CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
398,806 CVEs
1,728 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-28
36,488 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2013-2681 EXP | Cisco Linksys E4200 1.0.05 Build 7 devices contain a Security Bypass Vulnerability which could allow remote attackers to gain unauthorized access. | Patch early | 9.8 critical | 10.1% | 2020-02-05 |
| CVE-2021-30149 EXP | Composr 10.0.36 allows upload and execution of PHP files. | Patch early | 9.8 critical | 10.1% | 2021-04-06 |
| CVE-2017-11435 EXP | The Humax Wi-Fi Router model HG100R-* 2.0.6 is prone to an authentication bypass vulnerability via specially crafted requests to the management consol… | Patch early | 9.8 critical | 10.1% | 2017-07-19 |
| CVE-2018-6223 EXP | A missing authentication for appliance registration vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to manipulate th… | Patch early | 9.8 critical | 10% | 2018-03-15 |
| CVE-2014-5470 EXP | Actual Analyzer through 2014-08-29 allows code execution via shell metacharacters because untrusted input is used for part of the input data passed to… | Patch early | 9.8 critical | 10% | 2024-06-21 |
| CVE-2021-42580 EXP | Sourcecodester Online Learning System 2.0 is vunlerable to sql injection authentication bypass in admin login file (/admin/login.php) and authenticate… | Patch early | 9.8 critical | 10% | 2021-11-15 |
| CVE-2004-2761 EXP | The MD5 Message-Digest Algorithm is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as dem… | Patch early | 9.8 critical | 9.9% | 2009-01-05 |
| CVE-2018-12706 EXP | DIGISOL DG-BR4000NG devices have a Buffer Overflow via a long Authorization HTTP header. | Patch early | 9.8 critical | 9.9% | 2018-06-24 |
| CVE-2019-11705 EXP | A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, resu… | Patch early | 9.8 critical | 9.9% | 2019-07-23 |
| CVE-1999-1588 EXP | Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string begi… | Patch early | 9.8 critical | 9.9% | 1999-12-31 |
| CVE-2018-6220 EXP | An arbitrary file write vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to inject arbitrary data, which may lead to… | Patch early | 9.8 critical | 9.9% | 2018-03-15 |
| CVE-2023-27100 EXP | Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22.05.1 and pfSense CE software… | Patch early | 9.8 critical | 9.8% | 2023-03-22 |
| CVE-2017-17417 EXP | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Quest NetVault Backup 11.3.0.12. Authentication is… | Patch early | 9.8 critical | 9.8% | 2018-02-08 |
| CVE-2018-11523 EXP | upload.php on NUUO NVRmini 2 devices allows Arbitrary File Upload, such as upload of .php files. | Patch early | 9.8 critical | 9.8% | 2018-05-29 |
| CVE-2013-5945 EXP | Multiple SQL injection vulnerabilities in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N wit… | Patch early | 9.8 critical | 9.8% | 2020-02-11 |
| CVE-2017-14089 EXP | An Unauthorized Memory Corruption vulnerability in Trend Micro OfficeScan 11.0 and XG may allow remote unauthenticated users who can access the Office… | Patch early | 9.8 critical | 9.8% | 2017-10-06 |
| CVE-2019-8662 EXP | This issue was addressed with improved checks. This issue is fixed in iOS 12.4, macOS Mojave 10.14.6, tvOS 12.4, watchOS 5.3. An attacker may be able… | Patch early | 9.8 critical | 9.8% | 2019-12-18 |
| CVE-2018-5723 EXP | MASTER IPCAMERA01 3.3.4.2103 devices have a hardcoded password of cat1029 for the root account. | Patch early | 9.8 critical | 9.7% | 2018-01-16 |
| CVE-2019-6716 EXP | An unauthenticated Insecure Direct Object Reference (IDOR) in Wicket Core in LogonBox Nervepoint Access Manager 2013 through 2017 allows a remote atta… | Patch early | 9.4 critical | 9.6% | 2019-03-21 |
| CVE-2018-9021 EXP | An authentication bypass vulnerability in CA Privileged Access Manager 2.8.2 and earlier allows remote attackers to execute arbitrary commands with sp… | Patch early | 9.8 critical | 9.6% | 2018-06-18 |
| CVE-2011-4906 EXP | Tiny browser in TinyMCE 3.0 editor in Joomla! before 1.5.13 allows file upload and arbitrary PHP code execution. | Patch early | 9.8 critical | 9.6% | 2020-02-12 |
| CVE-2022-32272 EXP | OPSWAT MetaDefender Core before 5.1.2, MetaDefender ICAP before 4.12.1, and MetaDefender Email Gateway Security before 5.6.1 have incorrect access con… | Patch early | 9.8 critical | 9.6% | 2022-06-09 |
| CVE-2018-18793 EXP | School Event Management System 1.0 allows Arbitrary File Upload via event/controller.php?action=photos. | Patch early | 9.8 critical | 9.5% | 2018-11-16 |
| CVE-2017-11309 EXP | Buffer overflow in the SoftConsole client in Avaya IP Office before 10.1.1 allows remote servers to execute arbitrary code via a long response. | Patch early | 9.6 critical | 9.4% | 2017-11-10 |
| CVE-2026-0926 EXP | The Prodigy Commerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.0 via the 'parameters[templa… | Patch early | 9.8 critical | 9.4% | 2026-02-19 |
| CVE-2012-5878 EXP | Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allows remote attackers to execute arbitrary commands via shell metacharacters in… | Patch early | 9.8 critical | 9.3% | 2020-01-03 |
| CVE-2019-13292 EXP | A SQL Injection issue was discovered in webERP 4.15. Payments.php accepts payment data in base64 format. After this is decoded, it is deserialized. Th… | Patch early | 9.8 critical | 9.3% | 2019-07-04 |
| CVE-2026-4631 EXP | Cockpit's remote login feature passes user-supplied hostnames and usernames from the web interface to the SSH client without validation or sanitizatio… | Patch early | 9.8 critical | 9.2% | 2026-04-07 |
| CVE-2017-11120 EXP | On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, an attacker can craft a malformed RRM neighbor report frame to trigger an interna… | Patch early | 9.8 critical | 9.1% | 2017-09-28 |
| CVE-2018-12292 EXP | A use-after-free vulnerability exists in DOMProxyHandler::EnsureExpandoObject in Pale Moon before 27.9.3. | Patch early | 9.8 critical | 9.1% | 2018-06-13 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt