Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,432cataloged exploits
34,424CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,493GitHub PoC 13,618VulnCheck XDB 8,198Nuclei 4,217Metasploit 3,463✓ verified onlyrecentpopularrisk
4,217 exploits
Nucleihigh
H3C Magic R300-2100M - Remote Code Execution
H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DeltriggerList interface at
36RISK
open ↗Nucleicritical
Chamilo LMS <= v1.11.20 Unauthenticated Command Injection
Chamilo LMS Unauthenticated Command Injection
55RISK
open ↗Nucleicritical
WAVLINK WN579X3 - Remote Command Execution
Wavlink WN579X3 Ping Test adm.cgi injection
28RISK
open ↗Nucleicritical
FUXA - Unauthenticated Remote Code Execution
A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute
43RISK
open ↗Nucleihigh
Beautiful Cookie Consent Banner < 2.10.2 - Cross-Site Scripting
Beautiful Cookie Consent Banner <= 2.10.1 - Unauthenticated Stored Cross-Site Scripting
58RISK
open ↗Nucleimedium
OpenProject < 12.5.4 - Project Identifiers Exposure
OpenProject vulnerable to project identifier information leakage through robots.txt
36RISK
open ↗Nucleimedium
Uncanny Toolkit for LearnDash - Open Redirection
WordPress Uncanny Toolkit for LearnDash plugin <= 3.6.4.3 - Open Redirection vulnerability
28RISK
open ↗Nucleicritical
VMware vCenter Server - Out-of-Bounds Write
VMware vCenter Server Out-of-Bounds Write Vulnerability
95RISK
open ↗Nucleihigh
Vite Dev Server - Information Exposure
Vite Server Options (server.fs.deny) can be bypassed using double forward-slash (//)
36RISK
open ↗Nucleihigh
SRS - Command Injection
SRS has command injection vulnerability in demonstration api-server for HTTP callback.
36RISK
open ↗Nucleicritical
SonicWall GMS and Analytics Web Services - Shell Injection
The authentication mechanism in SonicWall GMS and Analytics Web Services had insufficient checks, allowing authenticatio
75RISK
open ↗Nucleihigh
SonicWall GMS and Analytics - SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SonicWall GMS and
58RISK
open ↗Nucleicritical
Zimbra Collaboration Suite (ZCS) v.8.8.15 - Cross-Site Scripting
Cross Site Scripting vulnerability in Zimbra ZCS v.8.8.15 allows a remote authenticated attacker to execute arbitrary co
95RISK
open ↗Nucleimedium
Kyocera TASKalfa printer - Path Traversal
Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read ar
40RISK
open ↗Nucleicritical
MOVEit Transfer - Remote Code Execution
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023.
100RISK
open ↗Nucleicritical
WordPress Canto Plugin <= 3.0.4 - File Inclusion
Canto <= 3.0.4 - Unauthenticated Remote File Inclusion
63RISK
open ↗Nucleimedium
Hoteldruid 3.0.5 - Cross-Site Scripting
A Reflected XSS was discovered in HotelDruid version 3.0.5, an attacker can issue malicious code/command on affected web
18RISK
open ↗Nucleicritical
Gibbon v25.0.0 - Local File Inclusion
Gibbon v25.0.0 is vulnerable to a Local File Inclusion (LFI) where it's possible to include the content of several files
50RISK
open ↗Nucleimedium
Gibbon v25.0.0 - Cross-Site Scripting
Multiple Cross-Site Scripting (XSS) vulnerabilities have been identified in Gibbon v25.0.0, which enable attackers to ex
18RISK
open ↗Nucleicritical
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open ↗Nucleicritical
JeecgBoot 3.5.0 - SQL Injection
jeecg-boot 3.5.0 and 3.5.1 have a SQL injection vulnerability the id parameter of the /jeecg-boot/jmreport/show interfac
23RISK
open ↗Nucleicritical
bloofoxCMS v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the gid parameter at admin/index.php?mode=u
43RISK
open ↗Nucleicritical
bloofoxCMS v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the lid parameter at admin/index.php?mode=s
43RISK
open ↗Nucleicritical
bloofoxCMS v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the tid parameter at admin/index.php?mode=s
43RISK
open ↗Nucleicritical
Bloofox v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the pid parameter at admin/index.php?mode=s
43RISK
open ↗Nucleicritical
bloofoxCMS v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the userid parameter at admin/index.php?mod
43RISK
open ↗Nucleicritical
Bloofox v0.5.2.1 - SQL Injection
bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=s
43RISK
open ↗Nucleimedium
Hestiacp <= 1.7.7 - Cross-Site Scripting
Cross-site Scripting (XSS) - Reflected in hestiacp/hestiacp
28RISK
open ↗Nucleihigh
Traggo Server - Local File Inclusion
Traggo Server 0.3.0 is vulnerable to directory traversal via a crafted GET request.
18RISK
open ↗Nucleicritical
Chamilo Command Injection
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to ex
60RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.