Vulnerabilidades explotables hoy
367,284en la vista actual
Score único combinando CVSS, membresía KEV y EPSS. Cada CVE con su ficha propia — timeline desde publicación hasta explotación activa.
En catálogo KEV1,685
Nuevos KEV · 24H0
Exploit Today ≥ 701,629
Distribución · última ventana
- Crítico2,295
- Alto9,354
- Medio5,355
- Bajo528
Ventana
Severidad
Filtros
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2025-20731—1.8%
——1——CVE-2026-43066—1.8%
——1——CVE-2026-43273—1.8%
——1——CVE-2026-316515.5 MED1.8%
——1In the Linux kernel, the following vulnerability has been resolved:
mmc: vub300: fix NULL-deref on disconnect
Make sure to deregister the controller before dropping the reference to
the driver data on disconnect to avoid NULL-pointer dereferences or
use-after-free.49dCVE-2025-52781—1.8%
——1——CVE-2026-32791—1.8%
——1Untrusted search path for some Intel(R) Performance Counter Monitor (Intel(R) PCM) before version tag 202604 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary with an authenticated user combined with a high complexity attack may enable escalation of privilege. This result may potentially occur via local access when attack requirements are not present without special internal knowledge and requires passive user interaction. The potential vulnerability may impact the confidentiality (high), integrity (high) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.19dCVE-2021-0981—1.8%
——1——CVE-2026-663446.7 MED1.8%
——1NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Uncontrolled Search Path Element vulnerability (CWE-427). An authenticated attacker may exploit this vulnerability to execute arbitrary code with SYSTEM privileges.4dCVE-2022-33292—1.8%
——1——CVE-2021-0628—1.8%
——1——CVE-2025-48430—1.8%
——1——CVE-2025-58861—1.8%
——1——CVE-2026-48690—1.8%
——1——CVE-2025-53398—1.8%
——1——CVE-2021-0546—1.8%
——1——CVE-2018-25276—1.8%
——1——CVE-2024-27277—1.8%
——1——CVE-2025-8304—1.8%
——1——CVE-2021-1003—1.8%
——1——CVE-2025-13134—1.8%
——1——CVE-2025-32900—1.8%
——1——CVE-2025-58860—1.8%
——1——CVE-2023-20578—1.8%
——1——CVE-2026-31704—1.8%
——1——CVE-2025-20732—1.8%
——1——CVE-2025-27551—1.8%
——1——CVE-2025-27552—1.8%
——1——CVE-2024-20448—1.8%
——1——CVE-2025-54545—1.8%
——1——CVE-2021-0545—1.8%
——1——CVE-2021-215086.7 MED1.8%
——1Dell VxRail versions before 7.0.200 contain a Plain-text Password Storage Vulnerability in VxRail Manager. A sys-admin user may exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able to use the exposed credentials to access the vulnerable application with privileges of the compromised account.40dCVE-2025-12452—1.8%
——1——CVE-2026-4363—1.8%
——1——CVE-2026-14354—1.8%
——1CWE-522 Insufficiently Protected Credentials vulnerability exists that could cause authentication bypass and unauthorized credential modification, potentially leading to compromise of managed devices, when a local privileged attacker leverages weaknesses in the handling and protection of stored credentials within the application.33dCVE-2021-0627—1.8%
——1——CVE-2022-20196—1.8%
——1——CVE-2020-37232—1.8%
——1——CVE-2022-39849—1.8%
——1——CVE-2025-52791—1.8%
——1——CVE-2025-13162—1.8%
——1——