Vulnerabilidades explotables hoy
351,724en la vista actual
Score único combinando CVSS, membresía KEV y EPSS. Cada CVE con su ficha propia — timeline desde publicación hasta explotación activa.
En catálogo KEV1,651
Nuevos KEV · 24H0
Exploit Today ≥ 701,587
Distribución · última ventana
- Crítico1,765
- Alto5,628
- Medio4,518
- Bajo412
Ventana
Severidad
Filtros
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2025-58124—1.1%
——0——CVE-2025-58125—1.1%
——0——CVE-2025-58126—1.1%
——0——CVE-2025-58127—1.1%
——0——CVE-2026-39388—1.1%
——0——CVE-2026-39671—1.1%
——0——CVE-2026-20617—1.1%
——0——CVE-2025-66660—1.1%
——0——CVE-2025-69021—1.1%
——0——CVE-2022-36852—1.1%
——0——CVE-2026-0819—1.1%
——0——CVE-2020-0199—1.1%
——0——CVE-2025-48521—1.1%
——0——CVE-2026-141247.8 ALT1.1%
——0Inappropriate implementation in CredentialProvider in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: Low)16dCVE-2025-20994—1.1%
——0——CVE-2022-20467—1.1%
——0——CVE-2025-34427—1.1%
——0——CVE-2022-50259—1.1%
——0——CVE-2025-36051—1.1%
——0——CVE-2022-36863—1.1%
——0——CVE-2026-11958—1.1%
——0——CVE-2025-54514—1.1%
——0——CVE-2024-21460—1.1%
——0——CVE-2026-58894.3 MED1.1%
——0Cryptographic Flaw in PDFium in Google Chrome prior to 147.0.7727.55 allowed an attacker to read potentially sensitive information from encrypted PDFs via a brute-force attack. (Chromium security severity: Medium)2dCVE-2026-467337.8 ALT1.1%
——0Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3, contain an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.12dCVE-2026-33632—1.1%
——0——CVE-2025-67794—1.1%
——0——CVE-2024-45571—1.1%
——0——CVE-2026-56407—1.1%
——0——CVE-2026-33631—1.1%
——0——CVE-2021-22550—1.1%
——0——CVE-2025-21040—1.1%
——0——CVE-2022-36844—1.1%
——0——CVE-2026-32745—1.1%
——0——CVE-2026-127244.3 MED1.1%
——0The Kirki WordPress plugin before 6.0.12 does not sanitise or escape the email subject and body values supplied in a request before including them in the password-reset email it sends as HTML, allowing unauthenticated users to inject arbitrary HTML into the message delivered to a registered user, which can be used for phishing.1dCVE-2022-36842—1.1%
——0——CVE-2024-45004—1.1%
——0——CVE-2026-41886—1.1%
——0——CVE-2025-66521—1.1%
——0——CVE-2022-36845—1.1%
——0——