CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
402,489 CVEs
1,734 on KEV
17,294 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-06
320,483 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2011-1071 EXP | The GNU C Library (aka glibc or libc6) before 2.12.2 and Embedded GLIBC (EGLIBC) allow context-dependent attackers to execute arbitrary code or cause… | Patch early | 5.1 medium | 14.3% | 2011-04-08 |
| CVE-2003-0896 EXP | The loadClass method of the sun.applet.AppletClassLoader class in the Java Virtual Machine (JVM) in Sun SDK and JRE 1.4.1_03 and earlier allows remote… | Patch early | 7.5 high | 14.3% | 2003-11-17 |
| CVE-2021-45901 EXP | The password-reset form in ServiceNow Orlando provides different responses to invalid authentication attempts depending on whether the username exists… | Patch early | 5.3 medium | 14.3% | 2022-02-10 |
| CVE-2019-15637 EXP | Numerous Tableau products are vulnerable to XXE via a malicious workbook, extension, or data source, leading to information disclosure or a DoS. This… | Patch early | 8.1 high | 14.3% | 2019-08-26 |
| CVE-2004-2167 EXP | Multiple buffer overflows in LaTeX2rtf 1.9.15, and possibly other versions, allow remote attackers to execute arbitrary code via (1) the expandmacro f… | Patch early | 7.5 high | 14.3% | 2004-12-31 |
| CVE-2002-0976 EXP | Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xm… | Patch early | 6.4 medium | 14.3% | 2002-09-24 |
| CVE-2011-0917 EXP | Buffer overflow in nLDAP.exe in IBM Lotus Domino allows remote attackers to execute arbitrary code via a long string in an LDAP Bind operation, aka SP… | Patch early | 10.0 high | 14.3% | 2011-02-08 |
| CVE-2022-29593 EXP | relay_cgi.cgi on Dingtian DT-R002 2CH relay devices with firmware 3.1.276A allows an attacker to replay HTTP post requests without the need for authen… | Patch early | 5.9 medium | 14.3% | 2022-07-14 |
| CVE-2014-4158 EXP | Stack-based buffer overflow in Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a GET request. | Patch early | 7.5 high | 14.3% | 2014-06-13 |
| CVE-2012-1502 EXP | Double free vulnerability in the PyPAM_conv in PAMmodule.c in PyPam 0.5.0 and earlier allows remote attackers to cause a denial of service (applicatio… | Patch early | 7.5 high | 14.3% | 2012-06-16 |
| CVE-2000-1029 EXP | Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query. | Patch early | 10.0 high | 14.3% | 2000-12-11 |
| CVE-2008-5220 EXP | Unrestricted file upload vulnerability in admin/upload_form.php in wPortfolio 0.3 and earlier allows remote attackers to execute arbitrary code by upl… | Patch early | 10.0 high | 14.3% | 2008-11-25 |
| CVE-2015-3112 EXP | Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allow attackers to execute arbitrary code or cause a denial of service (… | Patch early | 10.0 high | 14.3% | 2015-06-24 |
| CVE-2003-0562 EXP | Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial of service (ABEND) via a long… | Patch early | 5.0 medium | 14.3% | 2003-08-27 |
| CVE-2010-2168 EXP | Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with… | Patch early | 9.3 high | 14.3% | 2010-06-30 |
| CVE-2010-2201 EXP | Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow attackers to execute arbitrary code via a PDF file with… | Patch early | 9.3 high | 14.3% | 2010-06-30 |
| CVE-2000-0699 EXP | Format string vulnerability in ftpd in HP-UX 10.20 allows remote attackers to cause a denial of service or execute arbitrary commands via format strin… | Patch early | 10.0 high | 14.3% | 2000-10-20 |
| CVE-2006-1905 EXP | Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.3 allow remote attackers to execute arbitrary code via format string specifi… | Patch early | 7.5 high | 14.3% | 2006-04-20 |
| CVE-2016-0861 EXP | General Electric (GE) Industrial Solutions UPS SNMP/Web Adapter devices with firmware before 4.8 allow remote authenticated users to execute arbitrary… | Patch early | 8.8 high | 14.2% | 2016-02-05 |
| CVE-2019-13383 EXP | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, the Login process allows attackers to check whether a username is valid by reading the HT… | Patch early | 5.3 medium | 14.2% | 2019-07-16 |
| CVE-2013-3179 EXP | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitra… | Patch early | 4.3 medium | 14.2% | 2013-09-11 |
| CVE-2019-11445 EXP | OpenKM 6.3.2 through 6.3.7 allows an attacker to upload a malicious JSP file into the /okm:root directories and move that file to the home directory o… | Patch early | 7.2 high | 14.2% | 2019-04-22 |
| CVE-2017-8982 EXP | A Remote Authentication Restriction Bypass vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P4 was found. | Patch early | 7.5 high | 14.2% | 2018-02-15 |
| CVE-2018-17442 EXP | An issue was discovered on D-Link Central WiFi Manager before v 1.03r0100-Beta1. An unrestricted file upload vulnerability in the onUploadLogPic endpo… | Patch early | 8.8 high | 14.2% | 2018-10-08 |
| CVE-2000-1220 EXP | The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to… | Patch early | 10.0 high | 14.2% | 2000-01-08 |
| CVE-2019-7751 EXP | A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro… | Patch early | 7.5 high | 14.2% | 2019-12-31 |
| CVE-2009-1511 EXP | GDI+ in Microsoft Windows XP SP3 allows remote attackers to cause a denial of service (infinite loop) via a PNG file that contains a certain large btC… | Patch early | 7.8 high | 14.2% | 2009-05-01 |
| CVE-2018-5511 EXP | On F5 BIG-IP 13.1.0-13.1.0.3 or 13.0.0, when authenticated administrative users execute commands in the Traffic Management User Interface (TMUI), also… | Patch early | 7.2 high | 14.2% | 2018-04-13 |
| CVE-2020-8416 EXP | IKTeam BearFTP before 0.2.0 allows remote attackers to achieve denial of service via a large volume of connections to the PASV mode port. | Patch early | 7.5 high | 14.2% | 2020-01-29 |
| CVE-2006-1172 EXP | Stack-based buffer overflow in the createPKCS10 function in Cryptomathic Cenroll ActiveX Control 1.1.0.0 allows remote attackers to execute arbitrary… | Patch early | 5.0 medium | 14.2% | 2006-05-09 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt