CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
401,488 CVEs
1,734 on KEV
17,295 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-05
320,005 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2006-1664 EXP | Buffer overflow in xine_list_delete_current in libxine 1.14 and earlier, as distributed in xine-lib 1.1.1 and earlier, allows remote attackers to exec… | Patch early | 7.5 high | 15% | 2006-04-07 |
| CVE-2008-0225 EXP | Heap-based buffer overflow in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 and earlier allows remote attackers to execute arb… | Patch early | 6.4 medium | 15% | 2008-01-10 |
| CVE-2009-1068 EXP | Stack-based buffer overflow in BS.Player (bsplayer) 2.32 Build 975 Free and 2.34 Build 980 PRO and earlier allows remote attackers to cause a denial o… | Patch early | 9.3 high | 15% | 2009-03-26 |
| CVE-2001-0555 EXP | ScreamingMedia SITEWare versions 2.5 through 3.1 allows a remote attacker to read world-readable files via a .. (dot dot) attack through (1) the SITE… | Patch early | 10.0 high | 15% | 2001-08-14 |
| CVE-2006-4159 EXP | Multiple PHP remote file inclusion vulnerabilities in Chaussette 080706 and earlier allow remote attackers to execute arbitrary PHP code via a URL in… | Patch early | 7.5 high | 15% | 2006-08-16 |
| CVE-2002-0974 EXP | Help and Support Center for Windows XP allows remote attackers to delete arbitrary files via a link to the hcp: protocol that accesses uplddrvinfo.htm… | Patch early | 5.0 medium | 15% | 2002-09-24 |
| CVE-2013-4775 EXP | NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS… | Patch early | 7.8 high | 15% | 2013-12-19 |
| CVE-2018-18557 EXP | LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0… | Patch early | 8.8 high | 15% | 2018-10-22 |
| CVE-1999-0755 EXP | Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option. | Patch early | 5.0 medium | 15% | 1999-05-27 |
| CVE-2019-1347 EXP | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID… | Patch early | 6.5 medium | 14.9% | 2019-10-10 |
| CVE-1999-0146 EXP | The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded carriage return characters in… | Patch early | 7.5 high | 14.9% | 1997-07-15 |
| CVE-2014-5210 EXP | The av-centerd SOAP service in AlienVault OSSIM before 4.7.0 allows remote attackers to execute arbitrary commands via a crafted (1) remote_task or (2… | Patch early | 10.0 high | 14.9% | 2014-08-21 |
| CVE-2002-0448 EXP | Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many "C:/" sequ… | Patch early | 5.0 medium | 14.9% | 2002-07-26 |
| CVE-2004-2262 EXP | ImageManager in e107 before 0.617 does not properly check the types of uploaded files, which allows remote attackers to execute arbitrary code by uplo… | Patch early | 7.5 high | 14.9% | 2004-12-31 |
| CVE-2008-0782 EXP | Directory traversal vulnerability in MoinMoin 1.5.8 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the MOIN_ID… | Patch early | 5.0 medium | 14.9% | 2008-02-14 |
| CVE-2007-4476 EXP | Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack." | Patch early | 7.5 high | 14.9% | 2007-09-05 |
| CVE-2004-0934 EXP | Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, whic… | Patch early | 7.5 high | 14.9% | 2005-01-27 |
| CVE-2004-0936 EXP | RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does… | Patch early | 7.5 high | 14.9% | 2005-01-27 |
| CVE-2004-0937 EXP | Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protectio… | Patch early | 7.5 high | 14.9% | 2005-02-09 |
| CVE-2010-0838 EXP | Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers to… | Patch early | 7.5 high | 14.9% | 2010-04-01 |
| CVE-2017-13861 EXP | An issue was discovered in certain Apple products. iOS before 11.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issu… | Patch early | 7.8 high | 14.9% | 2017-12-25 |
| CVE-2013-6987 EXP | Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation Manager (DSM) before 4.3-3810 Update 3 allow remote… | Patch early | 7.5 high | 14.9% | 2013-12-31 |
| CVE-2008-5722 EXP | Buffer overflow in SAWStudio 3.9i allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrar… | Patch early | 10.0 high | 14.9% | 2008-12-26 |
| CVE-2008-2040 EXP | Stack-based buffer overflow in the HTTP::getAuthUserPass function (core/common/http.cpp) in Peercast 0.1218 and gnome-peercast allows remote attackers… | Patch early | 7.5 high | 14.9% | 2008-04-30 |
| CVE-2010-1957 EXP | Directory traversal vulnerability in the Love Factory (com_lovefactory) component 1.3.4 for Joomla! allows remote attackers to read arbitrary files vi… | Patch early | 7.5 high | 14.8% | 2010-05-19 |
| CVE-2006-3193 EXP | Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS 1.1.1, when register_globals is enabled, allow remote attackers to execut… | Patch early | 5.1 medium | 14.8% | 2006-06-23 |
| CVE-2017-17020 EXP | On D-Link DCS-5009 devices with firmware 1.08.11 and earlier, DCS-5010 devices with firmware 1.14.09 and earlier, and DCS-5020L devices with firmware… | Patch early | 8.8 high | 14.8% | 2018-05-01 |
| CVE-2013-3881 EXP | win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges via a crafted ap… | Patch early | 7.2 high | 14.8% | 2013-10-09 |
| CVE-2020-8512 EXP | In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter. | Patch early | 6.1 medium | 14.8% | 2020-02-01 |
| CVE-1999-0819 EXP | NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it. | Patch early | 5.0 medium | 14.8% | 1999-12-01 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt