CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
401,957 CVEs
1,734 on KEV
17,295 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-06
36,763 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2021-4073 | The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a… | In your normal cycle | 9.8 critical | 7% | 2021-12-14 |
| CVE-2019-0786 | An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to… | In your normal cycle | 9.8 critical | 7% | 2019-04-09 |
| CVE-2020-24651 | A syslogtempletselectwin expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) v… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-24652 | A addvsiinterfaceinfo expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) vers… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7141 | A adddevicetoview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7145 | A chooseperfview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7147 | A deployselectbootrom expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) vers… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7148 | A deployselectsoftware expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) ver… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7151 | A faulttrapgroupselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) ver… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7152 | A faultparasset expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s)… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7153 | A iccselectdevtype expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7155 | A select expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7156 | A faultinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) versio… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7157 | A selviewnavcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) versio… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7158 | A perfselecttask expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7160 | A iccselectdeviceseries expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) ve… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7161 | A reporttaskselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7162 | A operatorgroupselectcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iM… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7163 | A navigationto expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s):… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7164 | A operationselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7165 | A iccselectcommand expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7166 | A operatorgrouptreeselectcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7168 | A selectusergroup expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7169 | A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) ver… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2020-7170 | A select expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior… | In your normal cycle | 9.8 critical | 7% | 2020-10-19 |
| CVE-2004-0772 | Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitr… | In your normal cycle | 9.8 critical | 7% | 2004-10-20 |
| CVE-2018-16462 | A command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shell command execution through a… | In your normal cycle | 10.0 critical | 7% | 2018-10-30 |
| CVE-2017-3079 | Adobe Flash Player versions 25.0.0.171 and earlier have an exploitable memory corruption vulnerability in the internal representation of raster data.… | In your normal cycle | 9.8 critical | 7% | 2017-06-20 |
| CVE-2017-12814 | Stack-based buffer overflow in the CPerlHost::Add method in win32/perlhost.h in Perl before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 on Windows allows… | In your normal cycle | 9.8 critical | 7% | 2017-09-28 |
| CVE-2022-25125 | MCMS v5.2.4 was discovered to contain a SQL injection vulnerability via search.do in the file /mdiy/dict/listExcludeApp. | In your normal cycle | 9.8 critical | 7% | 2022-03-03 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt