CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
404,164 CVEs
1,739 on KEV
17,300 EPSS ≥ 10%
25,091 with exploits
synced 2026-10-11
37,038 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2016-6629 | An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker could reuse certain cookie valu… | In your normal cycle | 9.8 critical | 3.2% | 2016-12-11 |
| CVE-2016-3655 | The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remot… | In your normal cycle | 9.8 critical | 3.2% | 2016-04-12 |
| CVE-2012-1516 | The VMX process in VMware ESXi 3.5 through 4.1 and ESX 3.5 through 4.1 does not properly handle RPC commands, which allows guest OS users to cause a d… | In your normal cycle | 9.9 critical | 3.2% | 2012-05-04 |
| CVE-2016-7925 | The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7926 | The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7927 | The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7929 | The Juniper PPPoE ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-juniper.c:juniper_parse_header(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7930 | The LLC/SNAP parser in tcpdump before 4.9.0 has a buffer overflow in print-llc.c:llc_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7931 | The MPLS parser in tcpdump before 4.9.0 has a buffer overflow in print-mpls.c:mpls_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7933 | The PPP parser in tcpdump before 4.9.0 has a buffer overflow in print-ppp.c:ppp_hdlc_if_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7936 | The UDP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:udp_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7937 | The VAT parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:vat_print(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7973 | The AppleTalk parser in tcpdump before 4.9.0 has a buffer overflow in print-atalk.c, multiple functions. | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7974 | The IP parser in tcpdump before 4.9.0 has a buffer overflow in print-ip.c, multiple functions. | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2016-7986 | The GeoNetworking parser in tcpdump before 4.9.0 has a buffer overflow in print-geonet.c, multiple functions. | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2017-5483 | The SNMP parser in tcpdump before 4.9.0 has a buffer overflow in print-snmp.c:asn1_parse(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2017-5485 | The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in addrtoname.c:lookup_nsap(). | In your normal cycle | 9.8 critical | 3.2% | 2017-01-28 |
| CVE-2025-56819 | An issue in Datart v.1.0.0-rc.3 allows a remote attacker to execute arbitrary code via the INIT connection parameter. | In your normal cycle | 9.8 critical | 3.2% | 2025-09-24 |
| CVE-2021-27460 | Rockwell Automation FactoryTalk AssetCentre v10.00 and earlier components contain .NET remoting endpoints that deserialize untrusted data without suff… | In your normal cycle | 10.0 critical | 3.2% | 2022-03-23 |
| CVE-2018-13306 | System command injection in formDlna in TOTOLINK A3002RU version 1.0.8 allows attackers to execute system commands via the "ftpUser" POST parameter. | In your normal cycle | 9.8 critical | 3.2% | 2018-11-27 |
| CVE-2018-13307 | System command injection in fromNtp in TOTOLINK A3002RU version 1.0.8 allows attackers to execute system commands via the "ntpServerIp2" POST paramete… | In your normal cycle | 9.8 critical | 3.2% | 2018-11-27 |
| CVE-2018-13314 | System command injection in formAliasIp in TOTOLINK A3002RU version 1.0.8 allows attackers to execute system commands via the "ipAddr" POST parameter. | In your normal cycle | 9.8 critical | 3.2% | 2018-11-27 |
| CVE-2018-13316 | System command injection in formAliasIp in TOTOLINK A3002RU version 1.0.8 allows attackers to execute system commands via the "subnet" POST parameter. | In your normal cycle | 9.8 critical | 3.2% | 2018-11-27 |
| CVE-2021-27692 | Command Injection in Tenda G1 and G3 routers with firmware versions v15.11.0.17(9502)_CN or v15.11.0.16(9024)_CN allows remote attackers to execute ar… | In your normal cycle | 9.8 critical | 3.2% | 2021-04-16 |
| CVE-2019-16444 | Adobe Acrobat and Reader versions , 2019.021.20056 and earlier, 2017.011.30152 and earlier, 2017.011.30155 and earlier version, 2017.011.30152 and ear… | In your normal cycle | 9.8 critical | 3.2% | 2019-12-19 |
| CVE-2022-25767 | All versions of package com.bstek.ureport:ureport2-console are vulnerable to Remote Code Execution by connecting to a malicious database server, causi… | In your normal cycle | 9.8 critical | 3.2% | 2022-05-01 |
| CVE-2021-44526 | Zoho ManageEngine ServiceDesk Plus before 12003 allows authentication bypass in certain admin configurations. | In your normal cycle | 9.8 critical | 3.2% | 2021-12-23 |
| CVE-2016-4972 | OpenStack Murano before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), Murano-dashboard before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), and pyth… | In your normal cycle | 9.8 critical | 3.2% | 2016-09-26 |
| CVE-2017-17836 | In Apache Airflow 1.8.2 and earlier, an experimental Airflow feature displayed authenticated cookies, as well as passwords to databases used by Airflo… | In your normal cycle | 9.8 critical | 3.2% | 2019-01-23 |
| CVE-2017-5376 | Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51. | In your normal cycle | 9.8 critical | 3.2% | 2018-06-11 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt