Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

80,095cataloged exploits
36,945CVEs with public exploitation
24,695lab-tested
80,095 exploits
GitHub PoC
PoC educacional do CVE-2021-4034, o PwnKit, LPE via pkexec do polkit. Uso autorizado apenas.
CVE-2021-4034HIGHunder attackransomware13 Jun 2026
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC3
HTTP/2 Bomb (CVE-2026-49975) non-destructive vulnerability detector for Nginx / Apache httpd. Zero-dependency Python.
CVE-2026-49975HIGH13 Jun 2026
Apache HTTP Server: mod_http2 denial of service
53RISK
open
VulnCheck XDB
initial-access
CVE-2025-55182CRITICALunder attackransomware13 Jun 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
VulnCheck XDB
client-side
CVE-2021-22204MEDIUMunder attack13 Jun 2026
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code exec
100RISK
open
GitHub PoC
AISec Plus Week 1 threat write-up — EchoLeak (CVE-2025-32711), zero-click indirect prompt injection in Microsoft 365 Copilot.
CVE-2025-32711CRITICAL13 Jun 2026
M365 Copilot Information Disclosure Vulnerability
48RISK
open
GitHub PoC
CVE-2025-55182 exploit script
CVE-2025-55182CRITICALunder attackransomware13 Jun 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
JupyterHub XSRF bypass via cross-origin form POST (Sec-Fetch-Mode: no-cors) — CWE-352
CVE-2026-40864MEDIUM13 Jun 2026
JupyterHub: Cross-origin form POSTs bypass XSRF
33RISK
open
VulnCheck XDB
denial-of-service
CVE-2026-42647CRITICAL13 Jun 2026
WordPress JoomSport plugin <= 5.7.7 - SQL Injection vulnerability
63RISK
open
VulnCheck XDB
initial-access
CVE-2026-48907CRITICALunder attack13 Jun 2026
Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5
100RISK
open
GitHub PoC
Remote Code Execution in DbGate via functionName injection in the loadReader endpoint — CVSS 8.8
CVE-2026-48017HIGH13 Jun 2026
DbGate: Remote Code Execution via functionName injection in loadReader endpoint
41RISK
open
GitHub PoC
Some labs looking at the xz backdoor vulnerability (CVE-2024-3094)
CVE-2024-3094CRITICAL13 Jun 2026
Xz: malicious code in distributed source
70RISK
open
VulnCheck XDB
initial-access
CVE-2026-48611CRITICAL13 Jun 2026
Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or
63RISK
open
GitHub PoC1
HTTP/2 Bomb: HPACK indexed-reference amplification + flow-control stall. A high school student's full protocol analysis (LaTeX). CVE-2026-49975, CVE-2026-47774.
CVE-2026-49975HIGH13 Jun 2026
Apache HTTP Server: mod_http2 denial of service
53RISK
open
GitHub PoC12
CVE-2026-25243 — Redis RESTORE zipmap double-free → remote code execution (ASLR on).
CVE-2026-25243HIGH13 Jun 2026
redis-server RESTORE invalid memory access may allow remote code execution
41RISK
open
GitHub PoC1
Hunt-Benito/glinet-beryl-ax-triple-rce-cve-2026-11450-11451-11452-unauthenticated-root-on-travel-router
CVE-2026-11450MEDIUM13 Jun 2026
GL.iNet GL-MT3000 Path Normalization dlopen command injection
33RISK
open
GitHub PoC2
razureink/cve-2026-49975-http2bomb_reproduction
CVE-2026-49975HIGH13 Jun 2026
Apache HTTP Server: mod_http2 denial of service
53RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware13 Jun 2026
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
87achrafg-stack/CVE-2026-48907
CVE-2026-48907CRITICALunder attack13 Jun 2026
Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5
100RISK
open
GitHub PoC
CVE-2018-9276 — PRTG Network Monitor < 18.2.39 Authenticated RCE. For educational purposes and authorized penetration testing only.
CVE-2018-9276HIGHunder attack13 Jun 2026
An issue was discovered in PRTG Network Monitor before 18.2.39. An attacker who has access to the PRTG System Administra
100RISK
open
GitHub PoC
ExifTool RCE exploit (CVE-2021-22204) - improved version, no exiftool dependency
CVE-2021-22204MEDIUMunder attack13 Jun 2026
Improper neutralization of user data in the DjVu file format in ExifTool versions 7.44 and up allows arbitrary code exec
100RISK
open
GitHub PoC
SQL Injection in Dagster database I/O managers via dynamic partition keys (DuckDB/Snowflake/BigQuery/DeltaLake) — High
CVE-2026-41490HIGH13 Jun 2026
Dagster Vulnerable to SQL Injection via Dynamic Partition Keys in Database I/O Manager Integrations
41RISK
open
GitHub PoC3
CVE-2026-48907
CVE-2026-48907CRITICALunder attack12 Jun 2026
Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5
100RISK
open
GitHub PoC3
CVE-2026-25089
CVE-2026-25089CRITICALunder attack12 Jun 2026
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet F
100RISK
open
GitHub PoC1
FOSSBilling CVE-2026-53647 & CVE-2026-53646 PoC — Unauthenticated API key disclosure & password reset token reuse
CVE-2026-53647MEDIUM12 Jun 2026
FOSSBilling vulnerable to unauthenticated API key configuration disclosure via guest Serviceapikey get_info endpoint
33RISK
open
GitHub PoC1
Safely detect whether a SolarWinds Serv-U host is vulnerable to CVE-2026-28318
CVE-2026-28318HIGHunder attack12 Jun 2026
SolarWinds Serv-U Unauthenticated Denial of Service Vulnerability
83RISK
open
GitHub PoC
rootdirective-sec/CVE-2026-46645-Analysis-Lab
CVE-2026-46645MEDIUM12 Jun 2026
SQLAdmin: Authorization Bypass on `ajax_lookup`
33RISK
open
GitHub PoC13
watchtowrlabs/watchTowr-vs-Splunk-CVE-2026-20253
CVE-2026-20253CRITICALunder attack12 Jun 2026
Unauthenticated Arbitrary File Creation and Truncation in a PostgreSQL Sidecar Service Endpoint in Splunk Enterprise
100RISK
open
GitHub PoC
Cisco Unified Communications Manager (Unified CM) deployments affected by CVE-2026-20230.
CVE-2026-20230HIGH12 Jun 2026
Cisco Unified Communications Manager Server-Side Request Forgery Vulnerability
63RISK
open
GitHub PoC
cardosource/cve-2026-3180
CVE-2026-3180HIGH12 Jun 2026
Contest Gallery <= 28.1.4 - Unauthenticated SQL Injection
41RISK
open
GitHub PoC
Chains CVE-2025-57819 (stacked query SQL injection) and CVE-2025-61678 (authenticated file upload in FreePBX Endpoint Manager) to achieve Remote Code Execution (RCE). For educational use only.
CVE-2025-57819CRITICALunder attack12 Jun 2026
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
previouspage 96 / 2,670next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.