Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
13,264 exploits
GitHub PoC
ryanhafid/PoC_CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware12 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC46
Advanced Exploitation Toolkit for Next.js Server Actions (CVE-2025-55182)
CVE-2025-55182CRITICALunder attackransomware12 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
CVE-2025-55182 の検証用
CVE-2025-55182CRITICALunder attackransomware12 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC5
WEB-CLI_RCE_React2Shell is an educational PoC exploit tool for CVE-2025-55182, a critical Prototype Pollution flaw in Next.js applications using React Server Components. Designed for CTFs and research, it features a single-command mode, an interactive web CLI, and reverse shell capabilities to demonstrate RCE.
CVE-2025-55182CRITICALunder attackransomware12 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
rahul-securify/React2Shell-CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware12 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It provides an interactive shell with advanced features for penetration testing, including file transfer, persistence, enumeration, privilege escalation checks, and more.
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
CVE-2025-55182 & CVE-2025-66478 proof of concepts
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
Burp Suite extension for identifying the React Server Components unsafe deserialization vulnerability (React2Shell / CVE-2025-55182). It provides a focused UI tab, context-menu actions, active-scanner integration, and optional Burp Collaborator confirmation.
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC3
A Chrome extension for detecting React2Shell vulnerabilities (CVE-2025-55182 & CVE-2025-66478) in web applications
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
CVE-2021-4045 CVE-2021-4045 is a Command Injection vulnerability that allows Remote Code Execution in the TP-Link Tapo c200 IP camera. It affects all firmware versions prior to 1.1.16 Build 211209 Rel. 37726N due to insufficient checks on user input in uhttpd, which is one of the main binaries of the device.
CVE-2021-4045CRITICAL11 Dec 2025
TP-LINK Tapo C200 remote code execution vulnerability
70RISK
open
GitHub PoC2
Nkwenti-Severian-Ndongtsop/POC_react2shell_CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC22
Detection template for CVE-2025-8110
CVE-2025-8110HIGHunder attack11 Dec 2025
File overwrite in file update API in Gogs
100RISK
open
GitHub PoC
Modified ruby script for RCE
CVE-2013-015611 Dec 2025
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19, 3.1.x before 3.1.10, an
60RISK
open
GitHub PoC1
CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
Exploitation of a Remote Code Execution vulnerability- (CVE-2024-7954)
CVE-2024-7954CRITICAL11 Dec 2025
SPIP porte_plume Plugin Arbitrary PHP Execution
85RISK
open
GitHub PoC1
Educational / research tool related to React / Next.js vulnerability CVE‑2025‑55182 (“React2Shell”).
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
min8282/CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC2
LC-pro/CVE-2025-55182-EXP
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Apache Tomcat AJP Ghostcat (CVE-2020-1938) exploit tool for file disclosure with multi-target scanning, custom wordlists, and upload point detection capabilities
CVE-2020-1938CRITICALunder attack11 Dec 2025
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomc
100RISK
open
GitHub PoC
React2Shell (CVE-2025-55182) scanner
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC3
Interactive visualization of the React2Shell (CVE-2025-55182) RCE vulnerability with narrated animations for three audiences: Expert, Practitioner, and Stakeholder. Audio synced via ElevenLabs + Whisper.
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
CVE-2025-23061 - Mongoose Command Injection
CVE-2025-23061CRITICAL11 Dec 2025
Mongoose before 8.9.5 can improperly use a nested $where filter with a populate() match, leading to search injection. NO
63RISK
open
GitHub PoC5
This tool is a Proof of Concept (PoC) intended for security research and educational purposes only. Using this tool on systems without explicit permission is illegal and punishable by law. The author (Tiger-Foxx) assumes no responsibility for misuse.
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
Intentionally vulnerable Next.js app for CVE-2025-55182 security research and CTF challenges
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Docker test environment for CVE-2025-34299 - Monsta FTP Pre-Auth RCE vulnerability
CVE-2025-34299CRITICAL11 Dec 2025
Monsta FTP <= 2.11 Unauthenticated Arbitrary File Upload
85RISK
open
GitHub PoC
exrienz/CVE-2025-55182-NextJS-Scanner-React2Shell-PoC
CVE-2025-55182CRITICALunder attackransomware11 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC1
Gymnott1/CVE-2025-55182
CVE-2025-55182CRITICALunder attackransomware10 Dec 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Vulnerable ThinkPHP 8.0.4 test environment for CVE-2024-44902 nuclei template validation
CVE-2024-44902CRITICAL10 Dec 2025
A deserialization vulnerability in Thinkphp v6.1.3 to v8.0.4 allows attackers to execute arbitrary code.
48RISK
open
GitHub PoC
Kubernetes Ingress-nginx RCE (IngressNightmare)
CVE-2025-1974CRITICAL10 Dec 2025
ingress-nginx admission controller RCE escalation
85RISK
open
GitHub PoC
Apache Tomcat Deserialization RCE
CVE-2025-24813CRITICALunder attack10 Dec 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.