Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
75,589cataloged exploits
34,508CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,443Referência 21,554GitHub PoC 13,689VulnCheck XDB 8,216Nuclei 4,223Metasploit 3,464✓ verified onlyrecentpopularrisk
13,689 exploits
GitHub PoC★ 3
apocalypxze: xz backdoor (2024) AKA CVE-2024-3094 related links
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 3
CVE-2024-3094 - Checker (fix for arch etc)
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 17
XZ Backdoor Extract(Test on Ubuntu 23.10)
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 3,555
notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 3
Herramientas de linux para diferentes funciones.
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 4
Education purpose for CVE-2018-10933
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client coul
85RISK
open ↗GitHub PoC
This is my malware
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to view a benign file within a
100RISK
open ↗GitHub PoC★ 1
Exploit for CVE-2024-20767 affecting Adobe ColdFusion
ColdFusion | Improper Access Control (CWE-284)
100RISK
open ↗GitHub PoC★ 1
hapa3/CVE-2024-31666
An issue in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via a crafted script to the edit_addon
48RISK
open ↗GitHub PoC★ 1
upgraded of BlueBourne CVE-2017-0785 to python3
A information disclosure vulnerability in the Android system (bluetooth). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.
28RISK
open ↗GitHub PoC
Ansible playbook for patching CVE-2024-3094
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC
spidygal/CVE-2024-3094-Nmap-NSE-script
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 4
A script to detect if xz is vulnerable - CVE-2024-3094
Xz: malicious code in distributed source
70RISK
open ↗GitHub PoC★ 2
Horizon-Software-Development/CVE-2024-3094
Xz: malicious code in distributed source
70RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.