Public arsenal
Exploits
867 indexed CVEs have a ready-to-use public exploit, 108 of them in the CISA KEV catalog and 326 affecting a tracked app.
- CVEs with exploit
- 867
- Exploits catalogued
- 1,030
- In CISA KEV
- 108
- On tracked fleet
- 326
| CVE | Severity | Sources | EPSS | Apps |
|---|---|---|---|---|
|
CVE-2026-46300
In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing … |
HIGH | ExploitDB | 9% | — |
|
CVE-2019-5789
An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote … |
HIGH | ExploitDB | 9% | |
|
CVE-2018-6092
An integer overflow on 32-bit systems in WebAssembly in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to execute… |
HIGH | ExploitDB | 9% | |
|
CVE-2025-2783
KEV Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allowed a remo… |
HIGH | ExploitDB | 9% | |
|
CVE-2019-5788
An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a rem… |
HIGH | ExploitDB | 9% | |
|
CVE-2018-1038
Windows Kernel Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 9% | — |
|
CVE-2023-33145
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability |
HIGH | ExploitDB | 9% | — |
|
CVE-2014-8393
DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusi… |
HIGH | ExploitDB | 8% | — |
|
CVE-2017-13262
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 8% | |
|
CVE-2017-0245
Win32k Information Disclosure Vulnerability |
HIGH | ExploitDB | 8% | — |
|
CVE-2017-0569
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 8% | |
|
CVE-2020-0683
KEV Windows Installer Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 8% | |
|
CVE-2018-6126
A precision error in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory wri… |
HIGH | ExploitDB | 8% | |
|
CVE-2017-0220
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 7% | — |
|
CVE-2017-13260
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 7% | |
|
CVE-2019-9813
Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary mem… |
HIGH | ExploitDB | 7% | |
|
CVE-2017-0258
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 7% | |
|
CVE-2017-13261
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 7% | |
|
CVE-2017-13258
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 7% | |
|
CVE-2017-0175
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 7% | — |
|
CVE-2016-3220
atmfd.dll in the Adobe Type Manager Font Driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1… |
HIGH | ExploitDB | 7% | |
|
CVE-2018-6064
Type Confusion in the implementation of __defineGetter__ in V8 in Google Chrome prior to 65.0.3325.146 allowed a remote attacker … |
HIGH | ExploitDB | 7% | |
|
CVE-2016-0075
Windows Kernel Local Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 7% | |
|
CVE-2017-0045
Windows DVD Maker XML External Entity Information Disclosure Vulnerability |
HIGH | ExploitDB | 7% | — |
|
CVE-2023-28288
Microsoft SharePoint Server Spoofing Vulnerability |
HIGH | ExploitDB | 6% | — |
|
CVE-2018-0952
Diagnostic Hub Standard Collector Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2016-3219
The kernel-mode driver in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka… |
HIGH | ExploitDB | 6% | |
|
CVE-2017-6074
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 6% | |
|
CVE-2023-33131
Microsoft Outlook Remote Code Execution Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2017-0167
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 6% | |
|
CVE-2023-21752
Windows Backup Service Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2018-16083
An out of bounds read in forward error correction code in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker… |
HIGH | ExploitDB | 5% | |
|
CVE-2015-8664
Integer overflow in the WebCursor::Deserialize function in content/common/cursors/webcursor.cc in Google Chrome before 47.0.2526.… |
HIGH | ExploitDB | 5% | |
|
CVE-2019-0863
KEV Windows Error Reporting Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0007
The sandbox implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows … |
HIGH | ExploitDB | 5% | |
|
CVE-2019-1476
Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8477
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8483
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0073
Windows Kernel Local Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2016-0079
Windows Kernel Local Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0300
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0100
Windows COM Session Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2019-1089
Windows RPCSS Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2017-8490
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2018-16071
A use after free in WebRTC in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to potentially exploit heap corruptio… |
HIGH | ExploitDB | 5% | |
|
CVE-2017-0299
Windows Kernel Information Disclosure Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2019-0543
KEV Microsoft Windows Elevation of Privilege Vulnerability |
HIGH | ExploitDB | 5% | |
|
CVE-2022-45639
OS Command injection vulnerability in sleuthkit fls tool 4.11.1 allows attackers to execute arbitrary commands via a crafted valu… |
HIGH | ExploitDB | 5% | — |
|
CVE-2019-5796
Data race in extensions guest view in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap c… |
HIGH | ExploitDB | 5% | |
|
CVE-2016-6754
Indexed via Android Security Bulletin — full NVD metadata pending. |
HIGH | ExploitDB | 5% |
Exploits aggregated from ExploitDB, Nuclei, Metasploit and GitHub PoCs, mapped to the CVEs Scout indexes. For defensive research and exposure testing only.