CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
401,488 CVEs
1,734 on KEV
17,295 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-05
186,613 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2019-10863 EXP | A command injection vulnerability exists in TeemIp versions before 2.4.0. The new_config parameter of exec.php allows one to create a new PHP file wit… | Patch early | 7.2 high | 13.4% | 2019-04-04 |
| CVE-2019-8043 EXP | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015… | Patch early | 7.5 high | 13.4% | 2019-08-20 |
| CVE-2011-2628 EXP | Opera before 11.11 does not properly implement FRAMESET elements, which allows remote attackers to execute arbitrary code or cause a denial of service… | Patch early | 10.0 high | 13.4% | 2011-07-01 |
| CVE-2017-10661 EXP | Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption… | Patch early | 7.0 high | 13.4% | 2017-08-19 |
| CVE-2010-1653 EXP | Directory traversal vulnerability in graphics.php in the Graphics (com_graphics) component 1.0.6 and 1.5.0 for Joomla! allows remote attackers to incl… | Patch early | 7.5 high | 13.4% | 2010-05-03 |
| CVE-2015-8556 EXP | Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1. | Patch early | 10.0 critical | 13.4% | 2017-03-24 |
| CVE-2018-1000001 EXP | In glibc 2.26 and earlier there is confusion in the usage of getcwd() by realpath() which can be used to write before the destination buffer leading t… | Patch early | 7.8 high | 13.4% | 2018-01-31 |
| CVE-2004-1437 EXP | Multiple buffer overflows in the digest authentication functionality in Pavuk 0.9.28-r2 and earlier allow remote attackers to execute arbitrary code. | Patch early | 7.5 high | 13.4% | 2004-12-31 |
| CVE-2016-9796 EXP | Alcatel-Lucent OmniVista 8770 2.0 through 3.0 exposes different ORBs interfaces, which can be queried using the GIOP protocol on TCP port 30024. An at… | Patch early | 9.8 critical | 13.4% | 2016-12-03 |
| CVE-2010-1470 EXP | Directory traversal vulnerability in the Web TV (com_webtv) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly hav… | Patch early | 7.5 high | 13.4% | 2010-04-19 |
| CVE-2010-1472 EXP | Directory traversal vulnerability in the Daily Horoscope (com_horoscope) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files v… | Patch early | 7.5 high | 13.4% | 2010-04-19 |
| CVE-2012-4329 EXP | The Samsung D6000 TV and possibly other products allow remote attackers to cause a denial of service (continuous restart) via a crafted controller nam… | Patch early | 7.8 high | 13.3% | 2012-08-14 |
| CVE-2010-0985 EXP | Directory traversal vulnerability in the Abbreviations Manager (com_abbrev) component 1.1 for Joomla! allows remote attackers to include and execute a… | Patch early | 7.5 high | 13.3% | 2010-03-16 |
| CVE-2002-0495 EXP | csSearch.cgi in csSearch 2.3 and earlier allows remote attackers to execute arbitrary Perl code via the savesetup command and the setup parameter, whi… | Patch early | 10.0 high | 13.3% | 2002-08-12 |
| CVE-2001-0099 EXP | bsguest.cgi guestbook script allows remote attackers to execute arbitrary commands via shell metacharacters in the email address. | Patch early | 10.0 high | 13.3% | 2001-02-12 |
| CVE-2009-0388 EXP | Multiple integer signedness errors in (1) UltraVNC 1.0.2 and 1.0.5 and (2) TightVnc 1.3.9 allow remote VNC servers to cause a denial of service (heap… | Patch early | 10.0 high | 13.3% | 2009-02-04 |
| CVE-2019-8017 EXP | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015… | Patch early | 9.8 critical | 13.3% | 2019-08-20 |
| CVE-2015-3798 EXP | The TRE library in Libc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows context-dependent attackers to execute arbitrary code or cause a deni… | Patch early | 7.5 high | 13.3% | 2015-08-17 |
| CVE-2018-8880 EXP | Lutron Quantum BACnet Integration 2.0 (firmware 3.2.243) doesn't check for correct user authentication before showing the /deviceIP information, which… | Patch early | 7.5 high | 13.3% | 2018-04-23 |
| CVE-2002-1605 EXP | Buffer overflow in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows attackers to execute arbitrary code via a long _XKB_CHARSET environment variab… | Patch early | 7.5 high | 13.3% | 2002-09-02 |
| CVE-2007-1721 EXP | Multiple PHP remote file inclusion vulnerabilities in C-Arbre 0.6PR7 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the… | Patch early | 10.0 high | 13.3% | 2007-03-28 |
| CVE-2020-35775 EXP | CITSmart before 9.1.2.23 allows LDAP Injection. | Patch early | 9.8 critical | 13.3% | 2021-02-15 |
| CVE-2019-9599 EXP | The AirDroid application through 4.2.1.6 for Android allows remote attackers to cause a denial of service (service crash) via many simultaneous sdctl/… | Patch early | 7.5 high | 13.3% | 2019-03-06 |
| CVE-2001-0008 EXP | Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures. | Patch early | 10.0 high | 13.3% | 2001-02-12 |
| CVE-2019-10266 EXP | An issue was discovered in Ahsay Cloud Backup Suite before 8.1.1.50. When sending an out-of-bounds XML document to a URL, it is possible to read the f… | Patch early | 7.5 high | 13.3% | 2019-07-26 |
| CVE-2015-7805 EXP | Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF fi… | Patch early | 9.3 high | 13.3% | 2015-11-17 |
| CVE-2009-1376 EXP | Multiple integer overflows in the msn_slplink_process_msg functions in the MSN protocol handler in (1) libpurple/protocols/msn/slplink.c and (2) libpu… | Patch early | 9.3 high | 13.3% | 2009-05-26 |
| CVE-2009-2195 EXP | Buffer overflow in WebKit in Apple Safari before 4.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application cra… | Patch early | 9.3 high | 13.3% | 2009-08-12 |
| CVE-2016-7998 EXP | The SPIP template composer/compiler in SPIP 3.1.2 and earlier allows remote authenticated users to execute arbitrary PHP code by uploading an HTML fil… | Patch early | 8.8 high | 13.3% | 2017-01-18 |
| CVE-2016-8022 EXP | Authentication bypass by spoofing vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated… | Patch early | 7.5 high | 13.3% | 2017-03-14 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt