CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
400,458 CVEs
1,730 on KEV
17,275 EPSS ≥ 10%
25,087 with exploits
synced 2026-10-01
12,661 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2015-3112 EXP | Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allow attackers to execute arbitrary code or cause a denial of service (… | Patch early | 10.0 high | 14.3% | 2015-06-24 |
| CVE-2010-2168 EXP | Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with… | Patch early | 9.3 high | 14.3% | 2010-06-30 |
| CVE-2010-2201 EXP | Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with… | Patch early | 9.3 high | 14.3% | 2010-06-30 |
| CVE-2000-0699 EXP | Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strin… | Patch early | 10.0 high | 14.3% | 2000-10-20 |
| CVE-2006-1905 EXP | Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.3 allow remote attackers to execute arbitrary code via format string specifi… | Patch early | 7.5 high | 14.3% | 2006-04-20 |
| CVE-2016-0861 EXP | General Electric (GE) Industrial Solutions UPS SNMP/Web Adapter devices with firmware before 4.8 allow remote authenticated users to execute arbitrary… | Patch early | 8.8 high | 14.2% | 2016-02-05 |
| CVE-2019-11445 EXP | OpenKM 6.3.2 through 6.3.7 allows an attacker to upload a malicious JSP file into the /okm:root directories and move that file to the home directory o… | Patch early | 7.2 high | 14.2% | 2019-04-22 |
| CVE-2017-8982 EXP | A Remote Authentication Restriction Bypass vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P4 was found. | Patch early | 7.5 high | 14.2% | 2018-02-15 |
| CVE-2018-17442 EXP | An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. An unrestricted file upload vulnerability in the onUploadLogPic endpo… | Patch early | 8.8 high | 14.2% | 2018-10-08 |
| CVE-2000-1220 EXP | The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to… | Patch early | 10.0 high | 14.2% | 2000-01-08 |
| CVE-2019-7751 EXP | A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro… | Patch early | 7.5 high | 14.2% | 2019-12-31 |
| CVE-2009-1511 EXP | GDI+ in Microsoft Windows XP SP3 allows remote attackers to cause a denial of service (infinite loop) via a PNG file that contains a certain large btC… | Patch early | 7.8 high | 14.2% | 2009-05-01 |
| CVE-2018-5511 EXP | On F5 BIG-IP 13.1.0-13.1.0.3 or 13.0.0, when authenticated administrative users execute commands in the Traffic Management User Interface (TMUI), also… | Patch early | 7.2 high | 14.2% | 2018-04-13 |
| CVE-2017-9347 EXP | In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/asn1/ros/packet-ros-… | Patch early | 7.5 high | 14.2% | 2017-06-02 |
| CVE-2020-8416 EXP | IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large volume of connections to the PASV mode port. | Patch early | 7.5 high | 14.2% | 2020-01-29 |
| CVE-2015-7944 EXP | The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11.8, 2.12.x before 2.12.6, 2.13… | Patch early | 7.5 high | 14.2% | 2017-08-18 |
| CVE-2010-4435 EXP | Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability, related to CD… | Patch early | 10.0 high | 14.2% | 2011-01-19 |
| CVE-2008-4318 EXP | Observer 0.3.2.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter to (1) whois.php or… | Patch early | 10.0 high | 14.1% | 2008-09-29 |
| CVE-2014-0787 EXP | Stack-based buffer overflow in WellinTech KingSCADA before 3.1.2.13 allows remote attackers to execute arbitrary code via a crafted packet. | Patch early | 10.0 high | 14.1% | 2014-04-12 |
| CVE-2006-2270 EXP | PHP remote file inclusion vulnerability in includes/config.php in Jetbox CMS 2.1 allows remote attackers to execute arbitrary code via a URL in the re… | Patch early | 7.5 high | 14.1% | 2006-05-09 |
| CVE-2005-4593 EXP | PHP remote file inclusion vulnerability in phpDocumentor 1.3.0 rc4 and earlier, when register_globals is enabled, allows remote attackers to execute a… | Patch early | 7.5 high | 14.1% | 2005-12-31 |
| CVE-2003-0166 EXP | Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service (memory consumption) and possi… | Patch early | 7.5 high | 14.1% | 2003-04-02 |
| CVE-2005-2841 EXP | Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 and 12.3T, and 12.4 and 12.4T al… | Patch early | 7.5 high | 14.1% | 2005-09-08 |
| CVE-2017-7783 EXP | If a long user name is used in a username/password combination in a site URL (such as " http://UserName:Password@example.com"), the resulting modal pr… | Patch early | 7.5 high | 14.1% | 2018-06-11 |
| CVE-2016-5679 EXP | cgi-bin/cgi_main in NUUO NVRmini 2 1.7.6 through 3.0.0 and NETGEAR ReadyNAS Surveillance 1.1.2 allows remote authenticated users to execute arbitrary… | Patch early | 8.8 high | 14.1% | 2016-08-31 |
| CVE-2009-1669 EXP | The smarty_function_math function in libs/plugins/function.math.php in Smarty 2.6.22 allows context-dependent attackers to execute arbitrary commands… | Patch early | 10.0 high | 14.1% | 2009-05-18 |
| CVE-2012-5106 EXP | Stack-based buffer overflow in FreeFloat FTP Server 1.0 allows remote authenticated users to execute arbitrary code via a long string in a PUT command… | Patch early | 10.0 high | 14.1% | 2014-06-20 |
| CVE-2010-1175 EXP | Microsoft Internet Explorer 7.0 on Windows XP and Windows Server 2003 allows remote attackers to have an unspecified impact via a certain XML document… | Patch early | 9.3 high | 14.1% | 2010-03-29 |
| CVE-2021-42165 EXP | MitraStar GPT-2541GNAC-N1 (HGU) 100VNZ0b33 devices allow remote authenticated users to obtain root access by executing command "deviceinfo show file &… | Patch early | 8.8 high | 14.1% | 2022-05-03 |
| CVE-2016-9838 EXP | An issue was discovered in components/com_users/models/registration.php in Joomla! before 3.6.5. Incorrect filtering of registration form data stored… | Patch early | 7.5 high | 14.1% | 2016-12-16 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt