CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
399,157 CVEs
1,728 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-29
25,086 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2006-3459 EXP | Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow context-depe… | Patch early | 7.5 high | 53.7% | 2006-08-03 |
| CVE-2016-3209 EXP | Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Se… | Patch early | 5.5 medium | 53.7% | 2016-10-14 |
| CVE-2017-7310 EXP | A buffer overflow vulnerability in Import Command in SyncBreeze before 10.6, DiskSorter before 10.6, DiskBoss before 8.9, DiskPulse before 10.6, DiskS… | Patch early | 7.8 high | 53.7% | 2017-03-29 |
| CVE-2019-6441 EXP | An issue was discovered on Shenzhen Coship RT3050 4.0.0.40, RT3052 4.0.0.48, RT7620 10.0.0.49, WM3300 5.0.0.54, and WM3300 5.0.0.55 devices. The passw… | Patch early | 9.8 critical | 53.6% | 2019-03-21 |
| CVE-2017-17932 EXP | A buffer overflow vulnerability exists in MediaServer.exe in ALLPlayer ALLMediaServer 0.95 and earlier that could allow remote attackers to execute ar… | Patch early | 9.8 critical | 53.6% | 2017-12-28 |
| CVE-2023-27823 EXP | An authentication bypass in Optoma 1080PSTX C02 allows an attacker to access the administration console without valid credentials. | Patch early | 9.8 critical | 53.6% | 2023-05-12 |
| CVE-2002-1143 EXP | Microsoft Word and Excel allow remote attackers to steal sensitive information via certain field codes that insert the information when the document i… | Patch early | 5.0 medium | 53.6% | 2003-04-11 |
| CVE-2019-19844 EXP | Django before 1.11.27, 2.x before 2.2.9, and 3.x before 3.0.1 allows account takeover. A suitably crafted email address (that is equal to an existing… | Patch early | 9.8 critical | 53.6% | 2019-12-18 |
| CVE-2002-1254 EXP | Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model and access information on the local system or in other… | Patch early | 7.5 high | 53.5% | 2002-12-11 |
| CVE-2023-29689 EXP | PyroCMS 3.9 contains a remote code execution (RCE) vulnerability that can be exploited through a server-side template injection (SSTI) flaw. This vuln… | Patch early | 9.8 critical | 53.5% | 2023-08-04 |
| CVE-2021-23017 EXP | A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte… | Patch early | 7.7 high | 53.5% | 2021-06-01 |
| CVE-2011-0104 EXP | Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allow remote attackers to execute arbi… | Patch early | 9.3 high | 53.4% | 2011-04-13 |
| CVE-2005-1978 EXP | COM+ in Microsoft Windows does not properly "create and use memory structures," which allows local users or remote attackers to execute arbitrary code… | Patch early | 7.5 high | 53.4% | 2005-10-12 |
| CVE-2005-2847 EXP | img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in… | Patch early | 7.5 high | 53.4% | 2005-09-08 |
| CVE-2006-6761 EXP | Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code… | Patch early | 6.5 medium | 53.4% | 2006-12-27 |
| CVE-2014-9118 EXP | The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacharacters… | Patch early | 8.8 high | 53.4% | 2017-10-17 |
| CVE-2014-0644 EXP | EMC Cloud Tiering Appliance (CTA) 10 through SP1 allows remote attackers to read arbitrary files via an api/login request containing an XML external e… | Patch early | 7.8 high | 53.3% | 2014-04-17 |
| CVE-1999-0502 EXP | A Unix account has a default, null, blank, or missing password. | Patch early | 7.5 high | 53.3% | 1998-03-01 |
| CVE-2015-7007 EXP | Script Editor in Apple OS X before 10.11.1 allows remote attackers to bypass an intended user-confirmation requirement for AppleScript execution via u… | Patch early | 7.5 high | 53.3% | 2015-10-23 |
| CVE-2018-4233 EXP | An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affe… | Patch early | 8.8 high | 53.3% | 2018-06-08 |
| CVE-2006-2502 EXP | Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute… | Patch early | 5.1 medium | 53.3% | 2006-05-22 |
| CVE-2022-33098 EXP | Magnolia CMS v6.2.19 was discovered to contain a cross-site scripting (XSS) vulnerability via the Edit Contact function. This vulnerability allows att… | Patch early | 6.1 medium | 53.3% | 2022-07-07 |
| CVE-2006-5702 EXP | Tikiwiki 1.9.5 allows remote attackers to obtain sensitive information (MySQL username and password) via an empty sort_mode parameter in (1) tiki-list… | Patch early | 5.0 medium | 53.3% | 2006-11-04 |
| CVE-1999-0191 EXP | IIS newdsn.exe CGI script allows remote users to overwrite files. | Patch early | 6.4 medium | 53.3% | 1997-09-01 |
| CVE-2009-0043 EXP | The smmsnmpd service in CA Service Metric Analysis r11.0 through r11.1 SP1 and Service Level Management 3.5 does not properly restrict access, which a… | Patch early | 10.0 high | 53.3% | 2009-01-08 |
| CVE-2018-7739 EXP | antsle antman before 0.9.1a allows remote attackers to bypass authentication via invalid characters in the username and password parameters, as demons… | Patch early | 9.8 critical | 53.2% | 2018-03-07 |
| CVE-2008-3922 EXP | awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which… | Patch early | 9.3 high | 53.2% | 2008-09-04 |
| CVE-2019-9760 EXP | FTPGetter Standard v.5.97.0.177 allows remote code execution when a user initiates an FTP connection to an attacker-controlled machine that sends craf… | Patch early | 9.8 critical | 53.1% | 2019-03-14 |
| CVE-2010-0248 EXP | Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by… | Patch early | 8.1 high | 53.1% | 2010-01-22 |
| CVE-2018-0840 EXP | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Exp… | Patch early | 7.5 high | 53.1% | 2018-02-15 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt