CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
398,529 CVEs
1,726 on KEV
17,265 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-27
317,905 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2018-19953 KEV | If exploited, this cross-site scripting vulnerability could allow remote attackers to inject malicious code. QNAP has already fixed the issue in the f… | Patch first | 6.1 medium | 28.8% | 2020-10-28 |
| CVE-2024-3393 KEV | A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malic… | Patch first | 7.5 high | 28.4% | 2024-12-27 |
| CVE-2020-3153 KEV | A vulnerability in the installer component of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated local attacker to copy… | Patch first | 6.5 medium | 28.3% | 2020-02-19 |
| CVE-2022-37969 KEV | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Patch first | 7.8 high | 28.3% | 2022-09-13 |
| CVE-2026-20262 KEV | A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a fil… | Patch first | 6.5 medium | 28.2% | 2026-06-15 |
| CVE-2019-19356 KEV | Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. The vulnerability has been fou… | Patch first | 7.5 high | 28.2% | 2020-02-07 |
| CVE-2024-1086 KEV | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft… | Patch first | 7.8 high | 28.1% | 2024-01-31 |
| CVE-2023-36802 KEV | Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability | Patch first | 7.8 high | 27.9% | 2023-09-12 |
| CVE-2024-21351 KEV | Windows SmartScreen Security Feature Bypass Vulnerability | Patch first | 7.6 high | 27.8% | 2024-02-13 |
| CVE-2025-27363 KEV | An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subg… | Patch first | 8.1 high | 27.8% | 2025-03-11 |
| CVE-2018-8581 KEV | An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability." Thi… | Patch first | 7.4 high | 27.4% | 2018-11-14 |
| CVE-2023-28205 KEV | A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 a… | Patch first | 8.8 high | 27.1% | 2023-04-10 |
| CVE-2018-4063 KEV | An exploitable remote code execution vulnerability exists in the upload.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially craft… | Patch first | 8.8 high | 27.1% | 2019-05-06 |
| CVE-2024-4978 KEV | Justice AV Solutions Viewer Setup 8.3.7.250-1 contains a malicious binary when executed and is signed with an unexpected authenticode signature. A rem… | Patch first | 8.4 high | 26.9% | 2024-05-23 |
| CVE-2025-68461 KEV | Roundcube Webmail before 1.5.12 and 1.6 before 1.6.12 is prone to a Cross-Site-Scripting (XSS) vulnerability via the animate tag in an SVG document. | Patch first | 7.2 high | 26.8% | 2025-12-18 |
| CVE-2024-37085 KEV | VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access… | Patch first | 6.8 medium | 26.8% | 2024-06-25 |
| CVE-2014-2817 KEV | Microsoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privil… | Patch first | 8.8 high | 26.3% | 2014-08-12 |
| CVE-2020-8196 KEV | Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWA… | Patch first | 4.3 medium | 26.3% | 2020-07-10 |
| CVE-2016-3351 KEV | Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Micros… | Patch first | 6.5 medium | 26.3% | 2016-09-14 |
| CVE-2021-22506 KEV | Advance configuration exposing Information Leakage vulnerability in Micro Focus Access Manager product, affects all versions prior to version 5.0. The… | Patch first | 7.5 high | 25.7% | 2021-03-26 |
| CVE-2023-20269 KEV | A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software… | Patch first | 5.0 medium | 25.5% | 2023-09-06 |
| CVE-2026-20245 KEV | A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, and Ci… | Patch first | 7.8 high | 25.3% | 2026-06-04 |
| CVE-2016-7855 KEV | Use-after-free vulnerability in Adobe Flash Player before 23.0.0.205 on Windows and OS X and before 11.2.202.643 on Linux allows remote attackers to e… | Patch first | 8.8 high | 25.2% | 2016-11-01 |
| CVE-2022-0185 KEV | A heap-based buffer overflow flaw was found in the way the legacy_parse_param function in the Filesystem Context functionality of the Linux kernel ver… | Patch first | 8.4 high | 25.2% | 2022-02-11 |
| CVE-2019-18187 KEV | Trend Micro OfficeScan versions 11.0 and XG (12.0) could be exploited by an attacker utilizing a directory traversal vulnerability to extract files fr… | Patch first | 7.5 high | 25.1% | 2019-10-28 |
| CVE-2018-5002 KEV | Adobe Flash Player versions 29.0.0.171 and earlier have a Stack-based buffer overflow vulnerability. Successful exploitation could lead to arbitrary c… | Patch first | 7.8 high | 25.1% | 2018-07-09 |
| CVE-2024-35250 KEV | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability | Patch first | 7.8 high | 25% | 2024-06-11 |
| CVE-2026-20122 KEV | A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local fi… | Patch first | 5.4 medium | 25% | 2026-02-25 |
| CVE-2014-0502 KEV | Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and before 11.2… | Patch first | 8.8 high | 24.8% | 2014-02-21 |
| CVE-2022-3038 KEV | Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a craft… | Patch first | 8.8 high | 24.7% | 2022-09-26 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt