CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
399,554 CVEs
1,729 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-30
205,911 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2007-0356 EXP | The Common Controls Replacement Project (CCRP) FolderTreeview (FTV) ActiveX control (ccrpftv6.ocx) allows remote attackers to cause a denial of servic… | Patch early | 5.0 medium | 17.6% | 2007-01-19 |
| CVE-2022-4395 EXP | The Membership For WooCommerce WordPress plugin before 2.1.7 does not validate uploaded files, which could allow unauthenticated users to upload arbit… | Patch early | 9.8 critical | 17.6% | 2023-01-30 |
| CVE-2015-3897 EXP | Directory traversal vulnerability in Bonita BPM Portal before 6.5.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the theme pa… | Patch early | 5.0 medium | 17.6% | 2015-06-18 |
| CVE-2017-5135 EXP | Certain Technicolor devices have an SNMP access-control bypass, possibly involving an ISP customization in some cases. The Technicolor (formerly Cisco… | Patch early | 9.1 critical | 17.5% | 2017-04-27 |
| CVE-2026-21876 EXP | The OWASP core rule set (CRS) is a set of generic attack detection rules for use with compatible web application firewalls. Prior to versions 4.22.0 a… | Patch early | 9.3 critical | 17.5% | 2026-01-08 |
| CVE-2025-47228 EXP | In the Production Environment extension in Netmake ScriptCase through 9.12.006 (23), shell injection in the SSH connection settings allows authenticat… | Patch early | 6.7 medium | 17.5% | 2025-07-05 |
| CVE-2018-18065 EXP | _set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to r… | Patch early | 6.5 medium | 17.5% | 2018-10-08 |
| CVE-1999-1033 EXP | Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to… | Patch early | 5.0 medium | 17.5% | 1999-05-11 |
| CVE-2016-3373 EXP | The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window… | Patch early | 5.5 medium | 17.5% | 2016-09-14 |
| CVE-2002-1688 EXP | The browser history feature in Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to execute arbitrary script as other users and stea… | Patch early | 5.0 medium | 17.5% | 2002-12-31 |
| CVE-2006-3944 EXP | Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) via a (1) Forms.ListBox.1 or (2) Forms.Li… | Patch early | 5.0 medium | 17.5% | 2006-07-31 |
| CVE-2008-5112 EXP | The LDAP server in Active Directory in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 responds differently to a failed bind attempt depending… | Patch early | 5.0 medium | 17.4% | 2008-11-17 |
| CVE-2016-1077 EXP | Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous befor… | Patch early | 9.8 critical | 17.4% | 2016-05-11 |
| CVE-2023-26602 EXP | ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as demonstrated by snmp… | Patch early | 9.8 critical | 17.4% | 2023-02-26 |
| CVE-2013-5045 EXP | Microsoft Internet Explorer 10 and 11 allows local users to bypass the Protected Mode protection mechanism, and consequently gain privileges, by lever… | Patch early | 6.2 medium | 17.4% | 2013-12-11 |
| CVE-2008-0236 EXP | An ActiveX control for Microsoft Visual FoxPro (vfp6r.dll 6.0.8862.0) allows remote attackers to execute arbitrary commands by invoking the DoCmd meth… | Patch early | 5.8 medium | 17.4% | 2008-01-11 |
| CVE-2009-3019 EXP | Microsoft Internet Explorer 6 on Windows XP SP2 and SP3, and Internet Explorer 7 on Vista, allows remote attackers to cause a denial of service (appli… | Patch early | 5.0 medium | 17.4% | 2009-08-31 |
| CVE-2021-24040 EXP | Due to use of unsafe YAML deserialization logic, an attacker with the ability to modify local YAML configuration files could provide malicious input,… | Patch early | 9.8 critical | 17.4% | 2021-09-10 |
| CVE-2013-4660 EXP | The JS-YAML module before 2.0.5 for Node.js parses input without properly considering the unsafe !!js/function tag, which allows remote attackers to e… | Patch early | 6.8 medium | 17.3% | 2013-06-28 |
| CVE-2017-5447 EXP | An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an att… | Patch early | 9.1 critical | 17.3% | 2018-06-11 |
| CVE-2019-6543 EXP | AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update.… | Patch early | 9.8 critical | 17.3% | 2019-02-13 |
| CVE-2017-5404 EXP | A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This… | Patch early | 9.8 critical | 17.3% | 2018-06-11 |
| CVE-2007-1377 EXP | AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspeci… | Patch early | 5.0 medium | 17.3% | 2007-03-10 |
| CVE-2004-0526 EXP | Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "al… | Patch early | 5.0 medium | 17.2% | 2004-08-06 |
| CVE-2018-13859 EXP | MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18, allow unauthorized remote attacke… | Patch early | 9.8 critical | 17.2% | 2018-07-17 |
| CVE-2010-3609 EXP | The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SL… | Patch early | 5.0 medium | 17.2% | 2011-03-11 |
| CVE-2006-4075 EXP | Multiple PHP remote file inclusion vulnerabilities in Wim Fleischhauer docpile: wim's edition (docpile:we) 0.2.2 and earlier allow remote attackers to… | Patch early | 5.1 medium | 17.2% | 2006-08-11 |
| CVE-2001-0348 EXP | Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace. | Patch early | 5.0 medium | 17.2% | 2001-07-21 |
| CVE-2020-26567 EXP | An issue was discovered on D-Link DSR-250N before 3.17B devices. The CGI script upgradeStatusReboot.cgi can be accessed without authentication. Any ac… | Patch early | 5.5 medium | 17.2% | 2020-10-08 |
| CVE-2018-6546 EXP | plays_service.exe in the plays.tv service before 1.27.7.0, as distributed in AMD driver-installation packages and Gaming Evolved products, executes co… | Patch early | 9.8 critical | 17.2% | 2018-04-13 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt