CVE Explorer.
Every published CVE, ranked the way you should actually patch: KEV first, then anything with a public exploit or an EPSS above ten per cent, then down by CVSS.
400,049 CVEs
1,730 on KEV
17,275 EPSS ≥ 10%
25,086 with exploits
synced 2026-09-30
186,013 results
| CVE | Summary | Priority | CVSS | EPSS | Published |
|---|---|---|---|---|---|
| CVE-2017-15222 EXP | Buffer Overflow vulnerability in Ayukov NFTPD 2.0 and earlier allows remote attackers to execute arbitrary code. | Patch early | 9.8 critical | 60.3% | 2017-10-24 |
| CVE-2014-2849 EXP | The Change Password dialog box (change_password) in Sophos Web Appliance before 3.8.2 allows remote authenticated users to change the admin user passw… | Patch early | 8.5 high | 60.3% | 2014-04-11 |
| CVE-2002-1059 EXP | Buffer overflow in Van Dyke SecureCRT SSH client before 3.4.6, and 4.x before 4.0 beta 3, allows an SSH server to execute arbitrary code via a long SS… | Patch early | 7.5 high | 60.3% | 2002-10-04 |
| CVE-2004-0575 EXP | Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows Server 2003 64-bit Edition allo… | Patch early | 10.0 high | 60.3% | 2004-11-03 |
| CVE-2006-6424 EXP | Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IM… | Patch early | 9.0 high | 60.3% | 2006-12-27 |
| CVE-2007-2280 EXP | Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager component in HP OpenView Storag… | Patch early | 10.0 high | 60.3% | 2009-12-18 |
| CVE-2021-24499 EXP | The Workreap WordPress theme before 2.2.2 AJAX actions workreap_award_temp_file_uploader and workreap_temp_file_uploader did not perform nonce checks,… | Patch early | 9.8 critical | 60.1% | 2021-08-09 |
| CVE-2011-0257 EXP | Integer signedness error in Apple QuickTime before 7.7 allows remote attackers to execute arbitrary code or cause a denial of service (application cra… | Patch early | 9.3 high | 60.1% | 2011-08-15 |
| CVE-2005-0595 EXP | Buffer overflow in ext.dll in BadBlue 2.55 allows remote attackers to execute arbitrary code via a long mfcisapicommand parameter. | Patch early | 7.5 high | 60.1% | 2005-05-02 |
| CVE-2013-0810 EXP | Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, and Windows Server 2008 SP2 allow remote attackers to execute arbitrary… | Patch early | 8.1 high | 59.9% | 2013-09-11 |
| CVE-2024-31621 EXP | An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted script to the api/v1 component. | Patch early | 7.6 high | 59.9% | 2024-04-29 |
| CVE-2005-0053 EXP | Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability." | Patch early | 7.5 high | 59.8% | 2005-05-02 |
| CVE-2007-6019 EXP | Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, allows remote attackers to execute arbitrary code via an SWF file with a modified… | Patch early | 9.3 high | 59.8% | 2008-04-09 |
| CVE-2021-46417 EXP | Insecure handling of a download function leads to disclosure of internal files due to path traversal with root privileges in Franklin Fueling Systems… | Patch early | 7.5 high | 59.8% | 2022-04-07 |
| CVE-2011-2595 EXP | Multiple stack-based buffer overflows in ACDSee FotoSlate 4.0 Build 146 allow remote attackers to execute arbitrary code via a long id parameter in a… | Patch early | 10.0 high | 59.7% | 2011-09-14 |
| CVE-2008-5159 EXP | Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to… | Patch early | 10.0 high | 59.7% | 2008-11-18 |
| CVE-2017-11840 EXP | ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to g… | Patch early | 7.5 high | 59.6% | 2017-11-15 |
| CVE-2017-11841 EXP | ChakraCore and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to g… | Patch early | 7.5 high | 59.6% | 2017-11-15 |
| CVE-2017-11870 EXP | ChakraCore and Microsoft Edge in Windows 10 1703, 1709, and Windows Server, version 1709 allows an attacker to gain the same user rights as the curren… | Patch early | 7.5 high | 59.6% | 2017-11-15 |
| CVE-2014-8424 EXP | ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication. | Patch early | 7.8 high | 59.6% | 2014-11-28 |
| CVE-2021-33393 EXP | lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It might be owned by an unprivil… | Patch early | 8.8 high | 59.6% | 2021-06-09 |
| CVE-2012-4333 EXP | Multiple stack-based buffer overflows in the BackupToAvi method in the (1) UMS_Ctrl 1.5.1.1 and (2) UMS_Ctrl_STW 2.0.1.0 ActiveX controls in Samsung N… | Patch early | 10.0 high | 59.6% | 2012-08-14 |
| CVE-2005-0768 EXP | Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions before 5.0.7, allows remote attacke… | Patch early | 10.0 high | 59.5% | 2005-05-02 |
| CVE-2012-2576 EXP | SQL injection vulnerability in the LoginServlet page in SolarWinds Storage Manager before 5.1.2, SolarWinds Storage Profiler before 5.1.2, and SolarWi… | Patch early | 9.8 critical | 59.4% | 2017-12-20 |
| CVE-2022-47075 EXP | An issue was discovered in Smart Office Web 20.28 and earlier allows attackers to download sensitive information via the action name parameter to Expo… | Patch early | 7.5 high | 59.4% | 2023-02-28 |
| CVE-2017-16249 EXP | The Debut embedded http server contains a remotely exploitable denial of service where a single malformed HTTP POST request can cause the server to ha… | Patch early | 7.5 high | 59.4% | 2017-11-10 |
| CVE-2007-1868 EXP | The management service in IBM Tivoli Provisioning Manager for OS Deployment before 5.1 Fix Pack 2 does not properly handle multipart/form-data in HTTP… | Patch early | 10.0 high | 59.3% | 2007-04-04 |
| CVE-2004-1595 EXP | Buffer overflow in ShixxNote 6.net build 117 allows remote attackers to execute arbitrary code via a long font field. | Patch early | 7.5 high | 59.3% | 2004-10-13 |
| CVE-2012-2957 EXP | The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows local users to gain privileges by modifying files, related to a "file incl… | Patch early | 7.2 high | 59.3% | 2012-07-23 |
| CVE-2007-4370 EXP | Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbitrary code via a long string to… | Patch early | 7.5 high | 59.2% | 2007-08-15 |
How to read it
Patch the KEV entries first — those are being exploited in the wild right now — then anything with a public exploit or an EPSS above ten per cent, then work down by CVSS in your normal cycle. That order, not raw CVSS, is what keeps you ahead of what is actually being used against people. The data is drawn daily from NVD, FIRST EPSS, CISA KEV and Exploit-DB.
Watch your own stack → and get told only when something that matters to it moves.
→ all tools · exposure · dns · email · headers · tls · ct · cookies · reputation · security.txt