CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
404,169 CVEs
1,739 on KEV
17,300 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-11
321,940 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2000-0045 EXP | MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege. | Patch early | 6.4 medium | 7% | 2000-01-11 |
| CVE-2001-0302 EXP | Buffer overflow in tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary comman… | Patch early | 5.0 medium | 7% | 2001-05-03 |
| CVE-2019-15811 EXP | In DomainMOD through 4.13, the parameter daterange in the file reporting/domains/cost-by-month.php has XSS. | Patch early | 6.1 medium | 7% | 2019-08-29 |
| CVE-2009-2403 EXP | Heap-based buffer overflow in SCMPX 1.5.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a lon… | Patch early | 9.3 high | 7% | 2009-07-09 |
| CVE-2003-0508 EXP | Buffer overflow in the WWWLaunchNetscape function of Adobe Acrobat Reader (acroread) 5.0.7 and earlier allows remote attackers to execute arbitrary co… | Patch early | 7.5 high | 7% | 2003-08-07 |
| CVE-2014-8868 EXP | EntryPass N5200 Active Network Control Panel does not properly restrict access, which allows remote attackers to obtain the administrator username and… | Patch early | 7.8 high | 7% | 2014-12-07 |
| CVE-2007-4735 EXP | Buffer overflow in Next Generation Software Virtual DJ (VDJ) 5.0 allows user-assisted remote attackers to execute arbitrary code via a long file path… | Patch early | 9.3 high | 7% | 2007-09-06 |
| CVE-2003-0332 EXP | The ISAPI extension in BadBlue 1.7 through 2.2, and possibly earlier versions, modifies the first two letters of a filename extension after performing… | Patch early | 7.6 high | 7% | 2003-06-09 |
| CVE-2016-7786 EXP | Sophos Cyberoam UTM CR25iNG 10.6.3 MR-5 allows remote authenticated users to bypass intended access restrictions via direct object reference, as demon… | Patch early | 8.8 high | 7% | 2017-04-07 |
| CVE-2017-17088 EXP | The Enterprise version of SyncBreeze 10.2.12 and earlier is affected by a Remote Denial of Service vulnerability. The web server does not check bounds… | Patch early | 7.5 high | 7% | 2017-12-19 |
| CVE-2006-4922 EXP | Unrestricted file upload vulnerability in starnet/editors/htmlarea/popups/images.php in Site@School (S@S) 2.4.02 and earlier allows remote attackers t… | Patch early | 5.0 medium | 7% | 2006-09-21 |
| CVE-2006-3698 EXP | Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB01 for Change Data Cap… | Patch early | 10.0 high | 7% | 2006-07-21 |
| CVE-2013-4776 EXP | NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier, GS748Tv4 5.4.1.14, and GS510TP 5.0.4.4 allows remote attackers to cause a de… | Patch early | 7.8 high | 7% | 2013-12-19 |
| CVE-2011-1974 EXP | NDISTAPI.sys in the NDISTAPI driver in Remote Access Service (RAS) in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP2 does not properly v… | Patch early | 7.2 high | 7% | 2011-08-10 |
| CVE-2003-0442 EXP | Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attacker… | Patch early | 4.3 medium | 7% | 2003-07-24 |
| CVE-2013-7420 EXP | Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART XML element… | Patch early | 7.5 high | 7% | 2015-01-12 |
| CVE-2016-4997 EXP | The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow loc… | Patch early | 7.8 high | 7% | 2016-07-03 |
| CVE-2001-0563 EXP | ElectroSystems Engineering Inc. ElectroComm 2.0 and earlier allows a remote attacker to create a denial of service via large (> 160000 character) stri… | Patch early | 5.0 medium | 7% | 2001-08-14 |
| CVE-2002-0923 EXP | CGIScript.net csNews.cgi allows remote authenticated users to read arbitrary files, and possibly gain privileges, via the (1) pheader or (2) pfooter p… | Patch early | 7.5 high | 7% | 2002-10-04 |
| CVE-2013-1668 EXP | The uploadFile function in upload/index.php in CosCMS before 1.822 allows remote administrators to execute arbitrary commands via shell metacharacters… | Patch early | 8.5 high | 7% | 2014-05-23 |
| CVE-2013-1463 EXP | Cross-site scripting (XSS) vulnerability in js/tabletools/zeroclipboard.swf in the WP-Table Reloaded module before 1.9.4 for Wordpress allows remote a… | Patch early | 4.3 medium | 7% | 2013-02-07 |
| CVE-2007-2526 EXP | Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode VNC Manager 3.6 allows remote… | Patch early | 9.3 high | 7% | 2007-05-08 |
| CVE-2007-2648 EXP | Stack-based buffer overflow in the Clever Database Comparer 2.2 ActiveX control (comparerax.ocx) allows remote attackers to execute arbitrary code via… | Patch early | 9.3 high | 7% | 2007-05-14 |
| CVE-2015-6763 EXP | Multiple unspecified vulnerabilities in Google Chrome before 46.0.2490.71 allow attackers to cause a denial of service or possibly have other impact v… | Patch early | 7.5 high | 7% | 2015-10-15 |
| CVE-2013-4859 EXP | INSTEON Hub 2242-222 lacks Web and API authentication | Patch early | 8.1 high | 7% | 2019-12-27 |
| CVE-2001-1104 EXP | SonicWALL SOHO uses easily predictable TCP sequence numbers, which allows remote attackers to spoof or hijack sessions. | Patch early | 7.5 high | 7% | 2001-07-25 |
| CVE-2014-4688 EXP | pfSense before 2.1.4 allows remote authenticated users to execute arbitrary commands via (1) the hostname value to diag_dns.php in a Create Alias acti… | Patch early | 6.5 medium | 7% | 2014-07-02 |
| CVE-2017-15270 EXP | The PSFTPd 10.0.4 Build 729 server does not properly escape data before writing it into a Comma Separated Values (CSV) file. This can be used by attac… | Patch early | 5.3 medium | 7% | 2017-11-15 |
| CVE-2001-1491 EXP | Opera 5.11 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images. | Patch early | 5.0 medium | 7% | 2001-12-31 |
| CVE-2002-1811 EXP | Belkin F5D6130 Wireless Network Access Point running firmware AP14G8 allows remote attackers to cause a denial of service (connection loss) by sending… | Patch early | 5.0 medium | 7% | 2002-12-31 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt