Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,020cataloged exploits
35,276CVEs with public exploitation
24,695lab-tested
76,647 exploits
VulnCheck XDB
infoleak
CVE-2022-23131CRITICALunder attack25 Oct 2024
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISK
open
VulnCheck XDB
local
CVE-2024-35250HIGHunder attack25 Oct 2024
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
91RISK
open
VulnCheck XDB
client-side
CVE-2024-37383MEDIUMunder attack24 Oct 2024
Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes.
85RISK
open
GitHub PoC
This script performs vulnerability scanning for CVE-2024-21762, a Fortinet SSL VPN remote code execution vulnerability. It checks whether a given server is vulnerable to this CVE by sending specific requests and analyzing the responses.
CVE-2024-21762CRITICALunder attackransomware24 Oct 2024
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0
100RISK
open
GitHub PoC5
Proof of concept for CVE-2024-37383
CVE-2024-37383MEDIUMunder attack24 Oct 2024
Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via SVG animate attributes.
85RISK
open
GitHub PoC3
CVE-2022-41082-poc
CVE-2022-41082HIGHunder attackransomware24 Oct 2024
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
VulnCheck XDB
initial-access
CVE-2016-10033CRITICALunder attack23 Oct 2024
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para
100RISK
open
VulnCheck XDB
initial-access
CVE-2023-3864623 Oct 2024
Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary comman
60RISK
open
Metasploit600
Fortinet FortiManager Unauthenticated RCE
CVE-2024-47575CRITICALunder attack23 Oct 2024
A missing authentication for critical function in FortiManager 7.6.0, FortiManager 7.4.0 through 7.4.4, FortiManager 7.2
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack23 Oct 2024
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-22965CRITICALunder attack23 Oct 2024
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data b
100RISK
open
GitHub PoC1
bueno-armando/CVE-2023-4220-RCE
CVE-2023-4220HIGH23 Oct 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
VulnCheck XDB
initial-access
CVE-2019-15107CRITICALunder attackransomware23 Oct 2024
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open
VulnCheck XDB
initial-access
CVE-2023-20198CRITICALunder attack23 Oct 2024
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC51
PfSense Stored XSS lead to Arbitrary Code Execution exploit
CVE-2024-46538CRITICAL23 Oct 2024
A cross-site scripting (XSS) vulnerability in pfsense v2.5.2 allows attackers to execute arbitrary web scripts or HTML v
70RISK
open
VulnCheck XDB
initial-access
CVE-2022-23131CRITICALunder attack23 Oct 2024
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML
100RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attack23 Oct 2024
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
VulnCheck XDB
initial-access
CVE-2023-346023 Oct 2024
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
VulnCheck XDB
initial-access
CVE-2023-3496023 Oct 2024
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to ex
60RISK
open
VulnCheck XDB
initial-access
CVE-2023-4220HIGH23 Oct 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
VulnCheck XDB
infoleak
CVE-2024-24919HIGHunder attackransomware23 Oct 2024
Information disclosure
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-25600CRITICAL23 Oct 2024
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RISK
open
VulnCheck XDB
client-side
CVE-2021-41174MEDIUM23 Oct 2024
XSS vulnerability allowing arbitrary JavaScript execution
70RISK
open
VulnCheck XDB
initial-access
CVE-2023-4220HIGH23 Oct 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
VulnCheck XDB
infoleak
CVE-2024-4040CRITICALunder attack23 Oct 2024
Unauthenticated arbitrary file read and remote code execution in CrushFTP
100RISK
open
GitHub PoC
rahisec/CVE-2024-4040
CVE-2024-4040CRITICALunder attack23 Oct 2024
Unauthenticated arbitrary file read and remote code execution in CrushFTP
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-42013CRITICALunder attackransomware22 Oct 2024
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
GitHub PoC2
CVE-2024-6387, also known as RegreSSHion, is a high-severity vulnerability found in OpenSSH servers (sshd) running on glibc-based Linux systems. It is a regression of a previously fixed vulnerability (CVE-2006-5051), which means the issue was reintroduced in newer versions of OpenSSH.
CVE-2024-6387HIGH22 Oct 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RISK
open
VulnCheck XDB
initial-access
CVE-2022-22954CRITICALunder attackransomware22 Oct 2024
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side templa
100RISK
open
VulnCheck XDB
infoleak
CVE-2024-23897CRITICALunder attackransomware22 Oct 2024
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
previouspage 342 / 2,555next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.