CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
402,851 CVEs
1,734 on KEV
17,293 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-07
402,851 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2004-0934 EXP | Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, whic… | Patch early | 7.5 high | 14.9% | 2005-01-27 |
| CVE-2004-0936 EXP | RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does… | Patch early | 7.5 high | 14.9% | 2005-01-27 |
| CVE-2004-0937 EXP | Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protectio… | Patch early | 7.5 high | 14.9% | 2005-02-09 |
| CVE-2007-4476 EXP | Buffer overflow in the safer_name_suffix function in GNU tar has unspecified attack vectors and impact, resulting in a "crashing stack." | Patch early | 7.5 high | 14.9% | 2007-09-05 |
| CVE-2010-0838 EXP | Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers to… | Patch early | 7.5 high | 14.9% | 2010-04-01 |
| CVE-2017-13861 EXP | An issue was discovered in certain Apple products. iOS before 11.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issu… | Patch early | 7.8 high | 14.9% | 2017-12-25 |
| CVE-2013-6987 EXP | Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation Manager (DSM) before 4.3-3810 Update 3 allow remote… | Patch early | 7.5 high | 14.9% | 2013-12-31 |
| CVE-2006-3653 EXP | wksss.exe 8.4.702.0 in Microsoft Works Spreadsheet 8.0 allows remote attackers to cause a denial of service (CPU consumption or crash) via crafted (1)… | Patch early | 2.6 low | 14.9% | 2006-07-18 |
| CVE-2008-5722 EXP | Buffer overflow in SAWStudio 3.9i allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrar… | Patch early | 10.0 high | 14.9% | 2008-12-26 |
| CVE-2008-2040 EXP | Stack-based buffer overflow in the HTTP::getAuthUserPass function (core/common/http.cpp) in Peercast 0.1218 and gnome-peercast allows remote attackers… | Patch early | 7.5 high | 14.9% | 2008-04-30 |
| CVE-2010-1957 EXP | Directory traversal vulnerability in the Love Factory (com_lovefactory) component 1.3.4 for Joomla! allows remote attackers to read arbitrary files vi… | Patch early | 7.5 high | 14.8% | 2010-05-19 |
| CVE-2006-3193 EXP | Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS 1.1.1, when register_globals is enabled, allow remote attackers to execut… | Patch early | 5.1 medium | 14.8% | 2006-06-23 |
| CVE-2017-17020 EXP | On D-Link DCS-5009 devices with firmware 1.08.11 and earlier, DCS-5010 devices with firmware 1.14.09 and earlier, and DCS-5020L devices with firmware… | Patch early | 8.8 high | 14.8% | 2018-05-01 |
| CVE-2013-3881 EXP | win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges via a crafted ap… | Patch early | 7.2 high | 14.8% | 2013-10-09 |
| CVE-2020-8512 EXP | In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter. | Patch early | 6.1 medium | 14.8% | 2020-02-01 |
| CVE-2023-22855 EXP | Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is… | Patch early | 9.8 critical | 14.8% | 2023-02-15 |
| CVE-1999-0819 EXP | NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it. | Patch early | 5.0 medium | 14.8% | 1999-12-01 |
| CVE-2007-0464 EXP | The _CFNetConnectionWillEnqueueRequests function in CFNetwork 129.19 on Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial… | Patch early | 5.0 medium | 14.8% | 2007-01-30 |
| CVE-2019-7666 EXP | Prima Systems FlexAir, Versions 2.3.38 and prior. The application allows improper authentication using the MD5 hash value of the password, which may a… | Patch early | 8.8 high | 14.8% | 2019-07-01 |
| CVE-1999-1046 EXP | Buffer overflow in IMonitor in IMail 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long str… | Patch early | 10.0 high | 14.8% | 1999-03-01 |
| CVE-2007-4288 EXP | Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted… | Patch early | 4.3 medium | 14.8% | 2007-08-09 |
| CVE-2018-0491 EXP | A use-after-free issue was discovered in Tor 0.3.2.x before 0.3.2.10. It allows remote attackers to cause a denial of service (relay crash) because th… | Patch early | 7.5 high | 14.8% | 2018-03-05 |
| CVE-2014-2013 EXP | Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary… | Patch early | 7.5 high | 14.8% | 2014-03-03 |
| CVE-2017-14243 EXP | An authentication bypass vulnerability on UTStar WA3002G4 ADSL Broadband Modem WA3002G4-0021.01 devices allows attackers to directly access administra… | Patch early | 9.8 critical | 14.8% | 2017-09-17 |
| CVE-2014-9463 EXP | functions_vbseo_hook.php in the VBSEO module for vBulletin allows remote authenticated users to execute arbitrary code via the HTTP Referer header to… | Patch early | 8.8 high | 14.8% | 2017-09-15 |
| CVE-2012-5615 EXP | Oracle MySQL 5.5.38 and earlier, 5.6.19 and earlier, and MariaDB 5.5.28a, 5.3.11, 5.2.13, 5.1.66, and possibly other versions, generates different err… | Patch early | 5.0 medium | 14.8% | 2012-12-03 |
| CVE-2013-5962 EXP | Unrestricted file upload vulnerability in frames/upload-images.php in the Complete Gallery Manager plugin before 3.3.4 rev40279 for WordPress allows r… | Patch early | 5.1 medium | 14.8% | 2013-09-30 |
| CVE-2014-8791 EXP | project/register.php in Tuleap before 7.7, when sys_create_project_in_one_step is disabled, allows remote authenticated users to conduct PHP object in… | Patch early | 6.0 medium | 14.8% | 2014-12-02 |
| CVE-2008-1160 EXP | ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a user, which allows remote attac… | Patch early | 9.8 critical | 14.8% | 2008-03-25 |
| CVE-2017-3807 EXP | A vulnerability in Common Internet Filesystem (CIFS) code in the Clientless SSL VPN functionality of Cisco ASA Software, Major Releases 9.0-9.6, could… | Patch early | 8.8 high | 14.8% | 2017-02-09 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt