Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

75,445cataloged exploits
34,432CVEs with public exploitation
24,695lab-tested
4,217 exploits
Nucleihigh
Splunk Enterprise - Local File Inclusion
Path Traversal on the “/modules/messaging/“ endpoint in Splunk Enterprise on Windows
61RISK
open
Nucleicritical
Ollama - Remote Code Execution
Ollama before 0.1.34 does not validate the format of the digest (sha256 with 64 hex digits) when getting the model path,
78RISK
open
Nucleimedium
Argo CD Unauthenticated Access to sensitive setting
Unauthenticated Access to sensitive settings in Argo CD
28RISK
open
Nucleimedium
WP Extended < 3.0.0 - Stored Cross-Site Scripting
WordPress WP Extended plugin <= 2.4.7 - Cross Site Scripting (XSS) vulnerability
36RISK
open
Nucleimedium
WP-Lister Lite for Amazon <= 2.6.16 - Cross-Site Scripting
WordPress WP-Lister Lite for Amazon plugin <= 2.6.16 - Reflected Cross Site Scripting (XSS) vulnerability
36RISK
open
Nucleicritical
SecurEnvoy Two Factor Authentication - LDAP Injection
Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-suppl
63RISK
open
Nucleihigh
Electrolink FM/DAB/TV Transmitter (controlloLogin.js) - Credentials Disclosure
Electrolink FM/DAB/TV Transmitter Cleartext Storage of Sensitive Information
36RISK
open
Nucleimedium
Hostel < 1.1.5.3 - Cross-Site Scripting
Hostel < 1.1.5.3 - Reflected XSS
28RISK
open
Nucleicritical
PHP CGI - Argument Injection
CVE-2024-4577CRITICALunder attackransomware
Argument Injection in PHP-CGI
100RISK
open
Nucleicritical
ArForms < 6.6 - Remote Code Execution
ArForms < 6.6 - Unauthenticated RCE
63RISK
open
Nucleimedium
FXServer < v9601 - Information Exposure
Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary
43RISK
open
Nucleicritical
NetAlertX 23.01.14–24.x < 24.10.12 - Remote Code Execution
NetAlertX 23.01.14 through 24.x before 24.10.12 allows unauthenticated command injection via settings update because fun
75RISK
open
Nucleihigh
Yeti Platform < 2.1.12 - Server-Side Template Injection to RCE
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti befor
56RISK
open
Nucleicritical
DATAGERRY - REST API Auth Bypass
Incorrect access control in BECN DATAGERRY v2.2 allows attackers to execute arbitrary commands via crafted web requests.
63RISK
open
Nucleihigh
Sitecore Experience Platform <= 10.4 - Arbitrary File Read
An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0
48RISK
open
Nucleicritical
Camaleon CMS < 2.8.1 Arbitrary File Write to RCE
Arbitrary file write leading to RCE in Camaleon CMS
75RISK
open
Nucleicritical
Navidrome < 0.53.0 - Authenticated SQL Injection
Multiple SQL Injections and ORM Leak in navidrome
63RISK
open
Nucleicritical
DataEase v2.10.2 - JWT Signature Verification Bypass
Dataease arbitrary interface access vulnerability
43RISK
open
Nucleimedium
Templately <= 3.1.2 - Broken Access Control
WordPress Templately plugin <= 3.1.2 - Broken Access Control vulnerability
28RISK
open
Nucleihigh
LiteSpeed Cache <= 6.5.0.2 - Stored XSS
WordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability
36RISK
open
Nucleicritical
Cobbler 'XML-RPC' - Authentication Bypass
Cobbler allows anyone to connect to cobbler XML-RPC server with a known password and make changes
63RISK
open
Nucleihigh
NAKIVO Backup and Replication Solution - Unauthenticated Arbitrary File Read
CVE-2024-48248HIGHunder attack
NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /
100RISK
open
Nucleihigh
Cloudlog - SQL Injection
Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.
36RISK
open
Nucleicritical
JeecgBoot v3.7.1 - SQL Injection
JeecgBoot v3.7.1 was discovered to contain a SQL injection vulnerability via the component /onlDragDatasetHead/getTotalD
75RISK
open
Nucleihigh
Edito CMS - Sensitive Data Leak
LFI in sites managed by Edito CMS
36RISK
open
Nucleihigh
Qualitor <= v8.24 - Server-Side Request Forgery
Qualitor v8.24 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /request/viewValidacao.p
36RISK
open
Nucleimedium
LoLLMS WebUI - Subfolder Prediction via Path Traversal
Path Traversal in parisneo/lollms-webui
28RISK
open
Nucleihigh
Netis Wifi Router - Information Disclosure
An issue in Netis Wifi6 Router NX10 2.0.1.3643 and 2.0.1.3582 and Netis Wifi 11AC Router NC65 3.0.0.3749 and Netis Wifi
23RISK
open
Nucleicritical
NetAlert X - Arbitary File Read
NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file reading because an HTTP client can ignore a redirect, and
48RISK
open
Nucleicritical
ServiceNow UI Macros - Template Injection
CVE-2024-4879CRITICALunder attack
Jelly Template Injection Vulnerability in ServiceNow UI Macros
100RISK
open
previouspage 140 / 141next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.