hCVE-2026-817967.3 HIG—
———Unauthenticated Broken Authentication in WP Travel <= 12.0.3 versions.6hCVE-2026-870908.3 HIG—
———Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog node-write path that may allow an authenticated attacker to delete another node's catalog registration and take over its node identity. An attacker with a token granting node-write permission on any single node name may exploit this issue if they can obtain the node ID of a node they do not control. This vulnerability (CVE-2026-87090) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1.22.12 and 2.0.4.8hCVE-2026-785718.8 HIG—
———IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an unguarded eval() call on attacker-controlled input.5hCVE-2026-882814.9 MED—
———GeoVision GV-LPC2211 V1.13 fails to limit repeated Username elements in ONVIF DeleteUsers requests, allowing an authenticated administrator to overflow a stack array and crash the ONVIF worker.11hCVE-2026-817997.5 HIG—
———Unauthenticated Broken Access Control in Return Refund and Exchange For WooCommerce <= 4.6.4 versions.11hCVE-2026-785698.8 HIG—
———IBM Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to execute arbitrary code due to an incomplete denylist in the security scanner.5hCVE-2026-818009.3 CRI—
———Unauthenticated SQL Injection in Verified Reviews (Avis Vérifiés) <= 2.4.6 versions.12hCVE-2026-818018.1 HIG—
———Subscriber Settings Change in WP-Stateless <= 4.4.1 versions.9hCVE-2026-760598.8 HIG—
———IBM Langflow OSS 1.0.0 through 1.11.5 An attacker who could submit custom component source code could bypass the static security scanner by crafting an annotated class-body assignment that resolved to a dangerous callable through alias tracking; the resolved value was never checked against the dangerous callable blocklist due to the logic error. If the crafted component reached the runtime execution path, the attacker could cause arbitrary operating system commands to execute on the server in-process, with the privileges of the running service.5hCVE-2026-818037.5 HIG—
———Subscriber Remote Code Execution (RCE) in RepairBuddy <= 4.1224 versions.12hCVE-2026-882804.9 MED—
———GeoVision GV-LPC2211 V1.13 copies an oversized ONVIF SetUser password into a fixed stack field, allowing an authenticated administrator to crash the ONVIF worker.11hCVE-2026-757778.8 HIG—
———IBM Aspera Enterprise WebApps 1.0.0 through 1.0.5 could allow a local attacker to escape container protections due to unrestricted system calls being permitted within the container.5hCVE-2026-756248.8 HIG—
———IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.27 could allow a remote authenticated attacker to bypass security restrictions due to incorrect authorization.5hCVE-2026-818047.5 HIG—
———Unauthenticated Sensitive Data Exposure in ZHBackup – Backup, Restore & Migration <= 2.4.2 versions.6hCVE-2026-71647——
———An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the checkCollisionCallback, execFSMCallback, planFromGlobalTraj in ego_replan_fsm.cpp5hCVE-2026-818058.1 HIG—
———Unauthenticated Privilege Escalation in SiteSkite <= 2.1.5 versions.11hCVE-2026-848167.1 HIG—
———Unauthenticated Cross Site Scripting (XSS) in WPCS <= 1.3.2 versions.12hCVE-2026-848197.1 HIG—
———Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.3 versions.9hCVE-2026-848217.5 HIG—
———Unauthenticated Broken Access Control in WP Fast Total Search <= 1.82.284 versions.12hCVE-2026-853106.5 MED—
———import_contacts Path Traversal in Groundhogg <= 4.7.1 versions.6hCVE-2026-71645——
———An issue in Robotics-STAR-Lab (SYSU STAR Group) RACER Tested affected version: commit abcdef1234567890 allows an attacker to cause a denial of service via the exploration state machine5hCVE-2026-71643——
———An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM component5hCVE-2026-88004——
———Traefik is an open source HTTP reverse proxy and load balancer. From 3.2.0 until 3.7.13, Traefik entrypoint defenses aliasHeadersStrategy, underscoreHeadersStrategy, and forwardedHeaders inspect req.Header but not req.Trailer, allowing an unauthenticated client to submit an aliasing or trusted header name in an HTTP/1.1 chunked trailer or an HTTP/2 trailer. When the retry or buffering middleware reads the body before the reverse proxy clones the request, the attacker-controlled trailer value reaches a backend that merges trailers into the header namespace, bypassing the documented delete or reject behavior and potentially spoofing identity or forwarded routing data. This issue is fixed in 3.7.13.8hCVE-2026-71642——
———An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the EGOReplanFSM::checkCollisionCallback()5hCVE-2026-71640——
———An issue in ZJU-FAST-Lab EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows unsafe vehicle motion via improper handling of expired trajectory data in the replanning pipeline5h