CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
401,957 CVEs
1,734 on KEV
17,295 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-06
320,207 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2003-0886 EXP | Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code. | Patch early | 10.0 high | 12.7% | 2003-12-01 |
| CVE-2018-8056 EXP | Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via an invalid channel_name parameter to /index.php?/manage/channel/addchannel or a d… | Patch early | 7.5 high | 12.7% | 2018-03-11 |
| CVE-2013-1601 EXP | An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LIN… | Patch early | 5.3 medium | 12.7% | 2020-01-28 |
| CVE-1999-0042 EXP | Buffer overflow in University of Washington's implementation of IMAP and POP servers. | Patch early | 10.0 high | 12.7% | 1997-04-07 |
| CVE-2007-6613 EXP | Stack-based buffer overflow in the print_iso9660_recurse function in iso-info (src/iso-info.c) in GNU Compact Disc Input and Control Library (libcdio)… | Patch early | 5.0 medium | 12.7% | 2008-01-03 |
| CVE-2011-2577 EXP | Unspecified vulnerability in Cisco TelePresence C Series Endpoints, E/EX Personal Video units, and MXP Series Codecs, when using software versions bef… | Patch early | 7.8 high | 12.7% | 2011-08-31 |
| CVE-2018-11538 EXP | servlet/UserServlet in SearchBlox 8.6.6 has CSRF via the u_name, u_passwd1, u_passwd2, role, and X-XSRF-TOKEN POST parameters because of CSRF Token By… | Patch early | 8.8 high | 12.7% | 2018-06-01 |
| CVE-2011-1467 EXP | Unspecified vulnerability in the NumberFormatter::setSymbol (aka numfmt_set_symbol) function in the Intl extension in PHP before 5.3.6 allows context-… | Patch early | 5.0 medium | 12.7% | 2011-03-20 |
| CVE-2000-0655 EXP | Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing… | Patch early | 5.0 medium | 12.7% | 2000-07-25 |
| CVE-2006-0747 EXP | Integer underflow in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a font file with an odd number of blue value… | Patch early | 5.0 medium | 12.7% | 2006-05-23 |
| CVE-2018-4441 EXP | A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, S… | Patch early | 8.8 high | 12.7% | 2019-04-03 |
| CVE-2008-0380 EXP | Buffer overflow in the Digital Data Communications RtspVaPgCtrl ActiveX control (RtspVapgDecoder.dll 1.1.0.29) allows remote attackers to execute arbi… | Patch early | 10.0 high | 12.7% | 2008-01-22 |
| CVE-2001-0820 EXP | Buffer overflows in GazTek ghttpd 1.4 allows a remote attacker to execute arbitrary code via long arguments that are passed to (1) the Log function in… | Patch early | 7.5 high | 12.7% | 2001-12-06 |
| CVE-2014-1767 EXP | Double free vulnerability in the Ancillary Function Driver (AFD) in afd.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows V… | Patch early | 7.2 high | 12.7% | 2014-07-08 |
| CVE-2006-2426 EXP | Sun Java Runtime Environment (JRE) 1.5.0_6 and earlier, JDK 1.5.0_6 and earlier, and SDK 1.5.0_6 and earlier allows remote attackers to cause a denial… | Patch early | 6.4 medium | 12.7% | 2006-05-17 |
| CVE-2009-2957 EXP | Heap-based buffer overflow in the tftp_request function in tftp.c in dnsmasq before 2.50, when --enable-tftp is used, might allow remote attackers to… | Patch early | 6.8 medium | 12.7% | 2009-09-02 |
| CVE-2014-6395 EXP | Heap-based buffer overflow in the dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to caus… | Patch early | 7.5 high | 12.7% | 2014-12-19 |
| CVE-2019-0948 EXP | An information disclosure vulnerability exists in the Windows Event Viewer (eventvwr.msc) when it improperly parses XML input containing a reference t… | Patch early | 4.7 medium | 12.7% | 2019-06-12 |
| CVE-2016-1757 EXP | Race condition in the kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context via a… | Patch early | 7.0 high | 12.7% | 2016-03-24 |
| CVE-2011-4107 EXP | The simplexml_load_string function in the XML import plug-in (libraries/import/xml.php) in phpMyAdmin 3.4.x before 3.4.7.1 and 3.3.x before 3.3.10.5 a… | Patch early | 6.5 medium | 12.7% | 2011-11-17 |
| CVE-2014-4019 EXP | ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient access control, which allows… | Patch early | 7.5 high | 12.7% | 2020-02-20 |
| CVE-2010-2094 EXP | Multiple format string vulnerabilities in the phar extension in PHP 5.3 before 5.3.2 allow context-dependent attackers to obtain sensitive information… | Patch early | 6.8 medium | 12.7% | 2010-05-27 |
| CVE-2005-3539 EXP | Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in… | Patch early | 7.5 high | 12.7% | 2005-12-31 |
| CVE-2009-0696 EXP | The dns_db_findrdataset function in db.c in named in ISC BIND 9.4 before 9.4.3-P3, 9.5 before 9.5.1-P3, and 9.6 before 9.6.1-P1, when configured as a… | Patch early | 4.3 medium | 12.6% | 2009-07-29 |
| CVE-2008-5692 EXP | Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via… | Patch early | 5.0 medium | 12.6% | 2008-12-19 |
| CVE-2010-0168 EXP | The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6… | Patch early | 7.6 high | 12.6% | 2010-03-25 |
| CVE-2011-4620 EXP | Buffer overflow in the ulSetError function in util/ulError.cxx in PLIB 1.8.5, as used in TORCS 1.3.1 and other products, allows user-assisted remote a… | Patch early | 9.3 high | 12.6% | 2011-12-31 |
| CVE-1999-0977 EXP | Buffer overflow in Solaris sadmind allows remote attackers to gain root privileges using a NETMGT_PROC_SERVICE request. | Patch early | 10.0 high | 12.6% | 1999-12-10 |
| CVE-2000-0743 EXP | Buffer overflow in University of Minnesota (UMN) gopherd 2.x allows remote attackers to execute arbitrary commands via a DES key generation request (G… | Patch early | 10.0 high | 12.6% | 2000-10-20 |
| CVE-2013-0804 EXP | The client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code or cause a denial of ser… | Patch early | 10.0 high | 12.6% | 2013-02-24 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt