Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
80,930cataloged exploits
37,572CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,482Referência 23,973GitHub PoC 15,478VulnCheck XDB 9,069Nuclei 4,426Metasploit 3,502✓ verified onlyrecentpopularrisk
80,930 exploits
GitHub PoC
These PoC python scripts test the Kemp LoadMaster for remote code execution.
Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection
75RISK
open ↗Exploit-DB
projectworlds Online Admission System 1.0 - SQL Injection
projectworlds Online Admission System adminlogin.php sql injection
33RISK
open ↗VulnCheck XDB
infoleak
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open ↗VulnCheck XDB
initial-access
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open ↗Exploit-DB
Cisco ISE 3.0 - Authorization Bypass
Cisco Identity Services Engine Insufficient Authorization Bypass Vulnerability
53RISK
open ↗GitHub PoC
Update the old POC of CVE-2025-5777 Citrix NetScaler Memory leak
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open ↗Exploit-DB
Microsoft Edge Renderer Process (Mojo IPC) 134.0.6998.177 - Sandbox Escape
Incorrect handle provided in unspecified circumstances in Mojo in Google Chrome on Windows prior to 134.0.6998.177 allow
71RISK
open ↗Exploit-DB
Ghost CMS 5.42.1 - Path Traversal
Ghost before 5.42.1 allows remote attackers to read arbitrary files within the active theme's folder via /assets/built%2
68RISK
open ↗Exploit-DB
atjiu pybbs 6.0.0 - Cross Site Scripting (XSS)
atjiu pybbs list cross site scripting
33RISK
open ↗Exploit-DB
Belkin F9K1009 F9K1010 2.00.04/2.00.09 - Hard Coded Credentials
Belkin F9K1009/F9K1010 Web Interface hard-coded credentials
48RISK
open ↗Exploit-DB
ServiceNow Multiple Versions - Input Validation & Template Injection
Jelly Template Injection Vulnerability in ServiceNow UI Macros
100RISK
open ↗GitHub PoC
alexander47777/CVE-2016-10033
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open ↗Exploit-DB
Tigo Energy Cloud Connect Advanced (CCA) 4.0.1 - Command Injection
Improper Neutralization of Special Elements used in a Command ('Command Injection') in Tigo Energy Cloud Connect Advanced
46RISK
open ↗GitHub PoC★ 4
Python exploit for vsftpd 2.3.4 - Backdoor Command Execution
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISK
open ↗GitHub PoC★ 3
CVE-2024-47533: Cobbler Authentication Bypass & Code Execution
Cobbler allows anyone to connect to cobbler XML-RPC server with a known password and make changes
63RISK
open ↗GitHub PoC★ 1
Este script explora a vulnerabilidade CVE-2025-24813 em versões específicas do Apache Tomcat, permitindo execução remota de código (RCE) através de um vetor de desserialização Java e abuso do método HTTP PUT para gravação arbitrária de arquivos de sessão.
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open ↗Exploit-DB
Grav CMS 1.7.48 - Remote Code Execution (RCE)
A Remote Code Execution (RCE) vulnerability in Grav CMS v1.7.48 allows an authenticated admin to upload a malicious plug
56RISK
open ↗Exploit-DB
VMware vSphere Client 8.0.3.0 - Reflected Cross-Site Scripting (XSS)
VMware ESXi and vCenter Server Reflected Cross Site Scripting (XSS) Vulnerability
33RISK
open ↗Exploit-DB
JetBrains TeamCity 2023.11.4 - Authentication Bypass
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
100RISK
open ↗Exploit-DB
Microsoft Windows - Storage QoS Filter Driver Checker
Microsoft Windows QoS Scheduler Driver Elevation of Privilege Vulnerability
41RISK
open ↗Exploit-DB
Ghost CMS 5.59.1 - Arbitrary File Read
Arbitrary file read via symlinks in Ghost
45RISK
open ↗GitHub PoC★ 10
Python tool for safe archive handling, path traversal awareness, and secure extraction. Inspired by CVE-2025-8088.
Path traversal vulnerability in WinRAR
93RISK
open ↗VulnCheck XDB
client-side
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v
76RISK
open ↗GitHub PoC
BiiTts/POC-IngressNightmare-CVE-2025-1974
ingress-nginx admission controller RCE escalation
85RISK
open ↗GitHub PoC
kylew1004/cve-2017-5941-poc-docker-lab
An issue was discovered in the node-serialize package 0.0.4 for Node.js. Untrusted data passed into the unserialize() fu
35RISK
open ↗VulnCheck XDB
local
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open ↗GitHub PoC★ 6
POC for CVE-2025-4404
Freeipa: idm: privilege escalation from host to domain admin in freeipa
48RISK
open ↗GitHub PoC★ 4
POC exploit for CVE-2025-24893
Remote code execution as guest via SolrSearchMacros request in xwiki
100RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.