Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
22,786 exploits
Exploit-DB
MyBB Recent Threads Plugin 1.0 - Cross-Site Scripting
The Recent Threads plugin before 1.1 for MyBB allows XSS via a thread subject.
23RISK
open ↗Exploit-DB
Pagekit < 1.0.13 - Cross-Site Scripting Code Generator
Stored XSS in YOOtheme Pagekit 1.0.13 and earlier allows a user to upload malicious code via the picture upload feature.
23RISK
open ↗Exploit-DB
Jenkins Mailer Plugin < 1.20 - Cross-Site Request Forgery (Send Email)
Cross-site request forgery (CSRF) vulnerability in the Mailer Plugin 1.20 for Jenkins 2.111 allows remote authenticated
23RISK
open ↗Exploit-DB
WebKit - not_number defineProperties UAF (Metasploit)
The kernel in Apple iOS before 9.3.5 allows attackers to execute arbitrary code in a privileged context or cause a denia
91RISK
open ↗Exploit-DB
EMS Master Calendar < 8.0.0.20180520 - Cross-Site Scripting
Data input into EMS Master Calendar before 8.0.0.201805210 via URL parameters is not properly sanitized, allowing malici
23RISK
open ↗Exploit-DB
Zip-n-Go 4.9 - Buffer Overflow (SEH)
MediaComm Zip-n-Go before 4.95 has a Buffer Overflow via a crafted file.
23RISK
open ↗Exploit-DB
SearchBlox 8.6.7 - XML External Entity Injection
XML external entity (XXE) vulnerability in api/rest/status in SearchBlox 8.6.7 allows remote unauthenticated users to re
28RISK
open ↗Exploit-DB
CyberArk < 10 - Memory Disclosure
CyberArk Password Vault before 9.7 allows remote attackers to obtain sensitive information from process memory by replay
28RISK
open ↗Exploit-DB
Brother HL Series Printers 1.15 - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability on Brother HL series printers allows remote attackers to inject arbitrary web s
23RISK
open ↗Exploit-DB
GreenCMS 2.3.0603 - Cross-Site Request Forgery / Remote Code Execution
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that allows attackers to execute arbitrary
23RISK
open ↗Exploit-DB
GreenCMS 2.3.0603 - Cross-Site Request Forgery (Add Admin)
An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that can add an admin account via index.php
23RISK
open ↗Exploit-DB
Microsoft Edge Chakra - EntrySimpleObjectSlotGetter Type Confusion
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Mi
35RISK
open ↗Exploit-DB
Dolibarr ERP/CRM 7.0.0 - (Authenticated) SQL Injection
SQL injection vulnerability in Dolibarr before 7.0.2 allows remote attackers to execute arbitrary SQL commands via vecto
60RISK
open ↗Exploit-DB
SearchBlox 8.6.6 - Cross-Site Request Forgery
servlet/UserServlet in SearchBlox 8.6.6 has CSRF via the u_name, u_passwd1, u_passwd2, role, and X-XSRF-TOKEN POST param
28RISK
open ↗Exploit-DB
Siemens SIMATIC S7-300 CPU - Remote Denial of Service
Siemens SIMATIC S7-300 CPU devices allow remote attackers to cause a denial of service (defect-mode transition) via craf
53RISK
open ↗Exploit-DB
MachForm < 4.2.3 - SQL Injection / Path Traversal / Upload Bypass
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path fr
28RISK
open ↗Exploit-DB
Procps-ng - Multiple Vulnerabilities
procps-ng before version 3.3.15 is vulnerable to multiple integer overflows leading to a heap corruption in file2strvec
41RISK
open ↗Exploit-DB
Procps-ng - Multiple Vulnerabilities
procps-ng before version 3.3.15 is vulnerable to a local privilege escalation in top. If a user runs top with HOME unset
41RISK
open ↗Exploit-DB
MachForm < 4.2.3 - SQL Injection / Path Traversal / Upload Bypass
An issue was discovered in Appnitro MachForm before 4.2.3. There is a download.php SQL injection via the q parameter.
23RISK
open ↗Exploit-DB
Procps-ng - Multiple Vulnerabilities
A flaw was found affecting the Linux kernel before version 4.17. By mmap()ing a FUSE-backed file onto a process's memory
28RISK
open ↗Exploit-DB
MachForm < 4.2.3 - SQL Injection / Path Traversal / Upload Bypass
An issue was discovered in Appnitro MachForm before 4.2.3. When the form is set to filter a blacklist, it automatically
23RISK
open ↗Exploit-DB
Procps-ng - Multiple Vulnerabilities
procps-ng before version 3.3.15 is vulnerable to a denial of service in ps via mmap buffer overflow. Inbuilt protection
28RISK
open ↗Exploit-DB
Procps-ng - Multiple Vulnerabilities
procps-ng, procps is vulnerable to a process hiding through race condition. Since the kernel's proc_pid_readdir() return
28RISK
open ↗Exploit-DB
NUUO NVRmini2 / NVRsolo - Arbitrary File Upload
upload.php on NUUO NVRmini 2 devices allows Arbitrary File Upload, such as upload of .php files.
23RISK
open ↗Exploit-DB
Sitemakin SLAC 1.0 - 'my_item_search' SQL Injection
An issue was discovered in SITEMAKIN SLAC (Site Login and Access Control) v1.0. The parameter "my_item_search" in users.
23RISK
open ↗Exploit-DB
MyBB ChangUonDyU Plugin 1.0.2 - Cross-Site Scripting
An issue was discovered in the ChangUonDyU Advanced Statistics plugin 1.0.2 for MyBB. changstats.php has XSS, as demonst
23RISK
open ↗Exploit-DB
DomainMod 4.09.03 - 'oid' Cross-Site Scripting
DomainMod v4.09.03 has XSS via the assets/edit/account-owner.php oid parameter.
23RISK
open ↗Exploit-DB
DomainMod 4.09.03 - 'sslpaid' Cross-Site Scripting
DomainMod v4.09.03 has XSS via the assets/edit/ssl-provider-account.php sslpaid parameter.
23RISK
open ↗Exploit-DB
wityCMS 0.6.1 - Cross-Site Scripting
Stored cross-site scripting (XSS) vulnerability in the "Website's name" field found in the "Settings" page under the "Ge
23RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.