CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
398,612 CVEs
1,728 on KEV
17,267 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-28
205,537 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2025-2294 EXP | The Kubio AI Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.5.1 via thekubio_hybrid_t… | Patch early | 9.8 critical | 78.4% | 2025-03-28 |
| CVE-2019-9851 EXP | LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained w… | Patch early | 9.8 critical | 78.3% | 2019-08-15 |
| CVE-2006-3392 EXP | Webmin before 1.290 and Usermin before 1.220 calls the simplify_path function before decoding HTML, which allows remote attackers to read arbitrary fi… | Patch early | 5.0 medium | 78.3% | 2006-07-06 |
| CVE-2017-12478 EXP | It was discovered that the api/storage web interface in Unitrends Backup (UB) before 10.0.0 has an issue in which one of its input parameters was not… | Patch early | 9.8 critical | 78.3% | 2017-08-07 |
| CVE-2003-0466 EXP | Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demons… | Patch early | 9.8 critical | 78.1% | 2003-08-27 |
| CVE-2015-0936 EXP | Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH acce… | Patch early | 9.8 critical | 78.1% | 2017-06-01 |
| CVE-2010-1587 EXP | The Jetty ResourceHandler in Apache ActiveMQ 5.x before 5.3.2 and 5.4.x before 5.4.0 allows remote attackers to read JSP source code via a // (slash s… | Patch early | 5.0 medium | 78% | 2010-04-28 |
| CVE-2020-0609 EXP | A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to the target sy… | Patch early | 9.8 critical | 77.7% | 2020-01-14 |
| CVE-2018-9059 EXP | Stack-based buffer overflow in Easy File Sharing (EFS) Web Server 7.2 allows remote attackers to execute arbitrary code via a malicious login request… | Patch early | 9.8 critical | 77.6% | 2018-04-20 |
| CVE-2020-13166 EXP | The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers… | Patch early | 9.8 critical | 77.6% | 2020-05-19 |
| CVE-2016-10176 EXP | The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This… | Patch early | 9.8 critical | 77.6% | 2017-01-30 |
| CVE-2017-14143 EXP | The getUserzoneCookie function in Kaltura before 13.2.0 uses a hardcoded cookie secret to validate cookie signatures, which allows remote attackers to… | Patch early | 9.8 critical | 77.4% | 2017-09-19 |
| CVE-2020-8012 EXP | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a buffer overflow vulnerability in the robot (controller)… | Patch early | 9.8 critical | 77.4% | 2020-02-18 |
| CVE-2007-2449 EXP | Multiple cross-site scripting (XSS) vulnerabilities in certain JSP files in the examples web application in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 t… | Patch early | 4.3 medium | 77.4% | 2007-06-14 |
| CVE-2014-8741 EXP | Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to write t… | Patch early | 9.8 critical | 77.2% | 2020-01-27 |
| CVE-2016-0854 EXP | Unrestricted file upload vulnerability in the uploadImageCommon function in the UploadAjaxAction script in the WebAccess Dashboard Viewer in Advantech… | Patch early | 9.8 critical | 77% | 2016-01-15 |
| CVE-2024-23334 EXP | aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. When using aiohttp as a web server and configuring static routes, it i… | Patch early | 5.9 medium | 76.9% | 2024-01-29 |
| CVE-2003-0190 EXP | OpenSSH-portable (OpenSSH) 3.6.1p1 and earlier with PAM support enabled immediately sends an error message when a user does not exist, which allows re… | Patch early | 5.0 medium | 76.8% | 2003-05-12 |
| CVE-2017-9101 EXP | import.php (aka the Phonebook import feature) in PlaySMS 1.4 allows remote code execution via vectors involving the User-Agent HTTP header and PHP cod… | Patch early | 9.8 critical | 76.7% | 2017-05-21 |
| CVE-2017-9554 EXP | An information exposure vulnerability in forget_passwd.cgi in Synology DiskStation Manager (DSM) before 6.1.3-15152 allows remote attackers to enumera… | Patch early | 5.3 medium | 76.7% | 2017-07-24 |
| CVE-2005-3081 EXP | wzdftpd 0.5.4 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the SITE command. | Patch early | 4.6 medium | 76.6% | 2005-09-27 |
| CVE-2022-44267 EXP | ImageMagick 7.1.0-49 is vulnerable to Denial of Service. When it parses a PNG image (e.g., for resize), the convert process could be left waiting for… | Patch early | 6.5 medium | 76.6% | 2023-02-06 |
| CVE-2018-14728 EXP | upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter. | Patch early | 9.8 critical | 76.5% | 2018-08-03 |
| CVE-2010-2156 EXP | ISC DHCP 4.1 before 4.1.1-P1 and 4.0 before 4.0.2-P1 allows remote attackers to cause a denial of service (server exit) via a zero-length client ID. | Patch early | 5.0 medium | 76.4% | 2010-06-07 |
| CVE-2021-22145 EXP | A memory disclosure vulnerability was identified in Elasticsearch 7.10.0 to 7.13.3 error reporting. A user with the ability to submit arbitrary querie… | Patch early | 6.5 medium | 76.2% | 2021-07-21 |
| CVE-2008-1232 EXP | Cross-site scripting (XSS) vulnerability in Apache Tomcat 4.1.0 through 4.1.37, 5.5.0 through 5.5.26, and 6.0.0 through 6.0.16 allows remote attackers… | Patch early | 4.3 medium | 75.9% | 2008-08-04 |
| CVE-2019-1937 EXP | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Di… | Patch early | 9.8 critical | 75.9% | 2019-08-21 |
| CVE-2006-2447 EXP | SpamAssassin before 3.1.3, when running with vpopmail and the paranoid (-P) switch, allows remote attackers to execute arbitrary commands via a crafte… | Patch early | 5.1 medium | 75.8% | 2006-06-06 |
| CVE-2017-1092 EXP | IBM Informix Open Admin Tool 11.5, 11.7, and 12.1 could allow an unauthorized user to execute arbitrary code as system admin on Windows servers. IBM X… | Patch early | 9.8 critical | 75.8% | 2017-05-22 |
| CVE-2022-2884 EXP | A vulnerability in GitLab CE/EE affecting all versions from 11.3.4 prior to 15.1.5, 15.2 to 15.2.3, 15.3 to 15.3 to 15.3.1 allows an an authenticated… | Patch early | 9.9 critical | 75.7% | 2022-10-17 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt