Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
394,136 CVEs1,713 in CISA KEV17,386 with EPSS ≥ 10%Updated 17 September 2026
17,386 results · page 98 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2021-23124 | The lack of escaping in mod_breadcrumbs aria-label attribute allows XSS attacks. | MEDIUM 6.1EPSS 79.0% | 12 January 2021 |
| CVE-2021-1647 | Microsoft Defender Remote Code Execution Vulnerability | KEVHIGH 7.8EPSS 39.4% | 12 January 2021 |
| CVE-2021-3129 | Laravel Ignition File Upload Vulnerability | KEVCRITICAL 9.8EPSS 99.9% | 12 January 2021 |
| CVE-2020-16040 | Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. | MEDIUM 6.5EPSS 99.6% | 8 January 2021 |
| CVE-2020-28208 | An email address enumeration vulnerability exists in the password reset function of Rocket.Chat through 3.9.1. | MEDIUM 5.3EPSS 10.8% | 8 January 2021 |
| CVE-2020-35131 | Cockpit before 0.6.1 allows an attacker to inject custom PHP code and achieve Remote Command Execution via registerCriteriaFunction in lib/MongoLite/Database.php, as demonstrated by values in JSON data to the /auth/check or /auth/requestreset URI. | CRITICAL 9.8EPSS 51.3% | 8 January 2021 |
| CVE-2020-24577 | The One Touch application discloses sensitive information, such as the hashed admin login password and the Internet provider connection username and cleartext password, in the application's response body for a /tmp/var/passwd or /tmp/home/wan_stat URI. | HIGH 7.5EPSS 19.1% | 8 January 2021 |
| CVE-2021-23241 | MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web server, as demonstrated by the /loginLess/../../etc/passwd URI. | MEDIUM 5.3EPSS 13.3% | 7 January 2021 |
| CVE-2020-28672 | MonoCMS Blog 1.0 is affected by incorrect access control that can lead to remote arbitrary code execution. | HIGH 7.2EPSS 11.7% | 7 January 2021 |
| CVE-2020-36179 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS. | HIGH 8.1EPSS 20.9% | 7 January 2021 |
| CVE-2020-36188 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource. | HIGH 8.1EPSS 10.9% | 6 January 2021 |
| CVE-2020-36184 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource. | HIGH 8.1EPSS 10.4% | 6 January 2021 |
| CVE-2020-8287 | Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 allow two copies of a header field in an HTTP request (for example, two Transfer-Encoding header fields). | MEDIUM 6.5EPSS 16.3% | 6 January 2021 |
| CVE-2020-8264 | In actionpack gem >= 6.0.0, a possible XSS vulnerability exists when an application is running in development mode allowing an attacker to send or embed (in another page) a specially crafted URL which can allow the attacker to execute JavaScript in the… | MEDIUM 6.1EPSS 67.0% | 6 January 2021 |
| CVE-2021-21234 | In spring-boot-actuator-logview before version 0.2.13 there is a directory traversal vulnerability. | HIGH 7.7EPSS 21.0% | 5 January 2021 |
| CVE-2020-17519 | Apache Flink Improper Access Control Vulnerability | KEVHIGH 7.5EPSS 97.8% | 5 January 2021 |
| CVE-2020-17518 | Apache Flink 1.5.1 introduced a REST handler that allows you to write an uploaded file to an arbitrary location on the local file system, through a maliciously modified HTTP HEADER. | HIGH 7.5EPSS 50.0% | 5 January 2021 |
| CVE-2021-3019 | ffay lanproxy 0.1 allows Directory Traversal to read /../conf/config.properties to obtain credentials for a connection to the intranet. | HIGH 7.5EPSS 16.6% | 5 January 2021 |
| CVE-2021-3018 | ipeak Infosystems ibexwebCMS (aka IPeakCMS) 3.5 is vulnerable to an unauthenticated Boolean-based SQL injection via the id parameter on the /cms/print.php page. | CRITICAL 9.8EPSS 19.5% | 5 January 2021 |
| CVE-2020-36112 | CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. | CRITICAL 9.8EPSS 18.1% | 4 January 2021 |
| CVE-2021-3007 | Laminas Project laminas-http before 2.14.2, and Zend Framework 3.0.0, has a deserialization vulnerability that can lead to remote code execution if the content is controllable, related to the __destruct method of the Zend\Http\Response\Stream class in… | CRITICAL 9.8EPSS 75.3% | 4 January 2021 |
| CVE-2020-35391 | Tenda N300 F3 12.01.01.48 devices allow remote attackers to obtain sensitive information (possibly including an http_passwd line) via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg, a related issue to CVE-2017-14942. | MEDIUM 6.5EPSS 35.2% | 1 January 2021 |
| CVE-2020-35951 | It allows users to delete arbitrary files such as wp-config.php file, which could effectively take a site offline and allow an attacker to reinstall with a WordPress instance under their control. | CRITICAL 9.9EPSS 76.3% | 1 January 2021 |
| CVE-2020-35948 | It gave authenticated attackers the ability to modify arbitrary files, including PHP files. | HIGH 8.8EPSS 24.9% | 1 January 2021 |
| CVE-2020-35737 | In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference. | HIGH 7.5EPSS 10.3% | 30 December 2020 |
| CVE-2020-5810 | A stored XSS vulnerability exists in Umbraco CMS <= 8.9.1 or current. | MEDIUM 5.4EPSS 62.0% | 30 December 2020 |
| CVE-2020-35848 | Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php newpassword function. | CRITICAL 9.8EPSS 74.6% | 30 December 2020 |
| CVE-2020-35847 | Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function. | CRITICAL 9.8EPSS 98.2% | 30 December 2020 |
| CVE-2020-35846 | Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php check function. | CRITICAL 9.8EPSS 93.3% | 30 December 2020 |
| CVE-2020-10148 | SolarWinds Orion Authentication Bypass Vulnerability | KEVCRITICAL 9.8EPSS 92.0% | 29 December 2020 |
| CVE-2020-35774 | server/handler/HistogramQueryHandler.scala in Twitter TwitterServer (aka twitter-server) before 20.12.0, in some configurations, allows XSS via the /histograms endpoint. | MEDIUM 5.4EPSS 85.6% | 29 December 2020 |
| CVE-2020-5807 | An unauthenticated remote attacker can send data to RsvcHost.exe listening on TCP port 5241 to add entries in the FactoryTalk Diagnostics event log. | HIGH 7.5EPSS 33.8% | 29 December 2020 |
| CVE-2020-5802 | An attacker-controlled memory allocation size can be passed to the C++ new operator in RnaDaSvr.dll by sending a specially crafted ConfigureItems message to TCP port 4241. | HIGH 7.5EPSS 38.8% | 29 December 2020 |
| CVE-2020-5801 | An attacker can craft and send an OpenNamespace message to port 4241 with valid session-id that triggers an unhandled exception in CFTLDManager::HandleRequest function in RnaDaSvr.dll, resulting in process termination. | HIGH 7.5EPSS 25.2% | 29 December 2020 |
| CVE-2020-35730 | Roundcube Webmail Cross-Site Scripting (XSS) Vulnerability | KEVMEDIUM 6.1EPSS 32.7% | 28 December 2020 |
| CVE-2020-35613 | Improper filter blacklist configuration leads to a SQL injection vulnerability in the backend user list. | CRITICAL 9.8EPSS 28.9% | 28 December 2020 |
| CVE-2020-35736 | GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused. | HIGH 7.5EPSS 15.4% | 27 December 2020 |
| CVE-2020-35729 | KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter. | CRITICAL 9.8EPSS 88.1% | 27 December 2020 |
| CVE-2020-35728 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool (aka embedded Xalan in… | HIGH 8.1EPSS 12.5% | 27 December 2020 |
| CVE-2020-35713 | Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters to the goform/setSysAdm page. | CRITICAL 9.8EPSS 32.7% | 26 December 2020 |
| CVE-2020-28188 | Remote Command Execution (RCE) vulnerability in TerraMaster TOS <= 4.2.06 allow remote unauthenticated attackers to inject OS commands via /include/makecvs.php in Event parameter. | CRITICAL 9.8EPSS 96.6% | 24 December 2020 |
| CVE-2020-28187 | Multiple directory traversal vulnerabilities in TerraMaster TOS <= 4.2.06 allow remote authenticated attackers to read, edit or delete any file within the filesystem via the (1) filename parameter to /tos/index.php?editor/fileGet, Event parameter to… | CRITICAL 9.8EPSS 16.4% | 24 December 2020 |
| CVE-2020-28185 | User Enumeration vulnerability in TerraMaster TOS <= 4.2.06 allows remote unauthenticated attackers to identify valid users within the system via the username parameter to wizard/initialise.php. | MEDIUM 5.3EPSS 18.3% | 24 December 2020 |
| CVE-2020-35665 | An unauthenticated command-execution vulnerability exists in TerraMaster TOS through 4.2.06 via shell metacharacters in the Event parameter in include/makecvs.php during CSV creation. | CRITICAL 9.8EPSS 78.5% | 23 December 2020 |
| CVE-2020-35598 | ACS Advanced Comment System 1.0 is affected by Directory Traversal via an advanced_component_system/index.php?ACS_path=..%2f URI. | HIGH 7.5EPSS 21.0% | 23 December 2020 |
| CVE-2020-28070 | SourceCodester Alumni Management System 1.0 is affected by SQL injection causing arbitrary remote code execution from GET input in view_event.php via the 'id' parameter. | CRITICAL 9.8EPSS 22.9% | 23 December 2020 |
| CVE-2020-29583 | Zyxel Multiple Products Use of Hard-Coded Credentials Vulnerability | KEVCRITICAL 9.8EPSS 90.2% | 22 December 2020 |
| CVE-2020-24581 | It contains an execute_cmd.cgi feature (that is not reachable via the web user interface) that lets an authenticated user execute Operating System commands. | HIGH 8.0EPSS 13.7% | 22 December 2020 |
| CVE-2020-13557 | A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527. | HIGH 8.8EPSS 70.4% | 22 December 2020 |
| CVE-2020-35606 | Arbitrary command execution can occur in Webmin through 1.962. | HIGH 8.8EPSS 28.0% | 21 December 2020 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.