CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
399,661 CVEs
1,729 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-30
205,953 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2008-3790 EXP | The REXML module in Ruby 1.8.6 through 1.8.6-p287, 1.8.7 through 1.8.7-p72, and 1.9 allows context-dependent attackers to cause a denial of service (C… | Patch early | 5.0 medium | 15.2% | 2008-08-27 |
| CVE-2007-1383 EXP | Integer overflow in the 16 bit variable reference counter in PHP 4 allows context-dependent attackers to execute arbitrary code by overflowing this co… | Patch early | 9.8 critical | 15.2% | 2007-03-10 |
| CVE-2017-17672 EXP | In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file deletion and, under certain circums… | Patch early | 9.8 critical | 15.2% | 2017-12-14 |
| CVE-2025-9090 EXP | A vulnerability was identified in Tenda AC20 16.03.08.12. Affected is the function websFormDefine of the file /goform/telnet of the component Telnet S… | Patch early | 6.3 medium | 15.2% | 2025-08-17 |
| CVE-2013-6924 EXP | Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbitrary commands via shell metacharacters in the ip… | Patch early | 9.8 critical | 15.2% | 2017-10-11 |
| CVE-2014-5091 EXP | A vulnerability exits in Status2K 2.5 Server Monitoring Software via the multies parameter to includes/functions.php, which could let a malicious user… | Patch early | 9.8 critical | 15.2% | 2020-02-07 |
| CVE-2018-18322 EXP | CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Command Injection via shell metacharacters in the admin/index.php service_start, service_… | Patch early | 9.8 critical | 15.1% | 2018-10-15 |
| CVE-2015-2780 EXP | Unrestricted file upload vulnerability in Berta CMS allows remote attackers to execute arbitrary code by uploading a crafted image file with an execut… | Patch early | 9.8 critical | 15.1% | 2017-10-16 |
| CVE-2012-4409 EXP | Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to execute ar… | Patch early | 6.8 medium | 15.1% | 2012-11-21 |
| CVE-2019-8024 EXP | Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015… | Patch early | 9.8 critical | 15.1% | 2019-08-20 |
| CVE-2017-8644 EXP | Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that… | Patch early | 4.3 medium | 15.1% | 2017-08-08 |
| CVE-2016-5228 EXP | Stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx in Micro Focus Rumba 9.x before 9.3 HF 11997 and 9.… | Patch early | 9.8 critical | 15.1% | 2016-07-03 |
| CVE-2010-4645 EXP | strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 and 5.3 before 5.3.5, and other products, allows context-dependent attackers to… | Patch early | 5.0 medium | 15.1% | 2011-01-11 |
| CVE-2016-3974 EXP | XML external entity (XXE) vulnerability in the Configuration Wizard in SAP NetWeaver Java AS 7.1 through 7.5 allows remote attackers to cause a denial… | Patch early | 9.1 critical | 15.1% | 2016-04-07 |
| CVE-2002-1187 EXP | Cross-site scripting vulnerability (XSS) in Internet Explorer 5.01 through 6.0 allows remote attackers to read and execute files on the local system v… | Patch early | 6.8 medium | 15% | 2002-12-11 |
| CVE-2009-1765 EXP | Multiple directory traversal vulnerabilities in pluck 4.6.2, when register_globals is enabled, allow remote attackers to include and execute arbitrary… | Patch early | 6.8 medium | 15% | 2009-05-22 |
| CVE-2007-5158 EXP | The focus handling for the onkeydown event in Microsoft Internet Explorer 6.0 allows remote attackers to change field focus and copy keystrokes via a… | Patch early | 4.3 medium | 15% | 2007-10-01 |
| CVE-2018-11586 EXP | XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to read arbitrary files or conduct… | Patch early | 9.8 critical | 15% | 2018-06-05 |
| CVE-2006-6602 EXP | explorer.exe in Windows Explorer 6.00.2900.2180 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial of service via a c… | Patch early | 4.3 medium | 15% | 2006-12-15 |
| CVE-2008-0225 EXP | Heap-based buffer overflow in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 and earlier allows remote attackers to execute arb… | Patch early | 6.4 medium | 15% | 2008-01-10 |
| CVE-2002-0974 EXP | Help and Support Center for Windows XP allows remote attackers to delete arbitrary files via a link to the hcp: protocol that accesses uplddrvinfo.htm… | Patch early | 5.0 medium | 15% | 2002-09-24 |
| CVE-1999-0755 EXP | Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option. | Patch early | 5.0 medium | 15% | 1999-05-27 |
| CVE-2019-1347 EXP | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID… | Patch early | 6.5 medium | 14.9% | 2019-10-10 |
| CVE-2002-0448 EXP | Xerver Free Web Server 2.10 and earlier allows remote attackers to cause a denial of service (crash) via an HTTP request that contains many "C:/" sequ… | Patch early | 5.0 medium | 14.9% | 2002-07-26 |
| CVE-2008-0782 EXP | Directory traversal vulnerability in MoinMoin 1.5.8 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the MOIN_ID… | Patch early | 5.0 medium | 14.9% | 2008-02-14 |
| CVE-2006-3193 EXP | Multiple PHP remote file inclusion vulnerabilities in Grayscale BandSite CMS 1.1.1, when register_globals is enabled, allow remote attackers to execut… | Patch early | 5.1 medium | 14.8% | 2006-06-23 |
| CVE-2020-8512 EXP | In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter. | Patch early | 6.1 medium | 14.8% | 2020-02-01 |
| CVE-2023-22855 EXP | Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is… | Patch early | 9.8 critical | 14.8% | 2023-02-15 |
| CVE-1999-0819 EXP | NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it. | Patch early | 5.0 medium | 14.8% | 1999-12-01 |
| CVE-2007-0464 EXP | The _CFNetConnectionWillEnqueueRequests function in CFNetwork 129.19 on Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial… | Patch early | 5.0 medium | 14.8% | 2007-01-30 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt