Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,445cataloged exploits
34,432CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,497GitHub PoC 13,627VulnCheck XDB 8,198Nuclei 4,217Metasploit 3,463✓ verified onlyrecentpopularrisk
4,217 exploits
Nucleihigh
Splunk Enterprise - Local File Inclusion
Path Traversal on the “/modules/messaging/“ endpoint in Splunk Enterprise on Windows
61RISK
open ↗Nucleicritical
Ollama - Remote Code Execution
Ollama before 0.1.34 does not validate the format of the digest (sha256 with 64 hex digits) when getting the model path,
78RISK
open ↗Nucleimedium
Argo CD Unauthenticated Access to sensitive setting
Unauthenticated Access to sensitive settings in Argo CD
28RISK
open ↗Nucleimedium
WP Extended < 3.0.0 - Stored Cross-Site Scripting
WordPress WP Extended plugin <= 2.4.7 - Cross Site Scripting (XSS) vulnerability
36RISK
open ↗Nucleimedium
WP-Lister Lite for Amazon <= 2.6.16 - Cross-Site Scripting
WordPress WP-Lister Lite for Amazon plugin <= 2.6.16 - Reflected Cross Site Scripting (XSS) vulnerability
36RISK
open ↗Nucleicritical
SecurEnvoy Two Factor Authentication - LDAP Injection
Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-suppl
63RISK
open ↗Nucleihigh
Electrolink FM/DAB/TV Transmitter (controlloLogin.js) - Credentials Disclosure
Electrolink FM/DAB/TV Transmitter Cleartext Storage of Sensitive Information
36RISK
open ↗Nucleimedium
FXServer < v9601 - Information Exposure
Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary
43RISK
open ↗Nucleicritical
NetAlertX 23.01.14–24.x < 24.10.12 - Remote Code Execution
NetAlertX 23.01.14 through 24.x before 24.10.12 allows unauthenticated command injection via settings update because fun
75RISK
open ↗Nucleihigh
Yeti Platform < 2.1.12 - Server-Side Template Injection to RCE
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti befor
56RISK
open ↗Nucleicritical
DATAGERRY - REST API Auth Bypass
Incorrect access control in BECN DATAGERRY v2.2 allows attackers to execute arbitrary commands via crafted web requests.
63RISK
open ↗Nucleihigh
Sitecore Experience Platform <= 10.4 - Arbitrary File Read
An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0
48RISK
open ↗Nucleicritical
Camaleon CMS < 2.8.1 Arbitrary File Write to RCE
Arbitrary file write leading to RCE in Camaleon CMS
75RISK
open ↗Nucleicritical
Navidrome < 0.53.0 - Authenticated SQL Injection
Multiple SQL Injections and ORM Leak in navidrome
63RISK
open ↗Nucleicritical
DataEase v2.10.2 - JWT Signature Verification Bypass
Dataease arbitrary interface access vulnerability
43RISK
open ↗Nucleimedium
Templately <= 3.1.2 - Broken Access Control
WordPress Templately plugin <= 3.1.2 - Broken Access Control vulnerability
28RISK
open ↗Nucleihigh
LiteSpeed Cache <= 6.5.0.2 - Stored XSS
WordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability
36RISK
open ↗Nucleicritical
Cobbler 'XML-RPC' - Authentication Bypass
Cobbler allows anyone to connect to cobbler XML-RPC server with a known password and make changes
63RISK
open ↗Nucleihigh
NAKIVO Backup and Replication Solution - Unauthenticated Arbitrary File Read
NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /
100RISK
open ↗Nucleihigh
Cloudlog - SQL Injection
Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.
36RISK
open ↗Nucleicritical
JeecgBoot v3.7.1 - SQL Injection
JeecgBoot v3.7.1 was discovered to contain a SQL injection vulnerability via the component /onlDragDatasetHead/getTotalD
75RISK
open ↗Nucleihigh
Qualitor <= v8.24 - Server-Side Request Forgery
Qualitor v8.24 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /request/viewValidacao.p
36RISK
open ↗Nucleimedium
LoLLMS WebUI - Subfolder Prediction via Path Traversal
Path Traversal in parisneo/lollms-webui
28RISK
open ↗Nucleihigh
Netis Wifi Router - Information Disclosure
An issue in Netis Wifi6 Router NX10 2.0.1.3643 and 2.0.1.3582 and Netis Wifi 11AC Router NC65 3.0.0.3749 and Netis Wifi
23RISK
open ↗Nucleicritical
NetAlert X - Arbitary File Read
NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file reading because an HTTP client can ignore a redirect, and
48RISK
open ↗Nucleicritical
ServiceNow UI Macros - Template Injection
Jelly Template Injection Vulnerability in ServiceNow UI Macros
100RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.