Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

75,445cataloged exploits
34,432CVEs with public exploitation
24,695lab-tested
75,445 exploits
GitHub PoC
rashedhasan090/cve-2025-55182-mitigator
CVE-2025-55182CRITICALunder attackransomware18 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC4
React2Shell (CVE-2025-66478): A Python-based Proof of Concept for Critical Remote Code Execution (RCE) in Next.js Server Components. Features an interactive CLI, custom payload injection, and cleaner output formatting. For educational research only.
CVE-2025-55182CRITICALunder attackransomware18 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Lightweight Go toolkit plus a Dockerized Next.js lab to explore and triage CVE-2025-55182.
CVE-2025-55182CRITICALunder attackransomware18 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
React2Shell Vulnerability Verification Script (React2Shell also known as CVE-2025-55182).
CVE-2025-55182CRITICALunder attackransomware18 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC3
Detection for CVE-2025-40602
CVE-2025-40602MEDIUMunder attack18 Dec 2025
A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance manageme
63RISK
open
GitHub PoC4
This is a Proof-Of-Concept of CVE-2025-63353
CVE-2025-63353CRITICAL18 Dec 2025
A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-s
48RISK
open
GitHub PoC
This repo describes about cve-2021-29447 and a small script for exploiting automatically
CVE-2021-29447HIGH18 Dec 2025
WordPress Authenticated XXE attack when installation is running PHP 8
63RISK
open
GitHub PoC1
CVE-2025-40602 is a local privilege escalation vulnerability in the appliance management console (AMC) of SonicWall Secure Mobile Access (SMA) 1000 series appliances.
CVE-2025-40602MEDIUMunder attack18 Dec 2025
A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance manageme
63RISK
open
GitHub PoC3
Fox LMS – WordPress LMS Plugin 1.0.4.7 - 1.0.5.1 - Unauthenticated Privilege Escalation via 'createOrder'
CVE-2025-14156CRITICAL18 Dec 2025
Fox LMS – WordPress LMS Plugin 1.0.4.7 - 1.0.5.1 - Unauthenticated Privilege Escalation via 'createOrder'
48RISK
open
GitHub PoC
Proof of Concept for Authenticated RCE in Crafty Controller
CVE-2025-14700CRITICAL18 Dec 2025
Improper Neutralization of Special Elements Used in a Template Engine in Crafty Controller
48RISK
open
GitHub PoC1
Proof of Concept for Authenticated RCE in Crafty Controller <= 4.6.1
CVE-2025-14700CRITICAL17 Dec 2025
Improper Neutralization of Special Elements Used in a Template Engine in Crafty Controller
48RISK
open
Metasploit600
ChurchCRM Unauthenticated RCE via Setup Page
CVE-2025-62521CRITICAL17 Dec 2025
ChurchCRM has unauthenticated RCE in its Install Wizard
43RISK
open
Metasploit300
ChurchCRM Database Restore RCE 6.2.0
CVE-2025-68109CRITICAL17 Dec 2025
ChurchCRM vulnerable to RCE with database restore functionality
43RISK
open
GitHub PoC2
Proof-of-concept research tool for CVE-2025-55182, a critical unauthenticated RCE in Next.js App Router caused by server-side object injection in React Server Components and Server Actions, including UTF-16LE WAF evasion techniques.
CVE-2025-55182CRITICALunder attackransomware17 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Improved poc of CVE-2017-0785 on DS-MDP002
CVE-2017-078517 Dec 2025
A information disclosure vulnerability in the Android system (bluetooth). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.
28RISK
open
GitHub PoC
React2shell vulnerable lab (CVE-2025-55182)
CVE-2025-55182CRITICALunder attackransomware17 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-27198CRITICALunder attackransomware17 Dec 2025
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
100RISK
open
VulnCheck XDB
local
CVE-2021-3560HIGHunder attack17 Dec 2025
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISK
open
VulnCheck XDB
initial-access
CVE-2025-55182CRITICALunder attackransomware17 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
proof-of-concept mass scanner targeting JetBrains TeamCity instances affected by CVE-2024-27198
CVE-2024-27198CRITICALunder attackransomware17 Dec 2025
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
100RISK
open
GitHub PoC6
Fortinet announced two closely related authentication‑bypass vulnerabilities on 9 December 2025. Both flaws involve improper verification of cryptographic signatures (CWE‑347) in the handling of SAML responses for the FortiCloud SSO login feature.
CVE-2025-59718CRITICALunder attack17 Dec 2025
A improper verification of cryptographic signature vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0
90RISK
open
GitHub PoC1
This repository documents three security vulnerabilities discovered in FreePBX (CVE-2025-66039, CVE-2025-61678, CVE-2025-61675), including analysis, impact, and proof-of-concept details for security research and awareness purposes.
CVE-2025-66039CRITICAL16 Dec 2025
FreePBX Endpoint Manager Allows Unauthenticated Logins to Administrator Control Panel via Forged Basic Auth Header
63RISK
open
GitHub PoC
S-Mughal/NextJS-app-CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware16 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
試してみるよん
CVE-2025-55182CRITICALunder attackransomware16 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
React2Shell
CVE-2025-55182CRITICALunder attackransomware16 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to execute arbitrary code via crafted packets, aka "Windows SMB Remote Code Execution Vulnerability."
CVE-2017-0144HIGHunder attackransomware16 Dec 2025
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows
100RISK
open
GitHub PoC1
This is a python PoC scripts for CVE-2025-24071 which is a vulnerability in Windows File Explorer that allows unauthorized access to sensitive information like NTLM Exposure.
CVE-2025-24071MEDIUM16 Dec 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
GitHub PoC
CVE-1999-0678- /doc directory browsable
CVE-1999-067816 Dec 2025
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read
35RISK
open
GitHub PoC
lytianahkone-boop/cve-2025-25257
CVE-2025-25257CRITICALunder attack16 Dec 2025
An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerabi
100RISK
open
GitHub PoC
React2Shell Exploitation Tool (CVE-2025-55182)
CVE-2025-55182CRITICALunder attackransomware16 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
previouspage 154 / 2,515next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.