Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,900cataloged exploits
36,847CVEs with public exploitation
24,695lab-tested
79,900 exploits
GitHub PoC325
Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combination of CVE-2026-49881 and CVE-2026-43284
CVE-2026-49881HIGH23 Jul 2026
In serviceClassExists of InCallController.java, there is a possible arbitrary code execution due to a logic error in the
41RISK
open
GitHub PoC
CVE Reproduction: cve-2025-5777-citrixbleed2_reproduction
CVE-2025-5777CRITICALunder attackransomware23 Jul 2026
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open
GitHub PoC
CVE-2026-41940 & CVE-2026-41948 — cPanel & WHM Auth Bypass
CVE-2026-41940CRITICALunder attackransomware23 Jul 2026
WebPros cPanel and WHM Authentication Bypass via Login Flow
100RISK
open
GitHub PoC5
soralis0912/CVE-2026-43499-aristotle-apk
CVE-2026-43499HIGH23 Jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
GitHub PoC1
0xdak/CVE-2026-56121_exploit
CVE-2026-56121CRITICAL23 Jul 2026
Feast < 0.63.0 Unauthenticated RCE via ApplyFeatureView gRPC Deserialization
48RISK
open
GitHub PoC
GitHub Actions workflow sandbox (CVE-2026-48546 reproduction)
CVE-2026-48546HIGH23 Jul 2026
KanaDojo < 0.1.18 Sandbox Escape RCE via messages.cjs
21RISK
open
GitHub PoC
GitHub Actions workflow sandbox for CVE-2026-45132 reproduction
CVE-2026-45132CRITICAL23 Jul 2026
CloudPirates Open Source Helm Charts: GitHub Actions workflow leaks PAT and SSH signing key via unsafe credential handling
48RISK
open
GitHub PoC28
YellowKey free tool for the CVE-2026-45585 BitLocker bypass vulnerability on Windows 10/11. Covered on Tom's Hardware: extract recovery keys, apply remediation, test bypass mitigation and manage BitLocker encryption state. Download YellowKey
CVE-2026-45585MEDIUM23 Jul 2026
Windows BitLocker Security Feature Bypass Vulnerability
33RISK
open
VulnCheck XDB
local
CVE-2021-3493HIGHunder attack23 Jul 2026
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting o
98RISK
open
VulnCheck XDB
initial-access
CVE-2026-63030CRITICALunder attack23 Jul 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISK
open
GitHub PoC
Initialized & connected PostgreSQL to Metasploit. Reconnoitered 10.1.16.0/24 with Nmap and imported results. Enumerated hosts/services using SYN, SMB & LDAP scanners. Exploited DC10 via ZeroLogon (CVE-2020-1472), dumped AD NTLM hashes with Impacket, performed Pass-the-Hash, then gained a Meterpreter reverse shell.
CVE-2020-1472MEDIUMunder attackransomware23 Jul 2026
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC12
DavidCarliez/CVE-2026-66804-CrossDevice-LPE
CVE-2026-66804HIGH23 Jul 2026
Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
41RISK
open
GitHub PoC
CVE-2026-42533 Nginx
CVE-2026-42533CRITICAL23 Jul 2026
NGINX Map directive and Regex matching vulnerability
48RISK
open
VulnCheck XDB
info-leak
CVE-2024-43451MEDIUMunder attack23 Jul 2026
NTLM Hash Disclosure Spoofing Vulnerability
85RISK
open
GitHub PoC1
CVE-2021-41773 Apache
CVE-2021-41773HIGHunder attackransomware23 Jul 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
GitHub PoC
0xdak/CVE-2026-63766_exploit
CVE-2026-63766CRITICAL23 Jul 2026
GPT-SoVITS 20250606v2pro OS Command Injection via webui.py
48RISK
open
VulnCheck XDB
initial-access
CVE-2026-23744CRITICAL23 Jul 2026
REC in MCPJam inspector due to HTTP Endpoint exposes
75RISK
open
GitHub PoC1
Metabase CVE-2026-59827 Vulnerability Scanner
CVE-2026-59827CRITICAL23 Jul 2026
Metabase: Unsafe Deserialization of H2 Query Results
48RISK
open
VulnCheck XDB
initial-access
CVE-2024-0012CRITICALunder attackransomware23 Jul 2026
PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)
100RISK
open
GitHub PoC
finding by nvth
CVE-2026-59880HIGH23 Jul 2026
Immutable.js: Hash-collision algorithmic complexity denial of service in Immutable.Map/Set
21RISK
open
VulnCheck XDB
info-leak
CVE-2025-5777CRITICALunder attackransomware23 Jul 2026
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALunder attackransomware23 Jul 2026
Argument Injection in PHP-CGI
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-41773HIGHunder attackransomware23 Jul 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
VulnCheck XDB
initial-access
CVE-2026-33017CRITICALunder attack23 Jul 2026
Langflow has Unauthenticated Remote Code Execution via Public Flow Build Endpoint
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-32432CRITICALunder attack23 Jul 2026
Craft CMS Allows Remote Code Execution
100RISK
open
GitHub PoC4
soralis0912/CVE-2026-43499-aristotle
CVE-2026-43499HIGH23 Jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
GitHub PoC
Scan WordPress installations for wp2shell vulnerabilities (CVE-2026-63030 + CVE-2026-60137). Identifies full RCE and SQL injection risks across multiple sites with severity classification and CSV reporting.
CVE-2026-63030CRITICALunder attack22 Jul 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISK
open
GitHub PoC
CVE-2026-50522
CVE-2026-50522CRITICALunder attack22 Jul 2026
Microsoft SharePoint Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
CVE-2026-16540 — Simply Schedule Appointments < 1.6.12.6 Unauthenticated Appointment Data Disclosure and Mass Deletion
CVE-2026-16540HIGH22 Jul 2026
Simply Schedule Appointments < 1.6.12.6 - Unauthenticated Appointment Data Disclosure and Mass Deletion via purge Endpoint
41RISK
open
GitHub PoC
Full ML-KEM-1024 key recovery from a partial Fujisaki-Okamoto comparison in wolfSSL (CVE-2026-6330 NEON, CVE-2026-10097 AVX2)
CVE-2026-6330MEDIUM22 Jul 2026
ML-KEM ARM64 NEON ciphertext comparison only compares half of the input
33RISK
open
previouspage 50 / 2,664next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.