CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
400,157 CVEs
1,730 on KEV
17,275 EPSS ≥ 10%
25,087 with exploits
synced 2026-10-01
12,661 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2016-3237 EXP | Kerberos in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8… | Patch early | 7.5 high | 17.2% | 2016-08-09 |
| CVE-2007-1090 EXP | Microsoft Windows Explorer on Windows XP and 2003 allows remote user-assisted attackers to cause a denial of service (crash) via a malformed WMF file,… | Patch early | 7.1 high | 17.2% | 2007-02-26 |
| CVE-1999-0113 EXP | Some implementations of rlogin allow root access if given a -froot parameter. | Patch early | 10.0 high | 17.2% | 1994-05-23 |
| CVE-2001-0763 EXP | Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arbitrary code via a long ident response, which is no… | Patch early | 7.5 high | 17.2% | 2001-10-18 |
| CVE-2021-25076 EXP | The WP User Frontend WordPress plugin before 3.5.26 does not validate and escape the status parameter before using it in a SQL statement in the Subscr… | Patch early | 8.8 high | 17.1% | 2022-01-24 |
| CVE-2006-5020 EXP | Multiple PHP remote file inclusion vulnerabilities in SolidState 0.4 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the… | Patch early | 7.5 high | 17.1% | 2006-09-27 |
| CVE-2006-5627 EXP | Multiple PHP remote file inclusion vulnerabilities in QnECMS 2.5.6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the a… | Patch early | 7.5 high | 17.1% | 2006-10-31 |
| CVE-2013-0008 EXP | win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Wind… | Patch early | 7.2 high | 17.1% | 2013-01-09 |
| CVE-2017-15049 EXP | The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, w… | Patch early | 8.8 high | 17% | 2017-12-19 |
| CVE-2004-1029 EXP | The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict acces… | Patch early | 9.3 high | 17% | 2005-03-01 |
| CVE-2010-2943 EXP | The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote au… | Patch early | 8.1 high | 17% | 2010-09-30 |
| CVE-2015-5079 EXP | Directory traversal vulnerability in widgets/logs.php in BlackCat CMS before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot)… | Patch early | 7.5 high | 17% | 2018-02-28 |
| CVE-2013-6810 EXP | The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Advi… | Patch early | 10.0 high | 17% | 2013-12-12 |
| CVE-2001-0212 EXP | Directory traversal vulnerability in HIS Auktion 1.62 allows remote attackers to read arbitrary files via a .. (dot dot) in the menue parameter, and p… | Patch early | 7.5 high | 17% | 2001-06-02 |
| CVE-2010-1956 EXP | Directory traversal vulnerability in the Gadget Factory (com_gadgetfactory) component 1.0.0 and 1.5.0 for Joomla! allows remote attackers to read arbi… | Patch early | 7.5 high | 17% | 2010-05-19 |
| CVE-2013-4977 EXP | Buffer overflow in the RTSP Packet Handler in Hikvision DS-2CD7153-E IP camera with firmware 4.1.0 b130111 (Jan 2013), and possibly other devices, all… | Patch early | 10.0 high | 17% | 2014-03-03 |
| CVE-2015-2280 EXP | snwrite.cgi in AirLink101 SkyIPCam1620W Wireless N MPEG4 3GPP network camera with firmware FW_AIC1620W_1.1.0-12_20120709_r1192.pck allows remote authe… | Patch early | 8.8 high | 17% | 2017-07-25 |
| CVE-2014-5119 EXP | Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka glibc) allows context-dependent attackers to cause a den… | Patch early | 7.5 high | 17% | 2014-08-29 |
| CVE-2019-1120 EXP | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerabili… | Patch early | 8.8 high | 16.9% | 2019-07-15 |
| CVE-2019-1121 EXP | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerabili… | Patch early | 8.8 high | 16.9% | 2019-07-15 |
| CVE-2019-1122 EXP | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerabili… | Patch early | 8.8 high | 16.9% | 2019-07-15 |
| CVE-2019-1123 EXP | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerabili… | Patch early | 8.8 high | 16.9% | 2019-07-15 |
| CVE-2019-1128 EXP | A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerabili… | Patch early | 8.8 high | 16.9% | 2019-07-15 |
| CVE-2010-1531 EXP | Directory traversal vulnerability in the redSHOP (com_redshop) component 1.0.x for Joomla! allows remote attackers to read arbitrary files via a .. (d… | Patch early | 7.5 high | 16.9% | 2010-04-26 |
| CVE-2008-0250 EXP | Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arbitrary code via a Studio Solution (.SLN) file with… | Patch early | 9.3 high | 16.9% | 2008-01-12 |
| CVE-2013-2678 EXP | Cisco Linksys E4200 1.0.05 Build 7 routers contain a Local File Include Vulnerability which could allow remote attackers to obtain sensitive informati… | Patch early | 8.1 high | 16.9% | 2020-02-04 |
| CVE-2012-3282 EXP | Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code v… | Patch early | 10.0 high | 16.9% | 2013-02-06 |
| CVE-2008-5177 EXP | Stack-based buffer overflow in the DtbClsLogin function in Yosemite Backup 8.7 allows remote attackers to (1) execute arbitrary code on a Linux platfo… | Patch early | 10.0 high | 16.9% | 2008-11-20 |
| CVE-2008-3362 EXP | Unrestricted file upload vulnerability in upload.php in the Giulio Ganci Wp Downloads Manager module 0.2 for WordPress allows remote attackers to exec… | Patch early | 10.0 high | 16.8% | 2008-07-30 |
| CVE-2010-3152 EXP | Untrusted search path vulnerability in Adobe Illustrator CS4 14.0.0, CS5 15.0.1 and earlier, and possibly other versions allows local users, and possi… | Patch early | 9.3 high | 16.8% | 2010-08-27 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt