Vulnerabilidades explotables hoy
351,720en la vista actual
Score único combinando CVSS, membresía KEV y EPSS. Cada CVE con su ficha propia — timeline desde publicación hasta explotación activa.
En catálogo KEV1,651
Nuevos KEV · 24H0
Exploit Today ≥ 701,587
Distribución · última ventana
- Crítico1,750
- Alto5,599
- Medio4,484
- Bajo405
Ventana
Severidad
Filtros
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2022-20379—1.0%
——0——CVE-2022-30758—1.0%
——0——CVE-2022-25332—1.0%
——0——CVE-2023-33090—1.0%
——0——CVE-2022-32650—1.0%
——0——CVE-2026-15997—1.0%
——0Out-of-bounds write vulnerability in Legion of the Bouncy Castle Inc. BC-LTS bcprov-lts8on on ARM allows Overflow Buffers.
This vulnerability is associated with program files https://github.Com/bcgit/bc-lts-java/blob/main/native_c/arm/sha/shake.C, https://github.Com/bcgit/bc-lts-java/blob/main/native_c/arm/sha/sha3.C.
This issue affects BC-LTS: from 2.73.0 before 2.73.12.1.
Issue is only applicable if application involved is accepting memoable SHA3 / SHAKE states from potentially untrusted sources.4dCVE-2022-33700—1.0%
——0——CVE-2023-20609—1.0%
——0——CVE-2022-32651—1.0%
——0——CVE-2022-21777—1.0%
——0——CVE-2023-33899—1.0%
——0——CVE-2023-20630—1.0%
——0——CVE-2023-20966—1.0%
——0——CVE-2022-33699—1.0%
——0——CVE-2021-0871—1.0%
——0——CVE-2026-32043—1.0%
——0——CVE-2026-31516—1.0%
——0——CVE-2021-25472—1.0%
——0——CVE-2026-21040—1.0%
——0——CVE-2024-58114—1.0%
——0——CVE-2026-42479—1.0%
——0——CVE-2025-48519—1.0%
——0——CVE-2025-0280—1.0%
——0——CVE-2024-20097—1.0%
——0——CVE-2024-42033—1.0%
——0——CVE-2022-38687—1.0%
——0——CVE-2023-20753—1.0%
——0——CVE-2026-401064.7 MED1.0%
——0Wazuh is a free and open source platform used for threat prevention, detection, and response. Versions 4.6.0 and above prior to 4.14.5 contain a heap-based buffer overflow vulnerability in the syscheck component of the Wazuh agent for Windows. When expanding registry paths containing wildcards (* or ?), the agent allocates a fixed-size heap buffer of 256 bytes (OS_SIZE_256). By creating a registry subkey with a maximum allowed length (255 characters) inside a monitored path, a low-privileged local attacker can force an out-of-bounds write during string concatenation. Since wazuh-agent.exe runs as NT AUTHORITY\SYSTEM, this can lead to a silent Denial of Service (blinding the agent) or potentially Local Privilege Escalation (LPE). This issue has been fixed in version 4.14.5.2dCVE-2022-21763—1.0%
——0——CVE-2022-21764—1.0%
——0——CVE-2022-32652—1.0%
——0——CVE-2024-22451—1.0%
——0——CVE-2024-20096—1.0%
——0——CVE-2018-9379—1.0%
——0——CVE-2025-31937—1.0%
——0——CVE-2024-45448—1.0%
——0——CVE-2025-48578—1.0%
——0——CVE-2023-42719—1.0%
——0——CVE-2023-42720—1.0%
——0——CVE-2023-42721—1.0%
——0——