Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
76,008 exploits
GitHub PoC5
nkuty/CVE-2025-30208-31125-31486-32395
CVE-2025-30208MEDIUM29 May 2025
Vite bypasses server.fs.deny when using `?raw??`
70RISK
open
Exploit-DB
Automic Agent 24.3.0 HF4 - Privilege Escalation
CVE-2025-4971HIGHremotemultiple29 May 2025
Broadcom Automic Automation Agent Unix privilege escalation
41RISK
open
Exploit-DB
Campcodes Online Hospital Management System 1.0 - SQL Injection
CVE-2025-5298MEDIUMwebappsmultiple29 May 2025
Campcodes Online Hospital Management System betweendates-detailsreports.php sql injection
33RISK
open
GitHub PoC
vulnerable-nextjs-14-CVE-2025-29927
CVE-2025-29927CRITICAL29 May 2025
Authorization Bypass in Next.js Middleware
85RISK
open
Exploit-DB
SolarWinds Serv-U 15.4.2 HF1 - Directory Traversal
CVE-2024-28995HIGHunder attackremotemultiple29 May 2025
SolarWinds Serv-U L Directory Transversal Vulnerability
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-29927CRITICAL29 May 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2021-2291129 May 2025
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti
60RISK
open
VulnCheck XDB
infoleak
CVE-2025-30208MEDIUM29 May 2025
Vite bypasses server.fs.deny when using `?raw??`
70RISK
open
VulnCheck XDB
initial-access
CVE-2025-48827CRITICAL29 May 2025
vBulletin 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3 allows unauthenticated users to invoke protected API controllers'
85RISK
open
Exploit-DB
Fortra GoAnywhere MFT 7.4.1 - Authentication Bypass
CVE-2024-0204CRITICALremotemultiple29 May 2025
Authentication Bypass in GoAnywhere MFT
85RISK
open
VulnCheck XDB
infoleak
CVE-2025-5287HIGH28 May 2025
Likes and Dislikes Plugin <= 1.0.0 - Unauthenticated SQL Injection
56RISK
open
GitHub PoC
AzkOsDev/CVE-2021-41773
CVE-2021-41773HIGHunder attackransomware28 May 2025
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
GitHub PoC2
Telerik CVE-2017-9248 Vulnerability Scanner
CVE-2017-9248CRITICALunder attack28 May 2025
Telerik.Web.UI.dll in Progress Telerik UI for ASP.NET AJAX before R2 2017 SP1 and Sitefinity before 10.0.6412.0 does not
100RISK
open
GitHub PoC3
Exploited CVE-2025-24071 via SMB by hosting a .library-ms file inside a .tar archive. Using tar x from smbclient, the payload is extracted server-side without user interaction. Responder captures the NTLM hash once the target accesses the library.
CVE-2025-24071MEDIUM28 May 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
VulnCheck XDB
infoleak
CVE-2024-28995HIGHunder attack28 May 2025
SolarWinds Serv-U L Directory Transversal Vulnerability
100RISK
open
VulnCheck XDB
client-side
CVE-2025-24071MEDIUM28 May 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
VulnCheck XDB
initial-access
CVE-2021-41773HIGHunder attackransomware28 May 2025
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
VulnCheck XDB
client-side
CVE-2025-24071MEDIUM27 May 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware27 May 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
Metasploit300
Remote for Mac Unauthenticated RCE
CVE-2025-34089CRITICAL27 May 2025
Remote for Mac Unauthenticated Remote Code Execution via AppleScript Injection
63RISK
open
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALunder attackransomware27 May 2025
Argument Injection in PHP-CGI
100RISK
open
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALunder attackransomware27 May 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open
GitHub PoC
KimJuhyeong95/cve-2024-4577
CVE-2024-4577CRITICALunder attackransomware27 May 2025
Argument Injection in PHP-CGI
100RISK
open
GitHub PoC3
CVE-2025-24071 Proof Of Concept
CVE-2025-24071MEDIUM27 May 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
VulnCheck XDB
initial-access
CVE-2021-44228CRITICALunder attackransomware27 May 2025
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC1
Perform Remote Code Execution using vulnerable API endpoint.
CVE-2025-3248CRITICALunder attackransomware27 May 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
GitHub PoC
Log4Shell (CVE-2021-44228) exploit demo for SEAS 8405. Includes a vulnerable Spring Boot app, fake LDAP server, Docker setup, MITRE mapping, incident response, and a full screen recording.
CVE-2021-44228CRITICALunder attackransomware27 May 2025
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC4
JackHars/cve-2020-14008
CVE-2020-1400826 May 2025
Zoho ManageEngine Applications Manager 14710 and before allows an authenticated admin user to upload a vulnerable jar in
35RISK
open
GitHub PoC
The scripts in this repository are made to abuse CVE-2024-42008 and CVE-2024-42009. Both of these CVEs are vulnerabilities found on Roundcube 1.6.7
CVE-2024-42008CRITICAL26 May 2025
A Cross-Site Scripting vulnerability in rcmail_action_mail_get->run() in Roundcube through 1.5.7 and 1.6.x through 1.6.7
60RISK
open
GitHub PoC2
UMChacker/CVE-2024-55591-POC
CVE-2024-55591CRITICALunder attackransomware26 May 2025
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 thro
100RISK
open
previouspage 257 / 2,534next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.