Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,620cataloged exploits
35,647CVEs with public exploitation
24,695lab-tested
77,533 exploits
Exploit-DB
FuguHub 8.1 - Remote Code Execution
CVE-2023-24078HIGHwebappsmultiple03 Jul 2023
Real Time Logic FuguHub v8.1 and earlier was discovered to contain a remote code execution (RCE) vulnerability via the c
53RISK
open
VulnCheck XDB
initial-access
CVE-2023-32243CRITICAL03 Jul 2023
WordPress Essential Addons for Elementor Plugin 5.4.0-5.7.1 is vulnerable to Privilege Escalation
85RISK
open
GitHub PoC
WARNING: This is a vulnerable application to test the exploit for the Cacti command injection (CVE-2023-39362). Run it at your own risk!
CVE-2023-39362HIGH03 Jul 2023
Authenticated command injection in SNMP options of a Device
63RISK
open
Exploit-DB
WP AutoComplete 1.0.4 - Unauthenticated SQLi
CVE-2022-4297CRITICALwebappsphp03 Jul 2023
WP AutoComplete Search <= 1.0.4 - Unauthenticated SQLi
48RISK
open
Exploit-DB
Microsoft 365 MSO (Version 2305 Build 16.0.16501.20074) 64-bit - Remote Code Execution (RCE)
CVE-2023-28285HIGHremotemultiple03 Jul 2023
Microsoft Office Remote Code Execution Vulnerability
41RISK
open
GitHub PoC13
PoC of Imagemagick's Arbitrary File Read
CVE-2022-44268MEDIUM03 Jul 2023
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISK
open
GitHub PoC6
Perform With Massive Openfire Unauthenticated Users
CVE-2023-32315HIGHunder attack02 Jul 2023
Openfire administration console authentication bypass
100RISK
open
GitHub PoC1
Expoit for CVE-2022-44268
CVE-2022-44268MEDIUM02 Jul 2023
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISK
open
VulnCheck XDB
initial-access
CVE-2023-32315HIGHunder attack02 Jul 2023
Openfire administration console authentication bypass
100RISK
open
GitHub PoC5
Exploitation of "Shellshock" Vulnerability. Remote code execution in Apache with mod_cgi
CVE-2014-6271CRITICALunder attack01 Jul 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISK
open
GitHub PoC
spip
CVE-2023-27372CRITICAL01 Jul 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
Metasploit600
OpenTSDB 2.4.1 unauthenticated command injection
CVE-2023-25826CRITICAL01 Jul 2023
Remote Code Execution in OpenTSDB
75RISK
open
Metasploit600
OpenNMS Horizon Authenticated RCE
CVE-2023-40315MEDIUM01 Jul 2023
ROLE_FILESYSTEM_EDITOR Can Be Used To Escalate To ROLE_ADMIN
28RISK
open
Metasploit600
OpenNMS Horizon Authenticated RCE
CVE-2023-0872HIGH01 Jul 2023
ROLE_REST can be used to escalate to ROLE_ADMIN via /rest/users
36RISK
open
Metasploit600
OpenTSDB 2.4.1 unauthenticated command injection
CVE-2023-36812CRITICAL01 Jul 2023
Remote Code Execution in OpenTSDB
68RISK
open
VulnCheck XDB
initial-access
CVE-2023-27372CRITICAL01 Jul 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
initial-access
CVE-2014-6271CRITICALunder attack01 Jul 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISK
open
VulnCheck XDB
client-side
CVE-2023-24488MEDIUM01 Jul 2023
Cross site scripting
70RISK
open
VulnCheck XDB
client-side
CVE-2023-24488MEDIUM01 Jul 2023
Cross site scripting
70RISK
open
VulnCheck XDB
local
CVE-2020-104830 Jun 2023
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writin
43RISK
open
VulnCheck XDB
initial-access
CVE-2023-2982CRITICAL30 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
GitHub PoC11
Decrypt reversible secrets encrypted using the default hardcoded key related to CVE-2020-9289 on FortiAnalyzer/FortiManager (the only difference with CVE-2019-6693 is the encryption routine).
CVE-2019-6693MEDIUMunder attackransomware30 Jun 2023
Use of a hard-coded cryptographic key to cipher sensitive data in FortiOS configuration backup file may allow an attacke
63RISK
open
GitHub PoC9
WordPress社交登录和注册(Discord,Google,Twitter,LinkedIn)<=7.6.4-绕过身份验证
CVE-2023-2982CRITICAL30 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
GitHub PoC82
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
CVE-2023-2982CRITICAL29 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
VulnCheck XDB
initial-access
CVE-2023-2982CRITICAL29 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
VulnCheck XDB
infoleak
CVE-2021-42013CRITICALunder attackransomware29 Jun 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
GitHub PoC
yangshifan-git/CVE-2021-1732
CVE-2021-1732HIGHunder attackransomware29 Jun 2023
Windows Win32k Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC1
Hamesawian/CVE-2021-42013
CVE-2021-42013CRITICALunder attackransomware29 Jun 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-44228CRITICALunder attackransomware29 Jun 2023
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC4
Using this tool, you can scan for remote command execution vulnerability CVE-2021-44228 on Apache Log4j at multiple addresses.
CVE-2021-44228CRITICALunder attackransomware29 Jun 2023
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
previouspage 489 / 2,585next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.