Vulnerabilidades explotables hoy
367,165en la vista actual
Score único combinando CVSS, membresía KEV y EPSS. Cada CVE con su ficha propia — timeline desde publicación hasta explotación activa.
En catálogo KEV1,685
Nuevos KEV · 24H0
Exploit Today ≥ 701,629
Distribución · última ventana
- Crítico2,263
- Alto9,269
- Medio5,274
- Bajo508
Ventana
Severidad
Filtros
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2022-47365—0.5%
——0——CVE-2022-47471—0.5%
——0——CVE-2026-43415—0.5%
——0——CVE-2023-21305—0.5%
——0——CVE-2022-48450—0.5%
——0——CVE-2023-40139—0.5%
——0——CVE-2023-32826—0.5%
——0——CVE-2023-32807—0.5%
——0——CVE-2025-32333—0.5%
——0——CVE-2026-505446.3 MED0.5%
——0NortheBridge/luminalshine is a Sunshine-compatible game stream host for Moonlight. Prior to version 26.05.0-rc4, a latent gap exists on a default install, the file at `src/platform/windows/misc.cpp` lives at `C:\ProgramData\LuminalShine\config\apps.json` and is created by the `SYSTEM` service. Under Windows' default `C:\ProgramData` inheritance, that gives `BUILTIN\Users` only Read+Execute — not writable — so the canonical EoP doesn't actually trigger on a vanilla install. Version 26.05.0-rc4 contains a patch for the issue. As a workaround, use default condition DACLs for `ProgramData`.17dCVE-2026-31523—0.5%
——0——CVE-2025-20721—0.5%
——0——CVE-2023-32815—0.5%
——0——CVE-2026-234414.7 MED0.5%
——0In the Linux kernel, the following vulnerability has been resolved:
net/mlx5e: Prevent concurrent access to IPSec ASO context
The query or updating IPSec offload object is through Access ASO WQE.
The driver uses a single mlx5e_ipsec_aso struct for each PF, which
contains a shared DMA-mapped context for all ASO operations.
A race condition exists because the ASO spinlock is released before
the hardware has finished processing WQE. If a second operation is
initiated immediately after, it overwrites the shared context in the
DMA area.
When the first operation's completion is processed later, it reads
this corrupted context, leading to unexpected behavior and incorrect
results.
This commit fixes the race by introducing a private context within
each IPSec offload object. The shared ASO context is now copied to
this private context while the ASO spinlock is held. Subsequent
processing uses this saved, per-object context, ensuring its integrity
is maintained.38dCVE-2023-20781—0.5%
——0——CVE-2022-47330—0.5%
——0——CVE-2025-36929—0.5%
——0——CVE-2025-27055—0.5%
——0——CVE-2026-26100—0.5%
——0——CVE-2024-45556—0.5%
——0——CVE-2025-27061—0.5%
——0——CVE-2025-27058—0.5%
——0——CVE-2023-32827—0.5%
——0——CVE-2022-47477—0.5%
——0——CVE-2025-27050—0.5%
——0——CVE-2024-20104—0.5%
——0——CVE-2025-21474—0.5%
——0——CVE-2022-47478—0.5%
——0——CVE-2023-32830—0.5%
——0——CVE-2025-0082—0.5%
——0——CVE-2025-27068—0.4%
——0——CVE-2022-47476—0.5%
——0——CVE-2025-27075—0.5%
——0——CVE-2025-21461—0.5%
——0——CVE-2025-27052—0.5%
——0——CVE-2025-27044—0.5%
——0——CVE-2025-27046—0.5%
——0——CVE-2025-7071—0.5%
——0——CVE-2024-22012—0.5%
——0——CVE-2022-48370—0.5%
——0——