Tools / CVE Explorer
Which vulnerabilities actually matter?
Every CVE with its CVSS severity, EPSS probability of exploitation and CISA KEV status side by side, refreshed daily from NVD, FIRST and CISA — plus a plain-English verdict on whether it needs an emergency change or the normal patch cycle.
394,136 CVEs1,713 in CISA KEV17,386 with EPSS ≥ 10%Updated 17 September 2026
17,386 results · page 99 of 348
| CVE | Summary | Priority | Published |
|---|---|---|---|
| CVE-2020-17526 | Incorrect Session Validation in Apache Airflow Webserver versions prior to 1.10.14 with default config allows a malicious airflow user on site A where they log in normally, to access unauthorized Airflow Webserver on Site B through the session from Site… | HIGH 7.7EPSS 23.3% | 21 December 2020 |
| CVE-2020-7200 | A potential security vulnerability has been identified in HPE Systems Insight Manager (SIM) version 7.6. | CRITICAL 9.8EPSS 81.9% | 18 December 2020 |
| CVE-2020-20277 | There are multiple unauthenticated directory traversal vulnerabilities in different FTP commands in uftpd FTP server versions 2.7 to 2.10 due to improper implementation of a chroot jail in common.c's compose_abspath function that can be abused to read… | CRITICAL 9.8EPSS 26.2% | 18 December 2020 |
| CVE-2020-25494 | Xinuos (formerly SCO) Openserver v5 and v6 allows attackers to execute arbitrary commands via shell metacharacters in outputform or toclevels parameter to cgi-bin/printbook. | CRITICAL 9.8EPSS 39.2% | 18 December 2020 |
| CVE-2020-8466 | A command injection vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2, with the improved password hashing method enabled, could allow an unauthenticated attacker to execute certain commands by providing a manipulated password. | CRITICAL 9.8EPSS 64.1% | 17 December 2020 |
| CVE-2020-35489 | The contact-form-7 (aka Contact Form 7) plugin before 5.3.2 for WordPress allows Unrestricted File Upload and remote code execution because a filename may contain special characters. | CRITICAL 10.0EPSS 89.3% | 17 December 2020 |
| CVE-2020-29607 | A file upload restriction bypass vulnerability in Pluck CMS before 4.7.13 allows an admin privileged user to gain access in the host through the "manage files" functionality, which may result in remote code execution. | HIGH 7.2EPSS 33.2% | 16 December 2020 |
| CVE-2020-35476 | A remote code execution vulnerability occurs in OpenTSDB through 2.4.0 via command injection in the yrange parameter. | CRITICAL 9.8EPSS 85.3% | 16 December 2020 |
| CVE-2020-26259 | In XStream before version 1.4.15, is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling. | MEDIUM 6.8EPSS 82.4% | 16 December 2020 |
| CVE-2020-26258 | In XStream before version 1.4.15, a Server-Side Forgery Request vulnerability can be activated when unmarshalling. | HIGH 7.7EPSS 81.8% | 16 December 2020 |
| CVE-2020-10770 | This flaw allows an attacker to use this parameter to execute a Server-side request forgery (SSRF) attack. | MEDIUM 5.3EPSS 69.7% | 15 December 2020 |
| CVE-2020-35338 | The Web Administrative Interface in Mobile Viewpoint Wireless Multiplex Terminal (WMT) Playout Server 20.2.8 and earlier has a default account with a password of "pokon." | CRITICAL 9.8EPSS 12.1% | 14 December 2020 |
| CVE-2020-29227 | An unauthenticated user can perform a file inclusion attack against the /index.php file with a partial filename in the "page" parameter, to cause local file inclusion resulting in code execution. | CRITICAL 9.8EPSS 16.8% | 14 December 2020 |
| CVE-2020-35235 | Thus, any authenticated user can run the elFinder upload command to achieve remote code execution. | HIGH 8.8EPSS 18.3% | 14 December 2020 |
| CVE-2020-35234 | The easy-wp-smtp plugin before 1.4.4 for WordPress allows Administrator account takeover, as exploited in the wild in December 2020. | HIGH 7.5EPSS 64.6% | 14 December 2020 |
| CVE-2020-25112 | This leads to Denial-of-Service and potential Remote Code Execution via a crafted ICMPv6 echo packet. | CRITICAL 9.8EPSS 27.9% | 11 December 2020 |
| CVE-2020-25111 | This leads to Denial-of-Service and potential Remote Code Execution via a crafted ICMPv6 echo packet. | CRITICAL 9.8EPSS 20.9% | 11 December 2020 |
| CVE-2020-25110 | This may lead to successful Denial-of-Service, and possibly Remote Code Execution. | CRITICAL 9.8EPSS 53.7% | 11 December 2020 |
| CVE-2020-25109 | This may lead to successful Denial-of-Service, and possibly Remote Code Execution. | CRITICAL 9.8EPSS 53.7% | 11 December 2020 |
| CVE-2020-25108 | The DNS response data length is not checked (it can be set to an arbitrary value from a packet). | CRITICAL 9.8EPSS 53.7% | 11 December 2020 |
| CVE-2020-25107 | This may lead to successful Denial-of-Service, and possibly Remote Code Execution. | CRITICAL 9.8EPSS 53.7% | 11 December 2020 |
| CVE-2020-24338 | The DNS domain name record decompression functionality in pico_dns_decompress_name() in pico_dns_common.c does not validate the compression pointer offset values with respect to the actual data present in a DNS response packet, causing out-of-bounds… | CRITICAL 9.8EPSS 37.2% | 11 December 2020 |
| CVE-2020-24336 | Therefore, when copying an address of an arbitrary length, a buffer overflow can occur. | CRITICAL 9.8EPSS 59.1% | 11 December 2020 |
| CVE-2020-17438 | By crafting a packet with specific values of the IP header length and the fragmentation offset, attackers can write into the .bss section of the program (past the statically allocated buffer that is used for storing the fragmented data) and cause a… | CRITICAL 9.8EPSS 19.3% | 11 December 2020 |
| CVE-2020-17515 | The "origin" parameter passed to some of the endpoints like '/trigger' was vulnerable to XSS exploit. | MEDIUM 6.1EPSS 16.2% | 11 December 2020 |
| CVE-2020-26413 | Information disclosure via GraphQL results in user email being unexpectedly visible. | MEDIUM 5.3EPSS 34.9% | 11 December 2020 |
| CVE-2020-17530 | Apache Struts Remote Code Execution Vulnerability | KEVCRITICAL 9.8EPSS 95.9% | 11 December 2020 |
| CVE-2020-17144 | Microsoft Exchange Server Remote Code Execution Vulnerability | KEVHIGH 8.4EPSS 36.5% | 10 December 2020 |
| CVE-2020-17143 | Microsoft Exchange Server Information Disclosure Vulnerability | HIGH 8.8EPSS 70.6% | 10 December 2020 |
| CVE-2020-17140 | Windows SMB Information Disclosure Vulnerability | HIGH 8.1EPSS 13.1% | 10 December 2020 |
| CVE-2020-17136 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | HIGH 7.8EPSS 14.0% | 10 December 2020 |
| CVE-2020-17132 | Microsoft Exchange Remote Code Execution Vulnerability | CRITICAL 9.1EPSS 89.9% | 10 December 2020 |
| CVE-2020-17117 | Microsoft Exchange Remote Code Execution Vulnerability | MEDIUM 6.6EPSS 48.9% | 10 December 2020 |
| CVE-2020-17103 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | HIGH 7.0EPSS 26.5% | 10 December 2020 |
| CVE-2020-17096 | Windows NTFS Remote Code Execution Vulnerability | HIGH 7.5EPSS 19.5% | 10 December 2020 |
| CVE-2020-26950 | In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. | HIGH 8.8EPSS 42.3% | 9 December 2020 |
| CVE-2020-27950 | Apple Multiple Products Memory Initialization Vulnerability | KEVMEDIUM 5.5EPSS 16.5% | 8 December 2020 |
| CVE-2020-27932 | Apple Multiple Products Type Confusion Vulnerability | KEVHIGH 7.8EPSS 10.3% | 8 December 2020 |
| CVE-2020-27930 | Apple Multiple Products Memory Corruption Vulnerability | KEVHIGH 7.8EPSS 22.0% | 8 December 2020 |
| CVE-2020-29597 | IncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. | CRITICAL 9.8EPSS 71.0% | 7 December 2020 |
| CVE-2020-13945 | Eventually, the default token is allowed to access APISIX management data. | MEDIUM 6.5EPSS 73.0% | 7 December 2020 |
| CVE-2020-26248 | In the PrestaShop module "productcomments" before version 4.2.1, an attacker can use a Blind SQL injection to retrieve data or stop the MySQL service. | HIGH 8.2EPSS 12.4% | 3 December 2020 |
| CVE-2020-17527 | While this would most likely lead to an error and the closure of the HTTP/2 connection, it is possible that information could leak between requests. | HIGH 7.5EPSS 24.6% | 3 December 2020 |
| CVE-2020-25649 | This flaw allows vulnerability to XML external entity (XXE) attacks. | HIGH 7.5EPSS 17.8% | 3 December 2020 |
| CVE-2020-29279 | PHP remote file inclusion in the assign_resume_tpl method in Application/Common/Controller/BaseController.class.php in 74CMS before 6.0.48 allows remote code execution. | CRITICAL 9.8EPSS 52.9% | 2 December 2020 |
| CVE-2020-29395 | The EventON plugin through 3.0.5 for WordPress allows addons/?q= XSS via the search field. | MEDIUM 6.1EPSS 12.9% | 30 November 2020 |
| CVE-2020-29390 | Zeroshell 3.9.3 contains a command injection vulnerability in the /cgi-bin/kerbynet StartSessionSubmit parameter that could allow an unauthenticated attacker to execute a system command by using shell metacharacters and the %0a character. | CRITICAL 9.8EPSS 39.6% | 30 November 2020 |
| CVE-2020-28926 | ReadyMedia (aka MiniDLNA) before versions 1.3.0 allows remote code execution. | CRITICAL 9.8EPSS 12.9% | 30 November 2020 |
| CVE-2020-28978 | The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. | MEDIUM 5.3EPSS 15.4% | 30 November 2020 |
| CVE-2020-28977 | The Canto plugin 1.3.0 for WordPress contains blind SSRF vulnerability. | MEDIUM 5.3EPSS 15.4% | 30 November 2020 |
How to read this
CVSS measures how bad a vulnerability could be if exploited. EPSS (from FIRST) estimates the probability it will actually be exploited in the next thirty days. KEV is CISA’s list of vulnerabilities that are being exploited right now. Patch KEV entries first, then anything with an EPSS above 10 per cent, then work down by CVSS in your normal cycle.
Data is refreshed daily from the NVD, FIRST EPSS and the CISA KEV catalogue. Our SOC uses the same table to prioritise patching for clients; the verdict on each page is the rule of thumb our analysts apply.