Vulnerabilities exploitable today
4,338in current view
Single score combining CVSS, KEV membership and EPSS. Every CVE with its own record — timeline from publication to active exploitation.
In KEV catalog1,685
New KEV · 24H0
Exploit Today ≥ 701,629
Distribution · last window
- Critical2,263
- High9,269
- Medium5,274
- Low508
Window
Severity
Flags
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2019-17382—98.9%
——30——CVE-2019-7111—98.9%
——30——CVE-2001-0800—98.9%
——30——CVE-2023-20118—98.9%
KEV—80Cisco Small Business RV Series Routers Command Injection Vulnerability—CVE-2006-0395—98.9%
——30——CVE-2019-19609—98.9%
——30——CVE-2021-24347—98.9%
——30——CVE-2022-38130—98.9%
——30——CVE-2026-185778.1 HIG98.9%
KEV—80N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability27dCVE-2017-6398—98.9%
——30——CVE-2010-1663—98.9%
——30——CVE-2006-2379—98.9%
——30——CVE-2021-311967.2 HIG98.9%
KEV—80Microsoft Exchange Server Information Disclosure Vulnerability21dCVE-2024-2511—98.9%
——30——CVE-2023-414256.1 MED98.9%
——30Cross Site Scripting vulnerability in Wonder CMS v.3.2.0 thru v.3.4.2 allows a remote attacker to execute arbitrary code via a crafted script uploaded to the installModule component.54dCVE-2017-16603—98.9%
——30——CVE-2025-24367—98.9%
——30——CVE-2006-1993—98.9%
——30——CVE-2005-0455—98.9%
——30——CVE-2020-13158—98.9%
——30——CVE-2019-5355—98.9%
——30——CVE-2021-44827—98.9%
——30——CVE-2015-6172—98.9%
——30——CVE-2017-7659—98.9%
——30——CVE-2022-21971—98.9%
KEV—80Microsoft Windows Runtime Remote Code Execution Vulnerability—CVE-2016-4555—98.9%
——30——CVE-2016-3325—98.9%
——30——CVE-2008-1610—98.9%
——30——CVE-2021-28165—98.9%
——30——CVE-2021-27651—98.9%
——30——CVE-2022-25487—98.9%
——30——CVE-2007-3896—98.9%
——30——CVE-2026-491607.5 HIG98.9%
——30Uncontrolled resource consumption in HTTP/2 allows an unauthorized attacker to deny service over a network.39dCVE-2023-32645—98.9%
——30——CVE-2023-30591—98.9%
——30——CVE-2025-2945—98.9%
——30——CVE-2008-0550—98.9%
——30——CVE-2018-5006—98.9%
——30——CVE-2024-23917—98.9%
——30——CVE-2010-1429—98.9%
——30——