CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
401,289 CVEs
1,734 on KEV
17,292 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-05
25,091 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2019-6706 EXP | Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to trigger a de… | Patch early | 7.5 high | 17.4% | 2019-01-23 |
| CVE-2021-24040 EXP | Due to use of unsafe YAML deserialization logic, an attacker with the ability to modify local YAML configuration files could provide malicious input,… | Patch early | 9.8 critical | 17.4% | 2021-09-10 |
| CVE-2009-4637 EXP | FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-b… | Patch early | 10.0 high | 17.4% | 2010-02-10 |
| CVE-2021-24786 EXP | The Download Monitor WordPress plugin before 4.4.5 does not properly validate and escape the "orderby" GET parameter before using it in a SQL statemen… | Patch early | 7.2 high | 17.3% | 2022-01-03 |
| CVE-2019-12185 EXP | eLabFTW 1.8.5 is vulnerable to arbitrary file uploads via the /app/controllers/EntityController.php component. This may result in remote command execu… | Patch early | 8.8 high | 17.3% | 2019-05-20 |
| CVE-1999-0869 EXP | Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka frame spoofing. | Patch early | 2.6 low | 17.3% | 1998-12-01 |
| CVE-2013-4660 EXP | The JS-YAML module before 2.0.5 for Node.js parses input without properly considering the unsafe !!js/function tag, which allows remote attackers to e… | Patch early | 6.8 medium | 17.3% | 2013-06-28 |
| CVE-2017-5447 EXP | An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an att… | Patch early | 9.1 critical | 17.3% | 2018-06-11 |
| CVE-2018-19908 EXP | An issue was discovered in MISP 2.4.9x before 2.4.99. In app/Model/Event.php (the STIX 1 import code), an unescaped filename string is used to constru… | Patch early | 8.8 high | 17.3% | 2018-12-06 |
| CVE-2007-6681 EXP | Stack-based buffer overflow in modules/demux/subtitle.c in VideoLAN VLC 0.8.6d allows remote attackers to execute arbitrary code via a long subtitle i… | Patch early | 7.5 high | 17.3% | 2008-01-17 |
| CVE-2019-6543 EXP | AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update.… | Patch early | 9.8 critical | 17.3% | 2019-02-13 |
| CVE-2003-1030 EXP | Buffer overflow in DameWare Mini Remote Control before 3.73 allows remote attackers to execute arbitrary code via a long pre-authentication request to… | Patch early | 7.5 high | 17.3% | 2004-02-17 |
| CVE-2017-5404 EXP | A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This… | Patch early | 9.8 critical | 17.3% | 2018-06-11 |
| CVE-2019-10678 EXP | Domoticz before 4.10579 neglects to categorize \n and \r as insecure argument options. | Patch early | 7.5 high | 17.3% | 2019-03-31 |
| CVE-2007-1377 EXP | AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspeci… | Patch early | 5.0 medium | 17.3% | 2007-03-10 |
| CVE-2004-1119 EXP | Stack-based buffer overflow in IN_CDDA.dll in Winamp 5.05, and possibly other versions including 5.06, allows remote attackers to execute arbitrary co… | Patch early | 10.0 high | 17.3% | 2005-01-10 |
| CVE-2004-0526 EXP | Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "al… | Patch early | 5.0 medium | 17.2% | 2004-08-06 |
| CVE-2018-13859 EXP | MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18, allow unauthorized remote attacke… | Patch early | 9.8 critical | 17.2% | 2018-07-17 |
| CVE-2018-7669 EXP | An issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application is vulnerable to a directory… | Patch early | 7.5 high | 17.2% | 2018-04-27 |
| CVE-2012-0271 EXP | Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before S… | Patch early | 10.0 high | 17.2% | 2012-09-19 |
| CVE-2010-3609 EXP | The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SL… | Patch early | 5.0 medium | 17.2% | 2011-03-11 |
| CVE-2013-4694 EXP | Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possib… | Patch early | 7.5 high | 17.2% | 2014-04-16 |
| CVE-2019-12099 EXP | In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.… | Patch early | 8.8 high | 17.2% | 2019-05-14 |
| CVE-2008-4342 EXP | NuMedia Soft NMS DVD Burning SDK Activex NMSDVDX.DVDEngineX.1 ActiveX control (NMSDVDX.dll) 1.013C and earlier, as used in CDBurnerXP 4.2.1.976, BurnA… | Patch early | 9.3 high | 17.2% | 2008-09-30 |
| CVE-2017-5850 EXP | httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Ran… | Patch early | 7.5 high | 17.2% | 2017-03-27 |
| CVE-2001-1370 EXP | prepend.php3 in PHPLib before 7.2d, when register_globals is enabled for PHP, allows remote attackers to execute arbitrary scripts via an HTTP request… | Patch early | 10.0 high | 17.2% | 2001-07-21 |
| CVE-2005-3330 EXP | The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remote attack… | Patch early | 7.5 high | 17.2% | 2005-10-27 |
| CVE-2006-4075 EXP | Multiple PHP remote file inclusion vulnerabilities in Wim Fleischhauer docpile: wim's edition (docpile:we) 0.2.2 and earlier allow remote attackers to… | Patch early | 5.1 medium | 17.2% | 2006-08-11 |
| CVE-2015-2433 EXP | The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2,… | Patch early | 2.1 low | 17.2% | 2015-08-15 |
| CVE-2001-0348 EXP | Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace. | Patch early | 5.0 medium | 17.2% | 2001-07-21 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt