CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
399,986 CVEs
1,729 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-30
25,086 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2008-0610 EXP | Stack-based buffer overflow in the ClientConnection::NegotiateProtocolVersion function in vncviewer/ClientConnection.cpp in vncviewer for UltraVNC 1.0… | Patch early | 9.3 high | 38.8% | 2008-02-06 |
| CVE-2008-0114 EXP | Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office for Mac 2004 allows user-assisted remote attackers to… | Patch early | 9.3 high | 38.8% | 2008-03-11 |
| CVE-2001-0554 EXP | Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of opt… | Patch early | 10.0 high | 38.7% | 2001-08-14 |
| CVE-2008-4449 EXP | Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message. | Patch early | 9.3 high | 38.7% | 2008-10-06 |
| CVE-2006-2389 EXP | Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to… | Patch early | 9.3 high | 38.7% | 2006-07-11 |
| CVE-2023-26609 EXP | ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field. | Patch early | 7.2 high | 38.7% | 2023-02-27 |
| CVE-2015-2562 EXP | Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla! allow remote attackers to execute… | Patch early | 7.5 high | 38.7% | 2015-03-20 |
| CVE-2018-8716 EXP | WSO2 Identity Server before 5.5.0 has XSS via the dashboard, allowing attacks by low-privileged attackers. | Patch early | 5.4 medium | 38.7% | 2018-04-25 |
| CVE-2013-5093 EXP | The renderLocalView function in render/views.py in graphite-web in Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows… | Patch early | 6.8 medium | 38.7% | 2013-09-27 |
| CVE-2006-0005 EXP | Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the de… | Patch early | 9.3 high | 38.7% | 2006-02-14 |
| CVE-2003-0209 EXP | Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large s… | Patch early | 10.0 high | 38.6% | 2003-05-05 |
| CVE-2015-7309 EXP | The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitr… | Patch early | 6.5 medium | 38.6% | 2015-09-22 |
| CVE-2005-0048 EXP | Microsoft Windows XP SP2 and earlier, 2000 SP3 and SP4, Server 2003, and older operating systems allows remote attackers to cause a denial of service… | Patch early | 7.5 high | 38.6% | 2005-05-02 |
| CVE-2007-5102 EXP | PHP remote file inclusion vulnerability in config.inc.php in Wordsmith 1.0 RC1, when register_globals is enabled, allows remote attackers to execute a… | Patch early | 6.8 medium | 38.6% | 2007-09-26 |
| CVE-2007-5315 EXP | PHP remote file inclusion vulnerability in common.php in LiveAlbum 0.9.0, when register_globals is enabled, allows remote attackers to execute arbitra… | Patch early | 6.8 medium | 38.6% | 2007-10-09 |
| CVE-2007-5781 EXP | PHP remote file inclusion vulnerability in inc/sige_init.php in Sige 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the SYS_PA… | Patch early | 6.8 medium | 38.6% | 2007-11-01 |
| CVE-2007-5015 EXP | Multiple PHP remote file inclusion vulnerabilities in Streamline PHP Media Server 1.0-beta4 allow remote attackers to execute arbitrary PHP code via a… | Patch early | 6.8 medium | 38.6% | 2007-09-20 |
| CVE-2018-7658 EXP | NTSServerSvc.exe in the server in Softros Network Time System 2.3.4 allows remote attackers to cause a denial of service (daemon crash) by sending exa… | Patch early | 7.5 high | 38.5% | 2018-03-26 |
| CVE-2012-0267 EXP | The StopModule method in the NTR ActiveX control before 2.0.4.8 allows remote attackers to execute arbitrary code via a crafted lModule parameter that… | Patch early | 9.3 high | 38.5% | 2012-01-15 |
| CVE-2007-1232 EXP | Directory traversal vulnerability in SQLiteManager 1.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in a SQLiteManager_current… | Patch early | 5.1 medium | 38.5% | 2007-03-03 |
| CVE-2018-17440 EXP | An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. They expose an FTP server that serves by default on port 9000 and has… | Patch early | 9.8 critical | 38.5% | 2018-10-08 |
| CVE-2014-8598 EXP | The XML Import/Export plugin in MantisBT 1.2.x does not restrict access, which allows remote attackers to (1) upload arbitrary XML files via the impor… | Patch early | 6.4 medium | 38.5% | 2014-11-18 |
| CVE-2012-6636 EXP | The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary met… | Patch early | 6.8 medium | 38.5% | 2014-03-03 |
| CVE-2016-10034 EXP | The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before… | Patch early | 9.8 critical | 38.4% | 2016-12-30 |
| CVE-2021-27928 EXP | A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37, 10.3 before 10.3.28, 10.4 before 10.4.18, and 10.5 before 10.5.9; Percona… | Patch early | 7.2 high | 38.4% | 2021-03-19 |
| CVE-2014-3996 EXP | SQL injection vulnerability in the LinkViewFetchServlet servlet in ManageEngine Desktop Central (DC) and Desktop Central Managed Service Providers (MS… | Patch early | 7.5 high | 38.4% | 2014-12-05 |
| CVE-2021-3817 EXP | wbce_cms is vulnerable to Improper Neutralization of Special Elements used in an SQL Command | Patch early | 9.8 critical | 38.4% | 2021-12-09 |
| CVE-2001-1501 EXP | The glob functionality in ProFTPD 1.2.1, and possibly other versions allows remote attackers to cause a denial of service (CPU and memory consumption)… | Patch early | 5.0 medium | 38.4% | 2001-12-31 |
| CVE-2007-0515 EXP | Unspecified vulnerability in Microsoft Word allows user-assisted remote attackers to execute arbitrary code on Word 2000, and cause a denial of servic… | Patch early | 9.3 high | 38.4% | 2007-01-26 |
| CVE-2007-4906 EXP | PHP remote file inclusion vulnerability in tasks/send_queued_emails.php in NuclearBB Alpha 2, when register_globals is enabled, allows remote attacker… | Patch early | 6.8 medium | 38.4% | 2007-09-17 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt