Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,957cataloged exploits
32,195CVEs with public exploitation
1,932lab-tested
4,217 exploits
Nucleimedium
JoomlaUX JUX Real Estate 3.4.0 - Reflected XSS
JoomlaUX JUX Real Estate realties cross site scripting
28RISK
open
Nucleimedium
Mage AI - Insecure Default Authentication Setup
Mage AI insecure default initialization of resource
28RISK
open
Nucleihigh
WordPress WPCOM Member <= 1.7.6 - SQL Injection
WPCOM Member <= 1.7.6 - Unauthenticated Time-Based SQL Injection
36RISK
open
Nucleicritical
Landray EIS SQL注入漏洞
Landray EIS 2001 through 2006 allows Message/fi_message_receiver.aspx?replyid= SQL injection.
28RISK
open
Nucleihigh
Sante PACS Server.exe - Path Traversal Information Disclosure
Santesoft Sante PACS Server Path Traversal Information Disclosure
48RISK
open
Nucleicritical
Course Booking System <= 6.0.6 - SQL Injection
WordPress Course Booking System plugin <= 6.0.6 - SQL Injection vulnerability
63RISK
open
Nucleicritical
Kubio AI Page Builder <= 2.5.1 - Local File Inclusion
Kubio AI Page Builder <= 2.5.1 - Unauthenticated Local File Inclusion
85RISK
open
Nucleicritical
Elestio Memos <= v0.24.0 - Server-Side Request Forgery
elestio memos v0.23.0 is vulnerable to Server-Side Request Forgery (SSRF) due to insufficient validation of user-supplie
43RISK
open
Nucleicritical
Mongoose - NoSQL Injection
Mongoose before 8.9.5 can improperly use a nested $where filter with a populate() match, leading to search injection. NO
63RISK
open
Nucleicritical
Tandoor Recipes < 1.5.24 - Jinja2 SSTI RCE
Tandoor Recipes - SSTI - Remote Code Execution
43RISK
open
Nucleicritical
Wazuh - Unsafe Deserialization Remote Code Execution
CVE-2025-24016CRITICALunder attack
Remote code execution in Wazuh server
100RISK
open
Nucleimedium
Imgproxy < 3.27.2 - Server-Side Request Forgery (SSRF)
imgproxy is vulnerable to SSRF against 0.0.0.0
48RISK
open
Nucleihigh
Ingress-Nginx Controller - Configuration Injection via Unsanitized `auth-url` Annotation
ingress-nginx controller - configuration injection via unsanitized auth-url annotation
68RISK
open
Nucleimedium
12 Step Meeting List < 3.16.6 - Unauthenticated Sensitive Information Exposure
WordPress 12 Step Meeting List plugin <= 3.16.5 - Sensitive Data Exposure vulnerability
28RISK
open
Nucleicritical
Company Visitor Management System 1.0 - SQL Injection
PHPGurukul Company Visitor Management System Sign In index.php sql injection
28RISK
open
Nucleihigh
WhoDB < 0.45.0 - Path Traversal
Path traversal opening Sqlite3 database in WhoDB
43RISK
open
Nucleicritical
GLPI < 10.0.17 - Pre-Auth SQL Injection
GLPI allows unauthenticated SQL injection through the inventory endpoint
78RISK
open
Nucleicritical
Apache Tomcat Path Equivalence - Remote Code Execution
CVE-2025-24813CRITICALunder attack
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
Nucleicritical
XWiki Platform - Remote Code Execution
CVE-2025-24893CRITICALunder attack
Remote code execution as guest via SolrSearchMacros request in xwiki
100RISK
open
Nucleimedium
Vitest Browser Mode - Local File Read
Browser mode serves arbitrary files in vitest
48RISK
open
Nucleicritical
SugarCRM - Unauthenticated Remote Code Execution via PHP Object Injection
SugarCRM PHP Deserialization RCE
63RISK
open
Nucleihigh
Aquatronica Controller System <= 5.1.6 - Information Disclosure
Aquatronica Controller System Complete Information Disclosure
63RISK
open
Nucleihigh
Omnissa Workspace ONE UEM - Path Traversal
Omnissa Workspace ONE UEM contains a Secondary Context Path Traversal Vulnerability. A malicious actor may be able to ga
61RISK
open
Nucleicritical
Fortinet FortiWeb - SQL Injection
CVE-2025-25257CRITICALunder attack
An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerabi
100RISK
open
Nucleimedium
Label Studio < 1.16.0 - Cross-Site Scripting
Label Studio allows Cross-Site Scripting (XSS) via GET request to `/projects/upload-example` endpoint
28RISK
open
Nucleihigh
File Away <= 3.9.9.0.1 - Missing Authorization to Unauthenticated Arbitrary File Read
File Away <= 3.9.9.0.1 - Missing Authorization to Unauthenticated Arbitrary File Read
56RISK
open
Nucleicritical
Vue Vben Admin - Default Credentials
Vue Vben Admin 2.10.1 allows unauthorized login to the backend due to an issue with hardcoded credentials.
43RISK
open
Nucleihigh
WordPress The Wound Theme <= 0.0.1 - Local File Inclusion
The Wound <= 0.0.1 - Unauthenticated LFI
36RISK
open
Nucleicritical
User Registration & Membership <= 4.1.1 - Unauthenticated Privilege Escalation
User Registration & Membership < 4.1.2- Unauthenticated Privilege Escalation
68RISK
open
Nucleihigh
MagnusBilling Login Logs - Cross-Site Scripting
MagnusBilling Stored Cross-Site Scripting in Login Logs
36RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.