CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
398,935 CVEs
1,728 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-29
205,687 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2017-5815 EXP | A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version 7.3 E0504P04 was found. | Patch early | 9.8 critical | 33.7% | 2018-02-15 |
| CVE-2015-2995 EXP | The RdsLogsEntry servlet in SysAid Help Desk before 15.2 does not properly check file extensions, which allows remote attackers to upload and execute… | Patch early | 6.8 medium | 33.6% | 2015-06-08 |
| CVE-2017-7588 EXP | On certain Brother devices, authorization is mishandled by including a valid AuthCookie cookie in the HTTP response to a failed login attempt. Affecte… | Patch early | 9.8 critical | 33.6% | 2017-04-12 |
| CVE-2010-5299 EXP | Stack-based buffer overflow in MicroP 0.1.1.1600 allows remote attackers to execute arbitrary code via a crafted .mppl file. NOTE: it has been report… | Patch early | 6.8 medium | 33.6% | 2014-05-23 |
| CVE-2021-31761 EXP | Webmin 1.973 is affected by reflected Cross Site Scripting (XSS) to achieve Remote Command Execution through Webmin's running process feature. | Patch early | 9.6 critical | 33.6% | 2021-04-25 |
| CVE-2017-16885 EXP | Improper Permissions Handling in the Portal on FiberHome LM53Q1 VH519R05C01S38 devices (intended for obtaining information about Internet Usage, Chang… | Patch early | 9.8 critical | 33.5% | 2018-01-12 |
| CVE-2000-0673 EXP | The NetBIOS Name Server (NBNS) protocol does not perform authentication, which allows remote attackers to cause a denial of service by sending a spoof… | Patch early | 5.0 medium | 33.4% | 2000-07-27 |
| CVE-2018-11094 EXP | An issue was discovered on Intelbras NCLOUD 300 1.0 devices. /cgi-bin/ExportSettings.sh, /goform/updateWPS, /goform/RebootSystem, and /goform/vpnBasic… | Patch early | 9.8 critical | 33.4% | 2018-05-15 |
| CVE-2005-1980 EXP | Distributed Transaction Controller in Microsoft Windows allows remote servers to cause a denial of service (MSDTC service hang) via a crafted Transact… | Patch early | 5.0 medium | 33.3% | 2005-10-12 |
| CVE-2016-0801 EXP | The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to exe… | Patch early | 9.8 critical | 33.1% | 2016-02-07 |
| CVE-2015-1376 EXP | pixabay-images.php in the Pixabay Images plugin before 2.4 for WordPress does not validate hostnames, which allows remote authenticated users to write… | Patch early | 4.0 medium | 33.1% | 2015-01-28 |
| CVE-2017-6187 EXP | Buffer overflow in the built-in web server in DiskSavvy Enterprise 9.4.18 allows remote attackers to execute arbitrary code via a long URI in a GET re… | Patch early | 9.8 critical | 33.1% | 2017-02-22 |
| CVE-2007-3068 EXP | Stack-based buffer overflow in DVD X Player 4.1 Professional allows remote attackers to execute arbitrary code via a PLF playlist containing a long fi… | Patch early | 6.8 medium | 32.9% | 2007-06-06 |
| CVE-2015-3337 EXP | Directory traversal vulnerability in Elasticsearch before 1.4.5 and 1.5.x before 1.5.2, when a site plugin is enabled, allows remote attackers to read… | Patch early | 4.3 medium | 32.9% | 2015-05-01 |
| CVE-2012-1007 EXP | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 1.3.10 allow remote attackers to inject arbitrary web script or HTML via (1) the… | Patch early | 4.3 medium | 32.9% | 2012-02-07 |
| CVE-2017-3241 EXP | Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: RMI). Supported versions that are affected are Java… | Patch early | 9.0 critical | 32.8% | 2017-01-27 |
| CVE-2005-1979 EXP | Distributed Transaction Controller in Microsoft Windows allows remote servers to cause a denial of service (MSDTC service exception and exit) via an "… | Patch early | 5.0 medium | 32.8% | 2005-10-12 |
| CVE-2008-0871 EXP | Multiple stack-based buffer overflows in Now SMS/MMS Gateway 2007.06.27 and earlier allow remote attackers to execute arbitrary code via a (1) long pa… | Patch early | 6.8 medium | 32.8% | 2008-02-21 |
| CVE-2026-4257 EXP | The Contact Form by Supsystic plugin for WordPress is vulnerable to Server-Side Template Injection (SSTI) leading to Remote Code Execution (RCE) in al… | Patch early | 9.8 critical | 32.8% | 2026-03-30 |
| CVE-2022-31885 EXP | Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts. | Patch early | 9.8 critical | 32.8% | 2022-06-28 |
| CVE-2004-2434 EXP | Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with "::{" (colon colon left brace… | Patch early | 5.0 medium | 32.8% | 2004-12-31 |
| CVE-2005-1184 EXP | The TCP/IP stack in multiple operating systems allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet with the correc… | Patch early | 5.0 medium | 32.7% | 2005-05-02 |
| CVE-2009-3830 EXP | The download functionality in Team Services in Microsoft Office SharePoint Server 2007 12.0.0.4518 and 12.0.0.6219 allows remote attackers to read ASP… | Patch early | 5.0 medium | 32.6% | 2009-10-30 |
| CVE-2015-5471 EXP | Absolute path traversal vulnerability in include/user/download.php in the Swim Team plugin 1.44.10777 for WordPress allows remote attackers to read ar… | Patch early | 5.3 medium | 32.5% | 2016-01-12 |
| CVE-2018-15534 EXP | Geutebrueck re_porter 16 before 7.8.974.20 has a possibility of unauthenticated access to sensitive information including usernames and hashes via a d… | Patch early | 9.8 critical | 32.4% | 2018-08-21 |
| CVE-2013-3827 EXP | Unspecified vulnerability in the Oracle GlassFish Server component in Oracle Fusion Middleware 2.1.1, 3.0.1, and 3.1.2; the Oracle JDeveloper componen… | Patch early | 5.0 medium | 32.4% | 2013-10-16 |
| CVE-2008-3979 EXP | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authenticated users to affect confide… | Patch early | 5.5 medium | 32.4% | 2009-01-14 |
| CVE-2012-1153 EXP | Unrestricted file upload vulnerability in addons/uploadify/uploadify.php in appRain CMF 0.1.5 and earlier allows remote attackers to execute arbitrary… | Patch early | 6.8 medium | 32.4% | 2012-10-06 |
| CVE-2000-0495 EXP | Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder… | Patch early | 5.0 medium | 32.3% | 2000-05-30 |
| CVE-2011-2013 EXP | Integer overflow in the TCP/IP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allo… | Patch early | 9.8 critical | 32.3% | 2011-11-08 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt