Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
394,136 CVEs1,713 in CISA KEV17,386 with EPSS ≥ 10%Updated 17 September 2026
17,386 results · page 100 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2020-28976 | The Canto plugin 1.3.0 for WordPress contains a blind SSRF vulnerability. | MEDIUM 5.3EPSS 27.8% | 30 November 2020 |
| CVE-2020-13942 | It is possible to inject malicious OGNL or MVEL scripts into the /context.json public endpoint. | CRITICAL 9.8EPSS 68.4% | 24 November 2020 |
| CVE-2020-4000 | The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 allows for executing files through directory traversal. | HIGH 8.8EPSS 43.0% | 24 November 2020 |
| CVE-2020-3984 | The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3 and 3.4.x prior to 3.4.4 does not apply correct input validation which allows for SQL-injection. | MEDIUM 6.5EPSS 22.4% | 24 November 2020 |
| CVE-2020-4006 | Multiple VMware Products Command Injection Vulnerability | KEVCRITICAL 9.1EPSS 17.3% | 23 November 2020 |
| CVE-2020-13671 | Drupal core Un-restricted Upload of File | KEVHIGH 8.8EPSS 35.4% | 20 November 2020 |
| CVE-2020-28949 | PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability | KEVHIGH 7.8EPSS 84.6% | 19 November 2020 |
| CVE-2020-28948 | Archive_Tar through 1.4.10 allows an unserialization attack because phar: is blocked but PHAR: is not blocked. | HIGH 7.8EPSS 47.5% | 19 November 2020 |
| CVE-2019-20933 | InfluxDB before 1.7.6 has an authentication bypass vulnerability in the authenticate function in services/httpd/handler.go because a JWT token may have an empty SharedSecret (aka shared secret). | CRITICAL 9.8EPSS 30.9% | 19 November 2020 |
| CVE-2020-8277 | A Node.js application that allows an attacker to trigger a DNS request for a host of their choice could trigger a Denial of Service in versions < 15.2.1, < 14.15.1, and < 12.19.1 by getting the application to resolve a DNS record with a larger number of… | HIGH 7.5EPSS 54.2% | 19 November 2020 |
| CVE-2020-28581 | A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated… | HIGH 7.2EPSS 45.0% | 18 November 2020 |
| CVE-2020-28580 | A command injection vulnerability in AddVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated… | HIGH 7.2EPSS 45.0% | 18 November 2020 |
| CVE-2020-28579 | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges. | HIGH 8.8EPSS 50.7% | 18 November 2020 |
| CVE-2020-28578 | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an unauthenticated, remote attacker to send a specially crafted HTTP message and achieve remote code execution with elevated privileges. | CRITICAL 9.8EPSS 73.2% | 18 November 2020 |
| CVE-2020-28688 | The add artwork functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. | HIGH 8.8EPSS 12.0% | 17 November 2020 |
| CVE-2020-28687 | The edit profile functionality in ARTWORKS GALLERY IN PHP, CSS, JAVASCRIPT, AND MYSQL 1.0 allows remote attackers to upload arbitrary files. | HIGH 8.8EPSS 12.0% | 17 November 2020 |
| CVE-2020-7774 | The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution. | CRITICAL 9.8EPSS 69.4% | 17 November 2020 |
| CVE-2020-27131 | Multiple vulnerabilities in the Java deserialization function that is used by Cisco Security Manager could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. | CRITICAL 9.8EPSS 87.7% | 17 November 2020 |
| CVE-2020-27130 | A vulnerability in Cisco Security Manager could allow an unauthenticated, remote attacker to gain access to sensitive information. | CRITICAL 9.1EPSS 65.9% | 17 November 2020 |
| CVE-2020-26217 | XStream before version 1.4.14 is vulnerable to Remote Code Execution.The vulnerability may allow a remote attacker to run arbitrary shell commands only by manipulating the processed input stream. | HIGH 8.8EPSS 85.0% | 16 November 2020 |
| CVE-2020-27991 | Nagios XI before 5.7.5 is vulnerable to XSS in Account Information (Email field). | MEDIUM 5.4EPSS 34.4% | 16 November 2020 |
| CVE-2020-27990 | Nagios XI before 5.7.5 is vulnerable to XSS in the Deployment tool (add agent). | MEDIUM 5.4EPSS 34.4% | 16 November 2020 |
| CVE-2020-27989 | Nagios XI before 5.7.5 is vulnerable to XSS in Dashboard Tools (Edit Dashboard). | MEDIUM 5.4EPSS 34.4% | 16 November 2020 |
| CVE-2020-27988 | Nagios XI before 5.7.5 is vulnerable to XSS in Manage Users (Username field). | MEDIUM 5.4EPSS 91.3% | 16 November 2020 |
| CVE-2020-8271 | Unauthenticated remote code execution with root privileges in Citrix SD-WAN Center versions before 11.2.2, 11.1.2b and 10.2.8 | CRITICAL 9.8EPSS 11.1% | 16 November 2020 |
| CVE-2020-25695 | An attacker having permission to create non-temporary objects in at least one schema can execute arbitrary SQL functions under the identity of a superuser. | HIGH 8.8EPSS 46.4% | 16 November 2020 |
| CVE-2020-13638 | lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation. | CRITICAL 9.8EPSS 76.6% | 13 November 2020 |
| CVE-2020-24719 | Exposed Erlang Cookie could lead to Remote Command Execution (RCE) attack. | CRITICAL 9.8EPSS 23.3% | 12 November 2020 |
| CVE-2020-27386 | An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allows an authenticated remote attacker to upload and execute arbitrary files by using the FileManager to upload malicious code (e.g., ASP code) in the form of a safe file type (e.g., a… | HIGH 8.8EPSS 72.9% | 12 November 2020 |
| CVE-2019-17566 | Apache Batik is vulnerable to server-side request forgery, caused by improper input validation by the "xlink:href" attributes. | HIGH 7.5EPSS 10.9% | 12 November 2020 |
| CVE-2020-27481 | An unauthenticated SQL Injection vulnerability in Good Layers LMS Plugin <= 2.1.4 exists due to the usage of "wp_ajax_nopriv" call in WordPress, which allows any unauthenticated user to get access to the function "gdlr_lms_cancel_booking" where POST… | CRITICAL 9.8EPSS 10.0% | 12 November 2020 |
| CVE-2020-13954 | This webpage is vulnerable to a reflected Cross-Site Scripting (XSS) attack via the styleSheetPath, which allows a malicious actor to inject javascript into the web page. | MEDIUM 6.1EPSS 40.9% | 12 November 2020 |
| CVE-2020-1599 | Windows Spoofing Vulnerability | MEDIUM 5.5EPSS 19.1% | 11 November 2020 |
| CVE-2020-17083 | Microsoft Exchange Server Remote Code Execution Vulnerability | MEDIUM 5.5EPSS 12.0% | 11 November 2020 |
| CVE-2020-17051 | Windows Network File System Remote Code Execution Vulnerability | CRITICAL 9.8EPSS 10.6% | 11 November 2020 |
| CVE-2020-17049 | A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). | MEDIUM 6.6EPSS 13.7% | 11 November 2020 |
| CVE-2020-17047 | Windows Network File System Denial of Service Vulnerability | HIGH 7.5EPSS 27.1% | 11 November 2020 |
| CVE-2020-13927 | Apache Airflow's Experimental API Authentication Bypass | KEVCRITICAL 9.8EPSS 99.8% | 10 November 2020 |
| CVE-2020-27019 | Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 is vulnerable to an information disclosure vulnerability which could allow an attacker to access a specific database and key. | MEDIUM 5.5EPSS 18.1% | 9 November 2020 |
| CVE-2020-28351 | The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack (via the PATH_INFO to index.php) due to insufficient validation for the time_zone object… | MEDIUM 6.1EPSS 16.0% | 9 November 2020 |
| CVE-2020-28347 | tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. | CRITICAL 9.8EPSS 76.6% | 8 November 2020 |
| CVE-2020-28328 | SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting. | HIGH 8.8EPSS 63.3% | 6 November 2020 |
| CVE-2020-27128 | A vulnerability in the application data endpoints of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to write arbitrary files to an affected system. | MEDIUM 6.5EPSS 60.8% | 6 November 2020 |
| CVE-2020-26214 | In Alerta before version 8.1.0, users may be able to bypass LDAP authentication if they provide an empty password when Alerta server is configure to use LDAP as the authorization provider. | CRITICAL 9.8EPSS 65.9% | 6 November 2020 |
| CVE-2020-25592 | In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. | CRITICAL 9.8EPSS 57.7% | 6 November 2020 |
| CVE-2020-16846 | SaltStack Salt Shell Injection Vulnerability | KEVCRITICAL 9.8EPSS 99.6% | 6 November 2020 |
| CVE-2020-24437 | Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution… | HIGH 7.8EPSS 46.5% | 5 November 2020 |
| CVE-2020-24436 | Acrobat Pro DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an out-of-bounds write vulnerability that could result in writing past the end of an allocated memory structure. | HIGH 7.8EPSS 17.0% | 5 November 2020 |
| CVE-2020-24435 | Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a heap-based buffer overflow vulnerability in the submitForm function, potentially resulting in arbitrary code… | HIGH 7.8EPSS 52.7% | 5 November 2020 |
| CVE-2020-24433 | Adobe Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a local privilege escalation vulnerability that could enable a user without administrator privileges to delete… | HIGH 7.8EPSS 15.9% | 5 November 2020 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.