Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,980cataloged exploits
36,899CVEs with public exploitation
24,695lab-tested
79,980 exploits
GitHub PoC
The SSRF filter checked hostname text, but the actual destination was decided later by DNS. That gap let attacker-controlled Webhook URLs reach loopback, metadata, and private network targets.
CVE-2026-34207HIGH26 Jun 2026
TypeBot: SSRF Protection Bypass via DNS-Resolved Hostnames in Webhook / HTTP Request Validation
41RISK
open
GitHub PoC
Cacti <= 1.2.30
CVE-2026-39938CRITICAL26 Jun 2026
Cacti: Unauthenticated RCE on Graph Image
48RISK
open
VulnCheck XDB
client-side
CVE-2025-8088HIGHunder attackransomware26 Jun 2026
Path traversal vulnerability in WinRAR
93RISK
open
GitHub PoC1
CVE-2026-8932
CVE-2026-8932HIGH26 Jun 2026
incomplete mTLS config matching in conn reuse
41RISK
open
GitHub PoC
A low-privileged Docmost user could supply a victim attachmentId to the generic upload endpoint and overwrite another page's stored attachment inside the same workspace.
CVE-2026-34213MEDIUM26 Jun 2026
Docmost has cross-page attachment overwrite via flawed attachmentId overwrite validation
33RISK
open
GitHub PoC
sec0x/CVE-2026-43503
CVE-2026-43503HIGH26 Jun 2026
net: skbuff: propagate shared-frag marker through frag-transfer helpers
41RISK
open
GitHub PoC
PoC de CVE-2026-20253: RCE pre-autenticacion en Splunk Enterprise.
CVE-2026-20253CRITICALunder attack26 Jun 2026
Unauthenticated Arbitrary File Creation and Truncation in a PostgreSQL Sidecar Service Endpoint in Splunk Enterprise
100RISK
open
GitHub PoC
Plane’s V2 asset subsystem trusted workspace slugs and asset UUIDs without enforcing the right membership checks, which let one authenticated user read, copy, delete, and overwrite assets in other workspaces.
CVE-2026-46558HIGH26 Jun 2026
Plane: Cross-workspace asset authorization bypass lets any authenticated user read, copy, delete, and overwrite assets in other Plane workspaces
41RISK
open
GitHub PoC5
CVE-2026-8461
CVE-2026-8461HIGH26 Jun 2026
Heap out-of-bounds write via odd slice_height in FFmpeg MagicYUV decoder
41RISK
open
GitHub PoC17
mooder1/dirtyclone-CVE-2026-43503
CVE-2026-43503HIGH26 Jun 2026
net: skbuff: propagate shared-frag marker through frag-transfer helpers
41RISK
open
GitHub PoC
Penpot's remote image import let an authenticated file editor turn a normal media convenience feature into backend-origin SSRF because attacker-controlled URLs crossed into a redirect-following server fetch path without destination filtering.
CVE-2026-45806HIGH26 Jun 2026
Penpot: Authenticated SSRF in remote image import via create-file-media-object-from-url
41RISK
open
GitHub PoC
CVE-2026-12415-or-CVE-2026-12416.py
CVE-2026-12415CRITICAL26 Jun 2026
Invoice Generator <= 1.0.0 - Unauthenticated Privilege Escalation via Account Takeover via 'user_id' Parameter
48RISK
open
GitHub PoC
e-corp-demo/CVE-2026-44788
CVE-2026-44788MEDIUM26 Jun 2026
SharpCompress: Directory traversal via directory entries in WriteToDirectory (zip slip variant)
33RISK
open
GitHub PoC31
CVE-2026-46331
CVE-2026-46331HIGH26 Jun 2026
net/sched: fix pedit partial COW leading to page cache corruption
41RISK
open
GitHub PoC
CVE-2026-54807 WooCommerce Privilege Escalation ║ ║ Unauthenticated Admin Role Assignment via Reg. Form
CVE-2026-54807CRITICAL26 Jun 2026
WordPress Registration Form for WooCommerce plugin <= 1.0.9 - Privilege Escalation vulnerability
48RISK
open
GitHub PoC1
Ghost CMS Content API Blind SQL Injection
CVE-2026-26980CRITICAL26 Jun 2026
Ghost has a SQL Injection in its Content API
85RISK
open
GitHub PoC11
CVE-2026-26980 - Ghost CMS Content API SQL Injection
CVE-2026-26980CRITICAL26 Jun 2026
Ghost has a SQL Injection in its Content API
85RISK
open
GitHub PoC
12hrformat/CVE-2026-35273-POC
CVE-2026-35273CRITICALunder attackransomware26 Jun 2026
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Mana
100RISK
open
GitHub PoC
Full Metasploit exploitation walkthrough against Metasploitable2 — vsftpd backdoor, Samba CVE-2007-2447, UnrealIRCd backdoor, Netcat exfiltration, and credential cracking prep.
CVE-2007-244726 Jun 2026
The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands
50RISK
open
VulnCheck XDB
initial-access
CVE-2026-20253CRITICALunder attack26 Jun 2026
Unauthenticated Arbitrary File Creation and Truncation in a PostgreSQL Sidecar Service Endpoint in Splunk Enterprise
100RISK
open
GitHub PoC
scanner for CVE-2020-0796
CVE-2020-0796CRITICALunder attackransomware26 Jun 2026
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
VulnCheck XDB
local
CVE-2025-61155MEDIUM25 Jun 2026
The GameDriverX64.sys kernel-mode anti-cheat driver (v7.23.4.7 and earlier) contains an access control vulnerability in
33RISK
open
VulnCheck XDB
initial-access
CVE-2026-20230HIGH25 Jun 2026
Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability
63RISK
open
VulnCheck XDB
initial-access
CVE-2026-8181CRITICAL25 Jun 2026
Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover
68RISK
open
VulnCheck XDB
initial-access
CVE-2023-20198CRITICALunder attack25 Jun 2026
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC
Squamity/CVE-2026-8181-PoC
CVE-2026-8181CRITICAL25 Jun 2026
Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover
68RISK
open
GitHub PoC
POC of CVE-2026-53075
CVE-2026-53075HIGH25 Jun 2026
ppp: require CAP_NET_ADMIN in target netns for unattached ioctls
41RISK
open
GitHub PoC1
CVE-2026-7574
CVE-2026-7574HIGH25 Jun 2026
Anthropic Claude Desktop Cowork VM Image Contents Not Validated Before Use
41RISK
open
GitHub PoC
7whyex/CVE-2026-45321-Tanstack
CVE-2026-45321CRITICALunder attackransomware25 Jun 2026
Malware in 42 @tanstack/* packages exfiltrates cloud credentials, GitHub tokens, and SSH keys
78RISK
open
VulnCheck XDB
initial-access
CVE-2021-29441HIGH25 Jun 2026
Authentication bypass
78RISK
open
previouspage 82 / 2,666next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.