Vulnerabilidades explotables hoy
367,165en la vista actual
Score único combinando CVSS, membresía KEV y EPSS. Cada CVE con su ficha propia — timeline desde publicación hasta explotación activa.
En catálogo KEV1,685
Nuevos KEV · 24H0
Exploit Today ≥ 701,629
Distribución · última ventana
- Crítico2,263
- Alto9,269
- Medio5,274
- Bajo508
Ventana
Severidad
Filtros
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2023-21026—0.5%
——0——CVE-2024-25985—0.5%
——0——CVE-2025-58299—0.5%
——0——CVE-2018-9367—0.5%
——0——CVE-2024-20029—0.5%
——0——CVE-2026-505904.5 MED0.5%
——0In Mimecast Incydr before 2.6.0, arbitrary file access can occur.39dCVE-2025-41647—0.5%
——0——CVE-2018-9370—0.5%
——0——CVE-2025-66330—0.5%
——0——CVE-2026-43657—0.5%
——0——CVE-2022-48246—0.5%
——0——CVE-2023-21269—0.5%
——0——CVE-2023-20705—0.5%
——0——CVE-2024-33058—0.5%
——0——CVE-2026-547873.1 BAJ0.5%
——0sigstore-go is a Go library for Sigstore signing and verification. Prior to 1.2.1, sigstore-go does not check a bundle signing timestamp against the validity window of an ExpiringKey wrapping a self-managed long-lived signing key without a certificate, which can allow an attacker holding expired key material to sign accepted bundles. This issue is fixed in version 1.2.1.31dCVE-2024-34733—0.5%
——0——CVE-2025-46424—0.5%
——0——CVE-2018-9409—0.5%
——0——CVE-2023-20703—0.5%
——0——CVE-2025-26422—0.5%
——0——CVE-2022-47340—0.5%
——0——CVE-2025-22409—0.5%
——0——CVE-2023-21005—0.5%
——0——CVE-2025-48610—0.5%
——0——CVE-2022-48244—0.5%
——0——CVE-2023-21068—0.5%
——0——CVE-2024-235816.7 MED0.5%
——0The HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized application.56dCVE-2025-48528—0.5%
——0——CVE-2025-27045—0.5%
——0——CVE-2022-33731—0.5%
——0——CVE-2025-21422—0.5%
——0——CVE-2022-48245—0.5%
——0——CVE-2023-21257—0.5%
——0——CVE-2026-755734.4 MED0.5%
——0In MongoDB Connector for BI, mongodrdl may write a TLS private-key password to standard error when the password is supplied through both the connection URI and the corresponding command-line option. A local user with access to the captured command output and encrypted key file may use the disclosed password to access the associated TLS client key.3dCVE-2022-48250—0.5%
——0——CVE-2022-33702—0.5%
——0——CVE-2026-23294—0.5%
——0——CVE-2025-26458—0.5%
——0——CVE-2022-48388—0.5%
——0——CVE-2025-21426—0.5%
——0——