What does exploitability mean?
Exploitability is the quality of being exploitable — that is, the extent to which something can be put to use, whether legitimately or to unfair advantage. The word appears most often in technical and analytical contexts. In cybersecurity, exploitability describes how easily a software flaw can be turned into a working attack; vulnerability-scoring frameworks even assign it a dedicated metric. In economics and resource management, it refers to how readily a resource, market, or opportunity can be harnessed productively. When applied to people, the term takes on a darker shade, pointing to someone's susceptibility to manipulation or mistreatment. Derived from the verb exploit, which traces back through French to the Latin explicare, meaning to unfold or unfold in detail, exploitability functions as an uncountable noun in formal registers. Its usefulness lies in naming potential rather than action: a system may have high exploitability long before any exploitation actually occurs, which is precisely why analysts, engineers, and ethicists rely on the word when assessing risk.
nounThe quality of being exploitable; the degree to which a resource, system, vulnerability, or person can be used for benefit or taken unfair advantage of.
- The degree to which a flaw, weakness, or system can be leveraged, especially in technical contexts such as software vulnerabilities (e.g. 'the exploitability of the bug').
- The extent to which a resource, opportunity, or situation can be used productively or advantageously.
- The susceptibility of a person or group to being treated unfairly or taken advantage of.
"Security researchers rated the exploitability of the flaw as high, since it required no user interaction."
"Engineers weighed the exploitability of each defect before prioritizing patches."
"Critics questioned the ethical exploitability of users' personal data by advertisers."
Extremely rare; exploitability is almost always used as an uncountable mass noun. A plural would appear only in contrived contexts comparing multiple distinct instances.
"Researchers compared the exploitabilities of the two flaws side by side."
In cybersecurity, 'exploitability' is so central that entire scoring systems — like CVSS — assign it its own numerical sub-score.
Reviewed by Deb Chak, Editor. AI-assisted content curated by RJS Tech Solutions LLP.
Etymology of exploitability
Exploitability is formed from the verb exploit plus the suffix -ability, following a productive English pattern for nouns denoting capacity. Exploit entered English in the Middle Ages from French exploiter, ultimately deriving from the Latin explicare, meaning to unfold or unfold fully — the same root that gives us explicit and explain. The noun form exploitability emerged later, gaining particular currency in twentieth-century technical and economic writing as fields like computing and security analysis demanded vocabulary for assessing potential rather than realized use.
Related word forms
How exploitability is actually used
A formal, technical term common in cybersecurity, software engineering, economics, and ethics discussions. It carries a neutral connotation in technical contexts (measuring how usable a vulnerability is) but can acquire negative overtones when applied to people or data, where it implies vulnerability to unfair treatment. It is an uncountable noun with no standard plural in ordinary use.
Easily confused with exploitability
Exploitation is the act or process of exploiting something, while exploitability is the potential or capacity for it to be exploited.
Explicability means the quality of being explainable, whereas exploitability concerns being usable or takeable advantage of.