Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,886cataloged exploits
32,153CVEs with public exploitation
1,932lab-tested
13,282 exploits
GitHub PoC
Roundcube ≤ 1.6.10 Post-Auth RCE via PHP Object Deserialization
CVE-2025-49113CRITICALunder attack30 Aug 2025
Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the
100RISK
open
GitHub PoC5
PHPUnit CVE-2017-9841 Scanner in Go clean and fire.
CVE-2017-9841CRITICALunder attack30 Aug 2025
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP c
100RISK
open
GitHub PoC
tranphuc2005/CVE-2019-3396
CVE-2019-3396CRITICALunder attackransomware30 Aug 2025
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from vers
100RISK
open
GitHub PoC
Aaqilyousuf/CVE-2025-7775-vulnerable-lab
CVE-2025-7775CRITICALunder attack30 Aug 2025
Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service
83RISK
open
GitHub PoC6
Detects vulnerable FreePBX versions affected by CVE-2025-57819.
CVE-2025-57819CRITICALunder attack30 Aug 2025
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
GitHub PoC5
Glass Cage is a zero-click PNG-based RCE chain in iOS 18.2.1, exploiting WebKit (CVE-2025-24201) and Core Media (CVE-2025-24085) to achieve sandbox escape, kernel-level access, and device bricking. Triggered via iMessage, it enables full compromise with no user interaction.
CVE-2025-24201CRITICALunder attack30 Aug 2025
An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in
78RISK
open
GitHub PoC
Python Script for CVE-2025-49113. Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the _from parameter in a URL is not validated in program/actions/settings/upload.php, leading to PHP Object Deserialization.
CVE-2025-49113CRITICALunder attack29 Aug 2025
Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the
100RISK
open
GitHub PoC
CrushFTP AS2 Authentication Bypass
CVE-2025-54309CRITICALunder attack29 Aug 2025
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and
100RISK
open
GitHub PoC
This is repository contains a script to check for current IOCs listed in the freepbx forum topic of the CVE-2025-57819
CVE-2025-57819CRITICALunder attack29 Aug 2025
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
GitHub PoC2
致远OA存在文件上传导致RCE(CVE-2025-34040)
CVE-2025-34040CRITICAL29 Aug 2025
Seeyon Zhiyuan OA System Path Traversal File Upload
68RISK
open
GitHub PoC
arun1033/CVE-2025-48384
CVE-2025-48384HIGHunder attack29 Aug 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
GitHub PoC
RCE hook
CVE-2025-48384HIGHunder attack28 Aug 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
GitHub PoC
Built to call on CVE-2025-48384-PoC-Part2 for RCE
CVE-2025-48384HIGHunder attack28 Aug 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
GitHub PoC1
soltanali0/CVE-2024-12877-Exploit
CVE-2024-12877CRITICAL28 Aug 2025
GiveWP – Donation Plugin and Fundraising Platform <= 3.19.2 - Unauthenticated PHP Object Injection
48RISK
open
GitHub PoC
PoC | NextJS Middleware 15.2.2 - Authorization Bypass
CVE-2025-29927CRITICAL28 Aug 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC
PoC for CVE-2025-48384
CVE-2025-48384HIGHunder attack28 Aug 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
GitHub PoC
jacobholtz/CVE-2025-48384-submodule
CVE-2025-48384HIGHunder attack28 Aug 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
GitHub PoC1
Detection for CVE-2025-57819
CVE-2025-57819CRITICALunder attack28 Aug 2025
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
GitHub PoC
Naved124/CVE-2024-28397-js2py-Sandbox-Escape
CVE-2024-28397MEDIUM28 Aug 2025
An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a
48RISK
open
GitHub PoC4
swabird/CVE-2025-7775-PoC
CVE-2025-7775CRITICALunder attack28 Aug 2025
Memory overflow vulnerability leading to Remote Code Execution and/or Denial of Service
83RISK
open
GitHub PoC
Mdusmandasthaheer/CVE-2025-32433
CVE-2025-32433CRITICALunder attack28 Aug 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
GitHub PoC11
IOS audio buffer overflow CVE-2025-31200 POC
CVE-2025-31200CRITICALunder attack28 Aug 2025
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4
83RISK
open
GitHub PoC5
yukinime/CVE-2025-6934
CVE-2025-6934CRITICAL27 Aug 2025
Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation via 'on_regiser_user'
68RISK
open
GitHub PoC
hacieda/CVE-2025-32463
CVE-2025-32463CRITICALunder attack27 Aug 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC3
用于CVE-2025-32463 sudo_chwoot的权限提升POC,适配了有gcc编译环境和无gcc编译环境的两种情况,下载运行即可一把梭哈
CVE-2025-32463CRITICALunder attack27 Aug 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC5
walidpyh/CVE-2025-8088
CVE-2025-8088HIGHunder attack27 Aug 2025
Path traversal vulnerability in WinRAR
93RISK
open
GitHub PoC
te0rwx/CVE-2025-32433-Detection
CVE-2025-32433CRITICALunder attack27 Aug 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
GitHub PoC10
Winrar CVE exploitation before 7.13 using multiple ADS streams on a single file (Custom PDF implementation)
CVE-2025-8088HIGHunder attack27 Aug 2025
Path traversal vulnerability in WinRAR
93RISK
open
GitHub PoC
An exploitation framework for CVE-2018-19323 - GIGABYTE GDrv privilege escalation vulnerability with multi-architecture support and framework integration
CVE-2018-19323CRITICALunder attackransomware27 Aug 2025
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING
78RISK
open
GitHub PoC8
A high-performance, memory-safe implementation of the WinRAR CVE-2025-8088 exploit tool, rewritten in Rust for better reliability and performance.
CVE-2025-8088HIGHunder attack27 Aug 2025
Path traversal vulnerability in WinRAR
93RISK
open
previouspage 121 / 443next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.