Explotación pública

Catálogo de exploits

Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.

79.980exploits catalogados
36.899CVEs con explotación pública
24.695probados en laboratorio
79.900 exploits
GitHub PoC
George0Papasotiriou/CVE-2026-11107-Insecure-Direct-Object-Reference-with-Predictable-UUIDv1
CVE-2026-11107MEDIUM04 ago 2026
Inappropriate implementation in Downloads in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to perform U
33RIESGO
abrir
GitHub PoC1
showmeyourhands/CVE-2026-52102-PoC
CVE-2026-52102CRITICAL04 ago 2026
An OS command injection vulnerability in the openmediavault-md plugin of OpenMediaVault v8.0.4-1 allows attackers to exe
48RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-21016-Malicious-PyPI-Package-Install-Hook-setup.py-Execution-
CVE-2026-21016MEDIUM04 ago 2026
Incorrect privilege assignment in LocationManager prior to SMR May-2026 Release 1 allows local attackers to access sensi
33RIESGO
abrir
GitHub PoC1
CVE-2026-66066 — KindaRails2Shell: Rails Active Storage/libvips Arbitrary File Read → RCE. MATLAB/HDF5 dual-identity file → SECRET_KEY_BASE theft → forged variation. CVSS 9.5 | Rails < 8.1.3.1
CVE-2026-66066CRITICAL04 ago 2026
Action Pack: Possible arbitrary file read and remote code execution in Active Storage variant processing
68RIESGO
abrir
GitHub PoC
0xdak/CVE-2026-52680_exploit
CVE-2026-52680CRITICAL04 ago 2026
Apache Kyuubi: REST batch multipart upload path traversal allows controlled file write
48RIESGO
abrir
GitHub PoC
Safe PowerShell validator for PHP CVE-2026-17543 exposure via HTTP headers and non-destructive login-form probes.
CVE-2026-17543HIGH04 ago 2026
SQL injection in ext-pgsql via E'...' backslash breakout
41RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-21015-PHP-Filter-Chain-Arbitrary-File-Read
CVE-2026-21015MEDIUM04 ago 2026
Incorrect default permissions in FactoryCamera prior to SMR May-2026 Release 1 allows local attacker to access unique id
33RIESGO
abrir
GitHub PoC1
Gitea diffpatch RCE (CVE-2026-60004) PoC - repo-write to RCE as Gitea service account
CVE-2026-60004CRITICALbajo ataque04 ago 2026
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
100RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-11114-Node.js-vm-Sandbox-Escape-via-Proxy
CVE-2026-11114CRITICAL04 ago 2026
Use after free in Device Trust in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who had compromi
48RIESGO
abrir
GitHub PoC
CVE-2026-60004 — Gitea <= 1.27.0 Pre-Auth RCE
CVE-2026-60004CRITICALbajo ataque04 ago 2026
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
100RIESGO
abrir
GitHub PoC
Shams-Ul-Mehmood/CVE-2021-41773-Exploit
CVE-2021-41773HIGHbajo ataqueransomware04 ago 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RIESGO
abrir
GitHub PoC1
JVBotelho/cve-2026-69243-poc-aiohttp-smuggling
CVE-2026-69243MEDIUM04 ago 2026
AIOHTTP: HTTP request smuggling via WebSocket upgrade
33RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-11117-WPA2-4-Way-Handshake-Reinstallation-KRACK-Sim-
CVE-2026-11117HIGH04 ago 2026
Use after free in Views in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrar
41RIESGO
abrir
GitHub PoC
CVE-2026-45033 PoC for Claude Code, not Github Copilot. Worked for Haiku 4.5.
CVE-2026-45033HIGH04 ago 2026
GitHub Copilot CLI: Nested Bare Repository Can Execute Arbitrary Commands via core.fsmonitor
41RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-11119-Padding-Oracle-Attack-on-CBC-Mode-Encryption
CVE-2026-11119CRITICAL04 ago 2026
Inappropriate implementation in GPU in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had
48RIESGO
abrir
GitHub PoC
🚨 Threat intel & incident response research on SharePoint "ToolShell" RCE zero-day (CVE-2025-53770). 🕵️‍♂️ Covers root-cause deserialization flaws, attack timelines, risk metrics, and defensive EDR validation playbooks. 🛡️
CVE-2025-53770CRITICALbajo ataqueransomware04 ago 2026
Microsoft SharePoint Server Remote Code Execution Vulnerability
100RIESGO
abrir
GitHub PoC5
WordPress All-in-One Exploit Framework — detector, scanner, enumerator, exploit, escalation. 10 CVEs from the 2026-08 wave incl. CVE-2026-63030 (wp2shell).
CVE-2026-63030CRITICALbajo ataque04 ago 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RIESGO
abrir
GitHub PoC2
CVE-2026-63223 — CI4RCE: CodeIgniter 4 is_image/mime_in File Upload RCE. Magic bytes bypass (getExtension vs getClientExtension). CVSS 9.8 | CWE-434 | CI4 < 4.7.4
CVE-2026-63223CRITICAL04 ago 2026
CodeIgniter: Uploaded file extension validation bypass in is_image and mime_in rules
48RIESGO
abrir
GitHub PoC1
Apache HTTP Server 2.4.x mod_lua Buffer Overflow (CVE-2021-44790) - Advanced exploitation framework with fingerprinting, multi-stage scanning, plugin architecture, professional reporting, screenshot capture, SQLite database, and 95%+ confidence detection. Author: Sudeepa Wanigarathna.
CVE-2021-4479004 ago 2026
Possible buffer overflow when parsing multipart content in mod_lua of Apache HTTP Server 2.4.51 and earlier
45RIESGO
abrir
GitHub PoC
x-znn/CVE-2026-63030
CVE-2026-63030CRITICALbajo ataque04 ago 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-11115-Database-Connection-String-Injection-via-Env-Variable
CVE-2026-11115HIGH04 ago 2026
Use after free in Updater in Google Chrome on Windows prior to 149.0.7827.53 allowed a local attacker to perform OS-leve
41RIESGO
abrir
GitHub PoC1
pgAdmin 4 Import/Export RCE (CVE-2026-17566) PoC - TO PROGRAM injection via backslash-escape mismatch
CVE-2026-17566CRITICAL04 ago 2026
pgAdmin 4: RCE via backslash-escape mismatch in Import/Export Data query guard (incomplete defense, sibling gap to CVE-2025-13780)
48RIESGO
abrir
GitHub PoC
0xdak/CVE-2026-14483_exploit
CVE-2026-14483CRITICAL04 ago 2026
Realtyna Organic IDX plugin + WPL Real Estate <= 5.2.0 - Unauthenticated Arbitrary File Upload via 'files[file]' Parameter via Public I/O 'set_property' Command
63RIESGO
abrir
GitHub PoC
CVE-2026-18577 - Draft
CVE-2026-18577HIGHbajo ataque04 ago 2026
Incomplete patch leads to administrative account takeover
98RIESGO
abrir
GitHub PoC
George0Papasotiriou/CVE-2026-9997-VPN-Split-Tunneling-Bypass-via-DHCP-Option-Injection
CVE-2026-9997HIGH03 ago 2026
Use after free in Input in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the rende
41RIESGO
abrir
GitHub PoC3
CVE-2026-63223 PoC — CodeIgniter 4 is_image/mime_in File Upload RCE (CVSS 9.8). Unauthenticated remote code execution via unrestricted file upload bypass using image magic bytes. Fixed in v4.7.4.
CVE-2026-63223CRITICAL03 ago 2026
CodeIgniter: Uploaded file extension validation bypass in is_image and mime_in rules
48RIESGO
abrir
GitHub PoC1
Bu laboratuvar ortamını sıfırdan kendim oluşturdum. Next.js uygulaması içerisinde giriş, ana sayfa ve admin sayfalarını hazırladım. Middleware ile yetkilendirme mekanizmasını kurduktan sonra Burp Suite kullanarak CVE-2025-29927 zafiyetini kontrollü ortamda gösterdim.
CVE-2025-29927CRITICAL03 ago 2026
Authorization Bypass in Next.js Middleware
85RIESGO
abrir
GitHub PoC2
CVE-2026-66066 (KindaRails2Shell) PoC - Rails Active Storage/libvips arbitrary file read to RCE; for authorized security testing
CVE-2026-66066CRITICAL03 ago 2026
Action Pack: Possible arbitrary file read and remote code execution in Active Storage variant processing
68RIESGO
abrir
VulnCheck XDB
info-leak
CVE-2017-7921CRITICALbajo ataque03 ago 2026
An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 16
100RIESGO
abrir
VulnCheck XDB
info-leak
CVE-2018-999503 ago 2026
TBK DVR4104 and DVR4216 devices, as well as Novo, CeNova, QSee, Pulnix, XVR 5 in 1, Securus, Night OWL, DVR Login, HVR L
60RIESGO
abrir
anteriorpágina 36 / 2664siguiente

Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.