Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,858cataloged exploits
36,825CVEs with public exploitation
24,695lab-tested
79,858 exploits
GitHub PoC
XSS2Shell ULTIMATE v3.0 is a powerful exploitation tool that chains Cross-Site Scripting (XSS) vulnerabilities in WordPress to achieve Remote Code Execution (RCE). This tool exploits CVE-2026-64638 to gain full control over vulnerable WordPress installations.
CVE-2026-64638HIGH09 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC6
CVE-2026-34910/34909 — UniFi OS unauth RCE + file read via ..%2f auth bypass (CVSS 10.0, KEV, Mirai ITW)
CVE-2026-34910CRITICALunder attack09 Aug 2026
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS
100RISK
open
GitHub PoC3
eh-amish/CVE-2026-64638-XSS-to-Shell-PoC
CVE-2026-64638HIGH09 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC1
CVE-2026-64638 — WordPress Pre-Auth Reflected XSS → RCE via DOM Clobbering + Application Password Theft + REST API Plugin Activation. Dual-mode PoC (XSS chain & direct).
CVE-2026-64638HIGH09 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC
Saku0512/CVE-2026-71557-poc
CVE-2026-71557MEDIUM08 Aug 2026
go-git: Malicious reference names may modify files outside the reference storage
33RISK
open
GitHub PoC1
CVE-2026-64638 (XSS2shell) POC.
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC
Write-up do Sudo Agent CTF (TryHackMe), com enumeração, exploração web, esteganografia, SSH e privilege escalation via CVE-2019-14287.
CVE-2019-1428708 Aug 2026
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and se
35RISK
open
GitHub PoC18
Root your Galaxy using CVE-2026-43499
CVE-2026-43499HIGH08 Aug 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
GitHub PoC1
yogaGymn/XSS2Shell-CVE-2026-64638
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
VulnCheck XDB
initial-access
CVE-2026-60004CRITICALunder attack08 Aug 2026
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
100RISK
open
GitHub PoC9
CVE-2026-64638: WordPress Pre-auth XSS → RCE (XSS2Shell) PoC
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC1
XSS2Shell (CVE-2026-64638) WordPress pre-auth XSS to RCE PoC mirror — WordSec, MIT; for authorized security testing
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC1
A Linux kernel local privilege escalation affecting the XFS filesystem copy-on-write (CoW) path.
CVE-2026-64600HIGH08 Aug 2026
xfs: resample the data fork mapping after cycling ILOCK
41RISK
open
GitHub PoC
mohwahyudi/poc-CVE-2026-64638-
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC
Dungsocool/CVE-2026-64638
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC
CVE-2026-63077 — Unauthenticated Remote Code Execution in JetBrains TeamCity via agent polling protocol deserialization. CVSS 9.8 CRITICAL. Mass exploitation tool with interactive shell, multi-threading, and real-time result logging.
CVE-2026-63077CRITICALunder attack08 Aug 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
100RISK
open
GitHub PoC
PoC for CVE-2026-18953 — arbitrary file write (CWE-22) in awslabs.aws-transform-mcp-server's get_resource tool via the savePath parameter
CVE-2026-18953MEDIUM08 Aug 2026
Improper limitation of a pathname to a restricted directory in aws-transform-mcp-server
33RISK
open
GitHub PoC1
MR-LeonardoGomes/XSS2Shell-CVE-2026-64638
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC1
🛡️ CVE-2026-64638 - WordPress Security Assessment Suite (CVSS 8.9) | WordPress 4.7.0-7.0.2 pentest toolkit. Includes vulnerability assessment & advanced analysis modules. 🐍 Safe Check & Exploit, 2 mode. Advanced Blue&Red Team Best 2026-64638 Toolkit, Authorized use only. Stay Legal <3zd
CVE-2026-64638HIGH08 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC5
WordPress Pre-Auth RCE Exploit + Scanner + WAF Bypass | CVE-2026-63030 + CVE-2026-60137 | Go + Python + Metasploit modules + Docker lab
CVE-2026-63030CRITICALunder attack08 Aug 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISK
open
GitHub PoC
teamcity teamcity-CVE-2026-63077 exploitation pcap
CVE-2026-63077CRITICALunder attack08 Aug 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
100RISK
open
GitHub PoC1
Zapscape (CVE-2026-64561) KVM/x86 shadow MMU UAF guest-to-host escape PoC mirror — V4bel/@v4bel, MIT; for authorized security testing
CVE-2026-64561HIGH08 Aug 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RISK
open
GitHub PoC
Linux 内核升级指南 - 修复 CVE-2026-64561
CVE-2026-64561HIGH08 Aug 2026
KVM: x86: Check for invalid/obsolete root *after* making MMU pages available
41RISK
open
GitHub PoC
sandimfz/CVE-2024-23692
CVE-2024-23692CRITICALunder attackransomware08 Aug 2026
Rejetto HTTP File Server 2.3m Unauthenticated RCE
100RISK
open
GitHub PoC2
CVE-2026-60004 — Gitea Pre-Auth RCE via diffpatch hook injection
CVE-2026-60004CRITICALunder attack08 Aug 2026
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
100RISK
open
GitHub PoC
CVE-2026-64638
CVE-2026-64638HIGH07 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
GitHub PoC
Shams-Ul-Mehmood/CVE-2021-3156-Project
CVE-2021-3156HIGHunder attack07 Aug 2026
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
GitHub PoC
Giangdurian/CVE-2021-3129
CVE-2021-3129CRITICALunder attackransomware07 Aug 2026
Ignition before 2.5.2, as used in Laravel and other products, allows unauthenticated remote attackers to execute arbitra
100RISK
open
GitHub PoC1
Advanced React Server Components RCE scanner for CVE-2025-55182. Features: multi-stage fingerprinting, vulnerability verification, DNS exfiltration, interactive shell, payload obfuscation, and professional reporting (JSON/HTML/PDF). Authorized testing only.
CVE-2025-55182CRITICALunder attackransomware07 Aug 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC6
Wordpress Pre-auth XSS to RCE exploit PoC (xss2shell & CVE-2026-64638)
CVE-2026-64638HIGH07 Aug 2026
WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malici
68RISK
open
previouspage 30 / 2,662next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.