Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,781cataloged exploits
36,771CVEs with public exploitation
24,695lab-tested
79,781 exploits
GitHub PoC
Hands-on reproduction of CVE-2024-28000 in LiteSpeed Cache using an isolated WordPress lab. Includes reconnaissance, vulnerable hash recovery, Administrator privilege escalation proof, cleanup, and remediation-focused documentation.
CVE-2024-28000CRITICAL22 Aug 2026
WordPress LiteSpeed Cache plugin <= 6.3.0.1 - Unauthenticated Privilege Escalation vulnerability
75RISK
open
GitHub PoC
Metasploit-based penetration test on an isolated Metasploitable2 lab VM — remote exploitation via DistCC (CVE-2004-2687), privilege escalation via udev netlink (CVE-2009-1185), and vsftpd 2.3.4 backdoor analysis (CVE-2011-2523), with firewall mitigation validated end-to-end.
CVE-2009-118522 Aug 2026
udev before 1.4.1 does not verify whether a NETLINK message originates from kernel space, which allows local users to ga
60RISK
open
GitHub PoC
CVE-2026-47630 — NVIDIA Triton Inference Server: arbitrary dlopen via TRITON_BATCH_STRATEGY_PATH
CVE-2026-47630MEDIUM22 Aug 2026
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an absolute path travers
33RISK
open
GitHub PoC
Metasploit-based penetration test on an isolated Metasploitable2 lab VM — remote exploitation via DistCC (CVE-2004-2687), privilege escalation via udev netlink (CVE-2009-1185), and vsftpd 2.3.4 backdoor analysis (CVE-2011-2523), with firewall mitigation validated end-to-end.
CVE-2004-268722 Aug 2026
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote at
60RISK
open
GitHub PoC
ts zeroday exp made by nullsec white team
CVE-2026-41940CRITICALunder attackransomware22 Aug 2026
WebPros cPanel and WHM Authentication Bypass via Login Flow
100RISK
open
GitHub PoC
Investigation and Incident Response report for LetsDefend Alert SOC335 (CVE-2024-49138 Exploitation)
CVE-2024-49138HIGHunder attack22 Aug 2026
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC175
POC pre-auth RCE on Exchange
CVE-2026-62911HIGH22 Aug 2026
Microsoft Exchange Server Elevation of Privilege Vulnerability
41RISK
open
GitHub PoC
Detection & precondition-verification tool for CVE-2026-58231 (SAP Commerce Cloud Data Hub Adapter)
CVE-2026-58231CRITICAL22 Aug 2026
Improper Authorization in SAP Commerce Cloud (Data Hub Adapter)
48RISK
open
GitHub PoC
Educational proof-of-concept automation for CVE-2022-22963, demonstrated in an authorized Hack The Box lab environment.
CVE-2022-22963CRITICALunder attack22 Aug 2026
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open
GitHub PoC
MinhHK68/CVE-2026-13736
CVE-2026-13736MEDIUM22 Aug 2026
NewPath WildApricotPress Add-on – Member Directory <= 1.0.0 - Unauthenticated Member PII Disclosure via REST API
33RISK
open
GitHub PoC6
Apple MacOS Screen Sharing Arbitrary File read/write -> RCE
CVE-2026-65400CRITICALunder attack22 Aug 2026
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS
78RISK
open
GitHub PoC1
CVE-2026-9198 - IBM Langflow OSS Unauthenticated Remote Code Execution (RCE)
CVE-2026-9198CRITICALunder attack22 Aug 2026
Unauthenticated Remote Code Execution via Auto-Login Bypass and Code Validation
100RISK
open
GitHub PoC
CPTS HackTheBox - Penetration Test Report: WordPress Path Traversal CVE-2019-11447
CVE-2019-1144722 Aug 2026
An issue was discovered in CutePHP CuteNews 2.1.2. An attacker can infiltrate the server through the avatar upload proce
35RISK
open
GitHub PoC
Gitlab-CVE-2026-19478
CVE-2026-19478CRITICAL22 Aug 2026
Improper Control of Generation of Code ('Code Injection') in GitLab
63RISK
open
VulnCheck XDB
initial-access
CVE-2026-65400CRITICALunder attack22 Aug 2026
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS
78RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-13671HIGHunder attack22 Aug 2026
Drupal core does not properly sanitize certain filenames on uploaded files, which can lead to files being interpreted as
83RISK
open
GitHub PoC
Metasploit-based penetration test on an isolated Metasploitable2 lab VM — remote exploitation via DistCC (CVE-2004-2687), privilege escalation via udev netlink (CVE-2009-1185), and vsftpd 2.3.4 backdoor analysis (CVE-2011-2523), with firewall mitigation validated end-to-end.
CVE-2011-252322 Aug 2026
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISK
open
VulnCheck XDB
initial-access
CVE-2024-28000CRITICAL22 Aug 2026
WordPress LiteSpeed Cache plugin <= 6.3.0.1 - Unauthenticated Privilege Escalation vulnerability
75RISK
open
GitHub PoC
CVE-2026-32475
CVE-2026-32475CRITICAL22 Aug 2026
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability
63RISK
open
GitHub PoC
Copy Fail CVE-2016-5195
CVE-2016-5195HIGHunder attack22 Aug 2026
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
VulnCheck XDB
info-leak
CVE-2026-34909CRITICALunder attack22 Aug 2026
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to a
90RISK
open
VulnCheck XDB
initial-access
CVE-2026-34910CRITICALunder attack22 Aug 2026
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS
100RISK
open
GitHub PoC
Stored XSS in J2Commerce Guest Checkout via Cookie Filter Bypass
CVE-2026-74252HIGH22 Aug 2026
Joomla Extension - j2commerce.com - Stored XSS in Guest checkout in J2Store 1.0.0-3.3.20, 4.0.0-4.0.20, 4.1.0-4.1.5
41RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2020-13671HIGHunder attack22 Aug 2026
Drupal core does not properly sanitize certain filenames on uploaded files, which can lead to files being interpreted as
83RISK
open
GitHub PoC
llaytynher/CVE-2026-0740-upload-template
CVE-2026-0740CRITICAL22 Aug 2026
Ninja Forms - File Upload <= 3.3.26 - Unauthenticated Arbitrary File Upload
75RISK
open
VulnCheck XDB
initial-access
CVE-2026-0740CRITICAL22 Aug 2026
Ninja Forms - File Upload <= 3.3.26 - Unauthenticated Arbitrary File Upload
75RISK
open
GitHub PoC3
내 공유기가 Zbtlink ENDLESSDOORS 백도어(CVE-2026-66747) 대상인지 클릭 한 번으로 검사하는 Windows 프로그램
CVE-2026-66747CRITICAL22 Aug 2026
ENDLESSDOORS: Zbtlink Router rctl/kworker Phone-Home Root Implant
48RISK
open
VulnCheck XDB
initial-access
CVE-2026-19478CRITICAL22 Aug 2026
Improper Control of Generation of Code ('Code Injection') in GitLab
63RISK
open
VulnCheck XDB
local
CVE-2016-5195HIGHunder attack22 Aug 2026
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
GitHub PoC1
PoC for CVE-2026-75616, an authenticated OS command injection in TP-Link Archer C20 v6 firmware
CVE-2026-75616HIGH22 Aug 2026
Command Injection in Router Web Management Interface
41RISK
open
previouspage 16 / 2,660next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.