CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
400,143 CVEs
1,730 on KEV
17,275 EPSS ≥ 10%
25,087 with exploits
synced 2026-09-30
12,661 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2008-3544 EXP | Multiple stack-based buffer overflows in ovalarmsrv in HP OpenView Network Node Manager (OV NNM) 7.51, and possibly 7.01, 7.50, and 7.53, allow remote… | Patch early | 9.0 high | 18% | 2008-10-13 |
| CVE-2016-5330 EXP | Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation… | Patch early | 7.8 high | 18% | 2016-08-08 |
| CVE-2010-1955 EXP | Directory traversal vulnerability in the Deluxe Blog Factory (com_blogfactory) component 1.1.2 for Joomla! allows remote attackers to read arbitrary f… | Patch early | 7.5 high | 17.9% | 2010-05-19 |
| CVE-2001-0053 EXP | One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges. | Patch early | 10.0 high | 17.9% | 2001-02-12 |
| CVE-2023-39026 EXP | Directory Traversal vulnerability in FileMage Gateway Windows Deployments v.1.10.8 and before allows a remote attacker to obtain sensitive information… | Patch early | 7.5 high | 17.9% | 2023-08-22 |
| CVE-2009-1774 EXP | Directory traversal vulnerability in plugins/ddb/foot.php in Strawberry 1.1.1 allows remote attackers to include and execute arbitrary local files via… | Patch early | 9.3 high | 17.9% | 2009-05-22 |
| CVE-2019-3921 EXP | The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sent… | Patch early | 8.8 high | 17.9% | 2019-03-05 |
| CVE-2004-1287 EXP | Buffer overflow in the error function in preproc.c for NASM 0.98.38 1.2 allows attackers to execute arbitrary code via a crafted asm file, a different… | Patch early | 10.0 high | 17.9% | 2005-01-10 |
| CVE-2011-1092 EXP | Integer overflow in ext/shmop/shmop.c in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (crash) and possibly read se… | Patch early | 7.5 high | 17.9% | 2011-03-15 |
| CVE-2007-3554 EXP | Stack-based buffer overflow in the HPSDDX Class (SDD) ActiveX control in sdd.dll in HP Instant Support - Driver Check before 1.5.0.3 allows remote att… | Patch early | 7.6 high | 17.9% | 2007-07-04 |
| CVE-2011-2189 EXP | net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, wh… | Patch early | 7.5 high | 17.9% | 2011-10-10 |
| CVE-2017-0160 EXP | Microsoft .NET Framework 2.0, 3.5, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allows an attacker with access to the local system to execute malicious code, aka… | Patch early | 7.8 high | 17.8% | 2017-04-12 |
| CVE-2017-7308 EXP | The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate certain block-size data, which al… | Patch early | 7.8 high | 17.8% | 2017-03-29 |
| CVE-2007-1365 EXP | Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "inco… | Patch early | 10.0 high | 17.8% | 2007-03-10 |
| CVE-2000-0491 EXP | Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of se… | Patch early | 10.0 high | 17.8% | 2000-05-24 |
| CVE-2008-3957 EXP | The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system v… | Patch early | 9.3 high | 17.8% | 2008-09-11 |
| CVE-2002-0153 EXP | Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, ak… | Patch early | 7.5 high | 17.7% | 2002-04-22 |
| CVE-2016-3644 EXP | The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Syman… | Patch early | 8.4 high | 17.7% | 2016-06-30 |
| CVE-2016-3646 EXP | The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS:S) 6.x through 6.6 MP1; Syman… | Patch early | 8.4 high | 17.7% | 2016-06-30 |
| CVE-2016-9949 EXP | An issue was discovered in Apport before 2.20.4. In apport/ui.py, Apport reads the CrashDB field and it then evaluates the field as Python code if it… | Patch early | 7.8 high | 17.7% | 2016-12-17 |
| CVE-2009-4273 EXP | stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a… | Patch early | 10.0 high | 17.7% | 2010-01-26 |
| CVE-2016-1768 EXP | QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafte… | Patch early | 7.8 high | 17.7% | 2016-03-24 |
| CVE-2017-5177 EXP | A Stack Buffer Overflow issue was discovered in VIPA Controls WinPLC7 5.0.45.5921 and prior. A stack-based buffer overflow vulnerability has been iden… | Patch early | 7.5 high | 17.7% | 2017-05-19 |
| CVE-2014-1677 EXP | Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information. | Patch early | 7.5 high | 17.7% | 2017-04-03 |
| CVE-2018-19627 EXP | In Wireshark 2.6.0 to 2.6.4 and 2.4.0 to 2.4.10, the IxVeriWave file parser could crash. This was addressed in wiretap/vwr.c by adjusting a buffer bou… | Patch early | 7.5 high | 17.7% | 2018-11-29 |
| CVE-2012-4992 EXP | Multiple buffer overflows in FlashFXP.exe in FlashFXP 4.2 allow remote authenticated users to execute arbitrary code via a long unicode string to (1)… | Patch early | 9.0 high | 17.7% | 2012-09-19 |
| CVE-2011-4041 EXP | webvrpcs.exe in Advantech/BroadWin WebAccess allows remote attackers to execute arbitrary code or obtain a security-code value via a long string in an… | Patch early | 10.0 high | 17.7% | 2012-02-06 |
| CVE-2015-8257 EXP | The devtools.sh script in AXIS network cameras allows remote authenticated users to execute arbitrary commands via shell metacharacters in the app par… | Patch early | 8.8 high | 17.7% | 2017-05-02 |
| CVE-2008-5282 EXP | Multiple stack-based buffer overflows in W3C Amaya Web Browser 10.0.1 allow remote attackers to execute arbitrary code via (1) a link with a long HREF… | Patch early | 10.0 high | 17.6% | 2008-11-29 |
| CVE-2016-4176 EXP | Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to… | Patch early | 8.8 high | 17.6% | 2016-07-13 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt