Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,542cataloged exploits
34,971CVEs with public exploitation
24,695lab-tested
76,316 exploits
VulnCheck XDB
client-side
CVE-2024-46982HIGH23 Jan 2025
Cache Poisoning in next.js
53RISK
open
GitHub PoC
Check Point Security Gateways RCE via CVE-2021-40438
CVE-2021-40438CRITICALunder attackransomware22 Jan 2025
mod_proxy SSRF
100RISK
open
GitHub PoC
备份的CVE
CVE-2024-6460CRITICAL22 Jan 2025
Grow by Tradedoubler <= 2.0.21 - Unauthenticated LFI
63RISK
open
VulnCheck XDB
initial-access
CVE-2025-0282CRITICALunder attackransomware22 Jan 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7
100RISK
open
GitHub PoC
In this project, I exploited the CVE-2024-27198-RCE vulnerability to perform a remote code execution (RCE) attack on a vulnerable TeamCity server.
CVE-2024-27198CRITICALunder attackransomware22 Jan 2025
In JetBrains TeamCity before 2023.11.4 authentication bypass allowing to perform admin actions was possible
100RISK
open
GitHub PoC155
This repository contains POC scenarios as part of CVE-2025-0411 MotW bypass.
CVE-2025-0411HIGHunder attack22 Jan 2025
7-Zip Mark-of-the-Web Bypass Vulnerability
83RISK
open
GitHub PoC
Exploit for CVE-2024-53704 - SonicWall SonicOS SSLVPN authentication bypass
CVE-2024-53704HIGHunder attackransomware22 Jan 2025
An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authe
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-53704HIGHunder attackransomware22 Jan 2025
An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authe
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-40438CRITICALunder attackransomware22 Jan 2025
mod_proxy SSRF
100RISK
open
GitHub PoC2
Exploit for CVE-2025-0282: A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA gateways
CVE-2025-0282CRITICALunder attackransomware22 Jan 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7
100RISK
open
GitHub PoC3
sysirq/fortios-auth-bypass-exploit-CVE-2024-55591
CVE-2024-55591CRITICALunder attackransomware22 Jan 2025
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 thro
100RISK
open
GitHub PoC26
sysirq/fortios-auth-bypass-poc-CVE-2024-55591
CVE-2024-55591CRITICALunder attackransomware21 Jan 2025
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 thro
100RISK
open
GitHub PoC4
themirze/cve-2024-12084
CVE-2024-12084CRITICAL21 Jan 2025
Rsync: heap buffer overflow in rsync due to improper checksum length handling
70RISK
open
GitHub PoC
bananoname/CVE-2024-49138-POC
CVE-2024-49138HIGHunder attack21 Jan 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC1
CVE-2022-0847
CVE-2022-0847HIGHunder attack21 Jan 2025
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
VulnCheck XDB
local
CVE-2024-49138HIGHunder attack21 Jan 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC
ekcrsm/CVE-2024-23733
CVE-2024-23733HIGH21 Jan 2025
The /WmAdmin/,/invoke/vm.server/login login page in the Integration Server in Software AG webMethods 10.15.0 before Core
41RISK
open
VulnCheck XDB
infoleak
CVE-2020-5410HIGHunder attack21 Jan 2025
Directory Traversal with spring-cloud-config-server
100RISK
open
VulnCheck XDB
infoleak
CVE-2024-55591CRITICALunder attackransomware21 Jan 2025
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS version 7.0.0 thro
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack21 Jan 2025
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC12
Automated Reverse Shell Exploit via WebSocket | Havoc-C2-SSRF with RCE
CVE-2024-41570CRITICAL21 Jan 2025
An Unauthenticated Server-Side Request Forgery (SSRF) in demon callback handling in Havoc 2 0.7 allows attackers to send
48RISK
open
GitHub PoC8
This is a modified version of the CVE-2024-41570 SSRF PoC from @chebuya chained with the auth RCE exploit from @hyperreality. This exploit executes code remotely to a target due to multiple vulnerabilities in Havoc C2 Framework. (https://github.com/HavocFramework/Havoc)
CVE-2024-41570CRITICAL21 Jan 2025
An Unauthenticated Server-Side Request Forgery (SSRF) in demon callback handling in Havoc 2 0.7 allows attackers to send
48RISK
open
GitHub PoC
Grow by Tradedoubler < 2.0.22 - Unauthenticated LFI
CVE-2024-6460CRITICAL21 Jan 2025
Grow by Tradedoubler <= 2.0.21 - Unauthenticated LFI
63RISK
open
VulnCheck XDB
infoleak
CVE-2024-43451MEDIUMunder attack20 Jan 2025
NTLM Hash Disclosure Spoofing Vulnerability
85RISK
open
GitHub PoC2
POC for CVE-2023-40028: Ghost CMS Arbitrary File Read
CVE-2023-40028MEDIUM20 Jan 2025
Arbitrary file read via symlinks in Ghost
45RISK
open
VulnCheck XDB
local
CVE-2021-44228CRITICALunder attackransomware20 Jan 2025
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
调试环境
CVE-2021-44228CRITICALunder attackransomware20 Jan 2025
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC15
CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious shortcuts.
CVE-2024-43451MEDIUMunder attack20 Jan 2025
NTLM Hash Disclosure Spoofing Vulnerability
85RISK
open
GitHub PoC198
Proof of concept & details for CVE-2025-21298
CVE-2025-21298CRITICAL20 Jan 2025
Windows OLE Remote Code Execution Vulnerability
70RISK
open
GitHub PoC4
This is an altered PoC for d0rb/CVE-2024-6387. This takes glibc addresses and trys to exploit the CVE through them.
CVE-2024-6387HIGH20 Jan 2025
Openssh: regresshion - race condition in ssh allows rce/dos
63RISK
open
previouspage 313 / 2,544next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.