Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

80,409cataloged exploits
37,196CVEs with public exploitation
24,695lab-tested
80,409 exploits
VulnCheck XDB
initial-access
CVE-2026-24061CRITICALunder attack03 Mar 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
GitHub PoC
CVE-2024-23897: Jenkins Arbitrary File Read Lead to RCE
CVE-2024-23897CRITICALunder attackransomware03 Mar 2026
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
GitHub PoC1
Demonstrate a proof-of-concept exploit for CVE-2026-2441, a high-risk Chrome use-after-free vulnerability in the Blink CSS engine.
CVE-2026-2441HIGHunder attack03 Mar 2026
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside
76RISK
open
GitHub PoC
CVE-2023-3452 exploit for WordPress Canto plugin RCE, HTTPS support included
CVE-2023-3452CRITICAL03 Mar 2026
Canto <= 3.0.4 - Unauthenticated Remote File Inclusion
63RISK
open
GitHub PoC
CVE-2025-68613 — n8n RCE via Expression Injection
CVE-2025-68613CRITICALunder attack03 Mar 2026
n8n Vulnerable to Remote Code Execution via Expression Injection
100RISK
open
VulnCheck XDB
info-leak
CVE-2024-23897CRITICALunder attackransomware03 Mar 2026
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
Exploit-DB
mailcow 2025-01a - Host Header Password Reset Poisoning
CVE-2025-25198HIGHwebappsmultiple03 Mar 2026
mailcow: dockerized vulnerable to password reset poisoning
41RISK
open
Exploit-DB
WeGIA 3.5.0 - SQL Injection
CVE-2025-62360CRITICALwebappsphp03 Mar 2026
WeGIA SQL Injection via 'id_dependente' param at endpoint `/html/funcionario/dependente_documento.php`
48RISK
open
VulnCheck XDB
initial-access
CVE-2025-71257MEDIUM03 Mar 2026
BMC FootPrints ITSM 20.20.02 <= 20.24.01.001 Authentication Bypass
60RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2024-2961HIGH03 Mar 2026
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4
78RISK
open
VulnCheck XDB
initial-access
CVE-2025-32433CRITICALunder attack03 Mar 2026
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
Exploit-DB
WordPress Backup Migration 1.3.7 - Remote Command Execution
CVE-2023-6553CRITICALwebappsmultiple03 Mar 2026
Backup Migration <= 1.3.7 - Unauthenticated Remote Code Execution
85RISK
open
GitHub PoC
CVE-2025-32463
CVE-2025-32463CRITICALunder attack03 Mar 2026
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC19
Dahua IP camera CVE research toolkit (CVE-2021-33044/33045, CVE-2025-31700/31701)
CVE-2021-33044CRITICALunder attack03 Mar 2026
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can by
100RISK
open
GitHub PoC1
Idk what to do here, ill edit soon, but its for the telnetd CVE-2026-24061
CVE-2026-24061CRITICALunder attack03 Mar 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware02 Mar 2026
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
PoC of CVE-2021-4034 (PwnKit) for personal training purposes.
CVE-2021-4034HIGHunder attackransomware02 Mar 2026
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
Aryan20057/CVE-2023-4911
CVE-2023-4911HIGHunder attack02 Mar 2026
Glibc: buffer overflow in ld.so leading to privilege escalation
100RISK
open
Metasploit600
Ghost CMS Remote Code Execution
CVE-2026-22594HIGH02 Mar 2026
Ghost has Staff 2FA bypass
36RISK
open
Metasploit600
Ghost CMS Remote Code Execution
CVE-2026-29053HIGH02 Mar 2026
Ghost Vulnerable to Remote Code Execution via Malicious Themes
56RISK
open
VulnCheck XDB
local
CVE-2023-4911HIGHunder attack02 Mar 2026
Glibc: buffer overflow in ld.so leading to privilege escalation
100RISK
open
GitHub PoC11
gowonisgood/CVE-2025-62215-POC
CVE-2025-62215HIGHunder attack02 Mar 2026
Windows Kernel Elevation of Privilege Vulnerability
71RISK
open
VulnCheck XDB
denial-of-service
CVE-2025-62215HIGHunder attack02 Mar 2026
Windows Kernel Elevation of Privilege Vulnerability
71RISK
open
GitHub PoC1
CVE-2025-43529 Test
CVE-2025-43529HIGHunder attack02 Mar 2026
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.2, iOS 18.7.3 and
71RISK
open
GitHub PoC
e1arth/CVE-2025-6018
CVE-2025-6018HIGH02 Mar 2026
Pam-config: lpe from unprivileged to allow_active in pam
41RISK
open
GitHub PoC
Metasploit module to exploit CVE-2024-46987 - an authenticated path traversal vulnerability in Camaleon CMS versions 2.8.0 through 2.8.2 and 2.9.0
CVE-2024-46987HIGH02 Mar 2026
Arbitrary path traversal in Camaleon CMS
61RISK
open
VulnCheck XDB
initial-access
CVE-2026-1357CRITICAL02 Mar 2026
Migration, Backup, Staging <= 0.9.123 - Unauthenticated Arbitrary File Upload
75RISK
open
VulnCheck XDB
initial-access
CVE-2026-3395MEDIUM02 Mar 2026
MaxSite CMS MarkItUp Preview AJAX Endpoint preview-ajax.php eval code injection
48RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2025-58034MEDIUMunder attack02 Mar 2026
An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] vul
90RISK
open
GitHub PoC
CVE-2025-5777
CVE-2025-5777CRITICALunder attackransomware02 Mar 2026
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open
previouspage 181 / 2,681next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.