CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
399,661 CVEs
1,729 on KEV
17,272 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-30
205,953 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2019-3025 EXP | Vulnerability in the Oracle Hospitality RES 3700 component of Oracle Food and Beverage Applications. The supported version that is affected is 5.7. Di… | Patch early | 9.0 critical | 14.5% | 2019-10-16 |
| CVE-2011-0420 EXP | The grapheme_extract function in the Internationalization extension (Intl) for ICU for PHP 5.3.5 allows context-dependent attackers to cause a denial… | Patch early | 5.0 medium | 14.4% | 2011-02-19 |
| CVE-2009-2350 EXP | Microsoft Internet Explorer 6.0.2900.2180 and earlier does not block javascript: URIs in Refresh headers in HTTP responses, which allows remote attack… | Patch early | 4.3 medium | 14.4% | 2009-07-07 |
| CVE-2000-0929 EXP | Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not cl… | Patch early | 5.0 medium | 14.4% | 2000-12-19 |
| CVE-2019-13597 EXP | _s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher. Also, one can… | Patch early | 9.8 critical | 14.3% | 2019-07-14 |
| CVE-2018-11742 EXP | NEC Univerge Sv9100 WebPro 6.00.00 devices have Cleartext Password Storage in the Web UI. | Patch early | 9.8 critical | 14.3% | 2018-12-26 |
| CVE-2019-9648 EXP | An issue was discovered in the SFTP Server component in Core FTP 2.0 Build 674. A directory traversal vulnerability exists using the SIZE command alon… | Patch early | 5.3 medium | 14.3% | 2019-03-22 |
| CVE-2011-1071 EXP | The GNU C Library (aka glibc or libc6) before 2.12.2 and Embedded GLIBC (EGLIBC) allow context-dependent attackers to execute arbitrary code or cause… | Patch early | 5.1 medium | 14.3% | 2011-04-08 |
| CVE-2017-6880 EXP | Buffer overflow in Cerberus FTP Server 8.0.10.3 allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other… | Patch early | 9.8 critical | 14.3% | 2017-03-17 |
| CVE-2021-45901 EXP | The password-reset form in ServiceNow Orlando provides different responses to invalid authentication attempts depending on whether the username exists… | Patch early | 5.3 medium | 14.3% | 2022-02-10 |
| CVE-2002-0976 EXP | Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xm… | Patch early | 6.4 medium | 14.3% | 2002-09-24 |
| CVE-2015-7246 EXP | D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account,… | Patch early | 9.8 critical | 14.3% | 2017-04-24 |
| CVE-2003-0562 EXP | Buffer overflow in the CGI2PERL.NLM PERL handler in Novell Netware 5.1 and 6.0 allows remote attackers to cause a denial of service (ABEND) via a long… | Patch early | 5.0 medium | 14.3% | 2003-08-27 |
| CVE-2023-33584 EXP | Sourcecodester Enrollment System Project V1.0 is vulnerable to SQL Injection (SQLI) attacks, which allow an attacker to manipulate the SQL queries exe… | Patch early | 9.8 critical | 14.2% | 2023-06-21 |
| CVE-2019-13383 EXP | In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, the Login process allows attackers to check whether a username is valid by reading the HT… | Patch early | 5.3 medium | 14.2% | 2019-07-16 |
| CVE-2013-3179 EXP | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitra… | Patch early | 4.3 medium | 14.2% | 2013-09-11 |
| CVE-2006-1172 EXP | Stack-based buffer overflow in the createPKCS10 function in Cryptomathic Cenroll ActiveX Control 1.1.0.0 allows remote attackers to execute arbitrary… | Patch early | 5.0 medium | 14.2% | 2006-05-09 |
| CVE-2013-1597 EXP | A Directory Traversal vulnerability exists in Vivotek PT7135 IP Cameras 0300a and 0400a via a specially crafted GET request, which could let a malicio… | Patch early | 6.5 medium | 14.2% | 2020-01-24 |
| CVE-2018-0891 EXP | ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and… | Patch early | 4.3 medium | 14.2% | 2018-03-14 |
| CVE-2011-4451 EXP | libs/Wakka.class.php in WikkaWiki 1.3.1 and 1.3.2, when the spam_logging option is enabled, allows remote attackers to write arbitrary PHP code to the… | Patch early | 4.3 medium | 14.2% | 2012-09-05 |
| CVE-2012-2138 EXP | The @CopyFrom operation in the POST servlet in the org.apache.sling.servlets.post bundle before 2.1.2 in Apache Sling does not prevent attempts to cop… | Patch early | 5.0 medium | 14.1% | 2012-07-09 |
| CVE-2017-0211 EXP | An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Se… | Patch early | 5.5 medium | 14.1% | 2017-04-12 |
| CVE-2019-6445 EXP | An issue was discovered in NTPsec before 1.1.3. An authenticated attacker can cause a NULL pointer dereference and ntpd crash in ntp_control.c, relate… | Patch early | 6.5 medium | 14.1% | 2019-01-16 |
| CVE-2015-9098 EXP | In Redgate SQL Monitor before 3.10 and 4.x before 4.2, a remote attacker can gain unauthenticated access to the Base Monitor, resulting in the ability… | Patch early | 9.8 critical | 14.1% | 2017-06-22 |
| CVE-2022-22832 EXP | An issue was discovered in Servisnet Tessa 0.0.2. Authorization data is available via an unauthenticated /data-service/users/ request. | Patch early | 9.8 critical | 14.1% | 2022-02-06 |
| CVE-2022-29593 EXP | relay_cgi.cgi on Dingtian DT-R002 2CH relay devices with firmware 3.1.276A allows an attacker to replay HTTP post requests without the need for authen… | Patch early | 5.9 medium | 14% | 2022-07-14 |
| CVE-2008-6668 EXP | Multiple directory traversal vulnerabilities in nweb2fax 0.2.7 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1… | Patch early | 5.0 medium | 14% | 2009-04-08 |
| CVE-2010-0944 EXP | Directory traversal vulnerability in the JCollection (com_jcollection) component for Joomla! allows remote attackers to read arbitrary files via a ..… | Patch early | 5.0 medium | 14% | 2010-03-08 |
| CVE-2010-1304 EXP | Directory traversal vulnerability in userstatus.php in the User Status (com_userstatus) component 1.21.16 for Joomla! allows remote attackers to read… | Patch early | 5.0 medium | 14% | 2010-04-08 |
| CVE-2015-2068 EXP | Multiple cross-site scripting (XSS) vulnerabilities in the MAGMI (aka Magento Mass Importer) plugin for Magento Server allow remote attackers to injec… | Patch early | 4.3 medium | 14% | 2015-02-24 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt