CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
403,534 CVEs
1,739 on KEV
17,298 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-09
36,944 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2026-86426 | LibreNMS before 26.8.0 contains an authentication bypass vulnerability in the REST API that allows unauthenticated attackers to access protected endpo… | In your normal cycle | 9.8 critical | 3.9% | 2026-09-07 |
| CVE-2023-37466 | vm2 is an advanced vm/sandbox for Node.js. The library contains critical security issues and should not be used for production. The maintenance of the… | In your normal cycle | 9.8 critical | 3.9% | 2023-07-14 |
| CVE-2019-5075 | An exploitable stack buffer overflow vulnerability exists in the command line utility getcouplerdetails of WAGO PFC200 Firmware versions 03.01.07(13)… | In your normal cycle | 9.8 critical | 3.9% | 2019-12-18 |
| CVE-2019-7727 | In NICE Engage through 6.5, the default configuration binds an unauthenticated JMX/RMI interface to all network interfaces, without restricting regist… | In your normal cycle | 9.8 critical | 3.9% | 2019-04-23 |
| CVE-2021-45411 | In Sourcecodetester Printable Staff ID Card Creator System 1.0 after compromising the database via SQLi, an attacker can log in and leverage an arbitr… | In your normal cycle | 9.8 critical | 3.9% | 2022-01-12 |
| CVE-2017-7870 | LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tool… | In your normal cycle | 9.8 critical | 3.9% | 2017-04-14 |
| CVE-2018-9311 | The Telematics Control Unit (aka Telematic Communication Box or TCB), when present on BMW vehicles produced in 2012 through 2018, allows a remote atta… | In your normal cycle | 9.8 critical | 3.9% | 2018-05-31 |
| CVE-2019-12524 | An issue was discovered in Squid through 4.7. When handling requests from users, Squid checks its rules to see if the request should be denied. Squid… | In your normal cycle | 9.8 critical | 3.9% | 2020-04-15 |
| CVE-2024-39844 | In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK. | In your normal cycle | 9.8 critical | 3.9% | 2024-07-03 |
| CVE-2017-17407 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of NetGain Systems Enterprise Manager v7.2.699 build… | In your normal cycle | 9.8 critical | 3.9% | 2018-01-23 |
| CVE-2017-17412 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17413 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17414 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17415 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17416 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17418 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17419 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17421 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17422 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17423 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17424 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17425 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17652 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17653 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17654 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17655 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17656 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17657 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17658 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
| CVE-2017-17659 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | In your normal cycle | 9.8 critical | 3.9% | 2018-02-08 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt