Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

72,026cataloged exploits
32,224CVEs with public exploitation
1,932lab-tested
4,217 exploits
Nucleihigh
Chaosblade < 1.7.4 - Remote Code Execution
exec.CommandContext in Chaosblade 0.3 through 1.7.3, when server mode is used, allows OS command execution via the cmd p
36RISK
open
Nucleihigh
Label Studio - Cross-Site Scripting
Label Studio XSS Vulnerability on Avatar Upload
36RISK
open
Nucleihigh
Label Studio - Sensitive Information Exposure
Object Relational Mapper Leak Vulnerability in Filtering Task in Label Studio
36RISK
open
Nucleihigh
PlayTube 3.0.1 - Information Disclosure
PlayTube Redirect information disclosure
28RISK
open
Nucleihigh
ManageEngine OpManager - Directory Traversal
A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A speciall
55RISK
open
Nucleimedium
QNAP QTS and QuTS Hero - OS Command Injection
QTS, QuTS hero, QuTScloud
70RISK
open
Nucleicritical
SysAid Server - Remote Code Execution
CVE-2023-47246CRITICALunder attackransomware
In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a f
100RISK
open
Nucleicritical
PyArrow Flight RPC - Remote Code Execution
PyArrow, PyArrow: Arbitrary code execution when loading a malicious data file
23RISK
open
Nucleicritical
Qualitor <= 8.20 - Remote Code Execution
Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html/ad/adpesquisasql/reques
68RISK
open
Nucleimedium
SuiteCRM Unauthenticated Graphql Introspection
SuiteCRM has Unauthenticated Graphql Introspection Enabled
23RISK
open
Nucleimedium
Essential Grid <= 3.1.0 - Cross-Site Scripting
WordPress Essential Grid Plugin <= 3.1.0 is vulnerable to Cross Site Scripting (XSS)
36RISK
open
Nucleicritical
WordPress WP Child Theme Generator < 1.1.3 - Arbitrary File Upload
WordPress WP Child Theme Generator plugin <= 1.0.9 - Arbitrary File Upload vulnerability
43RISK
open
Nucleicritical
Anyscale Ray - Remote Code Execution
Anyscale Ray 2.6.3 and 2.8.0 allows a remote attacker to execute arbitrary code via the job submission API. NOTE: the ve
85RISK
open
Nucleicritical
Anyscale Ray 2.6.3 and 2.8.0 - Server-Side Request Forgery
Anyscale Ray 2.6.3 and 2.8.0 allows /log_proxy SSRF. NOTE: the vendor's position is that this report is irrelevant becau
55RISK
open
Nucleicritical
Nagios XI < 5.11.3 - SQL Injection
Nagios XI before version 5.11.3 was discovered to contain a SQL injection vulnerability via the bulk modification tool.
50RISK
open
Nucleihigh
XWiki < 4.10.15 - Information Disclosure
XWiki exposed whole content of all documents of all wikis to anybody with view right on Solr suggest service
58RISK
open
Nucleimedium
WordPress Core - Post Author Email Disclosure
WordPress < 6.3.2 - Unauthenticated Post Author Email Disclosure
28RISK
open
Nucleicritical
WP Hotel Booking <= 2.0.7 - SQL Injection
WP Hotel Booking < 2.0.8 - Unauthenticated SQLi
30RISK
open
Nucleihigh
News & Blog Designer Pack – WordPress Blog Plugin <= 3.4.1 - Unauthenticated Local File Inclusion
News & Blog Designer Pack – WordPress Blog Plugin <= 3.4.1 - Unauthenticated Remote Code Execution via Local File Inclusion
36RISK
open
Nucleicritical
ColumbiaSoft DocumentLocator - Improper Authentication
ColumbiaSoft Document Locator WebTools login improper authentication
48RISK
open
Nucleimedium
phpMyFAQ < 3.2.0 - Cross-site Scripting
Cross-site Scripting (XSS) - Reflected in thorsten/phpmyfaq
36RISK
open
Nucleimedium
Citrix StoreFront - Cross-Site Scripting
  Cross-site scripting (XSS)
50RISK
open
Nucleicritical
WordPress WPB Show Core <= 2.2 - Server-Side Request Forgery
WPB Show Core <= 2.2 - Unauthenticated Server Side Request Forgery
18RISK
open
Nucleicritical
Hotel Booking Lite < 4.8.5 - Arbitrary File Download & Deletion
Hotel Booking Lite < 4.8.5 - Unauthenticated Arbitrary File Download & Deletion
18RISK
open
Nucleimedium
WordPress Popup Builder <= 4.2.3 - Unauthenticated Stored XSS
Popup Builder < 4.2.3 - Unauthenticated Stored XSS
48RISK
open
Nucleicritical
Mlflow - Arbitrary File Write
MLflow Arbitrary File Write
55RISK
open
Nucleihigh
Ray Static File - Local File Inclusion
Ray Static File Local File Include
41RISK
open
Nucleihigh
Ray API - Local File Inclusion
Ray Log File Local File Include
48RISK
open
Nucleihigh
VertaAI ModelDB - Path Traversal
ModelDB Local File Include
36RISK
open
Nucleicritical
LogDash Activity Log <= 1.1.3 - SQL Injection
LogDash Activity Log < 1.1.4 - Unauthenticated SQLi
28RISK
open
previouspage 101 / 141next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.