Explotación pública
Catálogo de exploits
Todo exploit público que catalogamos, en un solo índice. Busca por CVE, nombre del exploit o tecnología — y mira, al lado, lo que la falla realmente vale: severidad, probabilidad de explotación y si ya está bajo ataque.
78.331exploits catalogados
36.057CVEs con explotación pública
24.695probados en laboratorio
TodosExploit-DB 24.458Referência 22.721GitHub PoC 14.484VulnCheck XDB 8829Nuclei 4350Metasploit 3489✓ solo verificadosrecientespopularesriesgo
14.316 exploits
GitHub PoC★ 1
CVE-2026-72898-Metabase-SQLi-Fix
Metabase SQL injection via password reset endpoint
98RIESGO
abrir ↗GitHub PoC★ 2
CVE-2026-72898 PoC : Metabase Unauthenticated SQL Injection
Metabase SQL injection via password reset endpoint
98RIESGO
abrir ↗GitHub PoC
CVE-2026-58231 Detection & Confirmation Script
Improper Authorization in SAP Commerce Cloud (Data Hub Adapter)
48RIESGO
abrir ↗GitHub PoC★ 1
This repository contains a conceptual patch demonstrating the mitigation for CVE-2026-68820, a critical Use-After-Free (UAF) vulnerability in the Windows Ancillary Function Driver for WinSock (`afd.sys`).
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
71RIESGO
abrir ↗GitHub PoC★ 3
One-command Docker lab reproducing CVE-2026-71362 (Adobe Commerce / Magento Open Source customer-session identity-switch account takeover, APSB26-92, CVSS 9.1) with a PoC and an A/B/A official-patch negative control. For authorized security research and education.
Adobe Commerce | Incorrect Authorization (CWE-863)
63RIESGO
abrir ↗GitHub PoC
ghostpels/CVE-2026-13610
KiviCare < 4.5.2 - Unauthenticated Privilege Escalation via Registration
41RIESGO
abrir ↗GitHub PoC★ 2
PoC for CVE-2026-72898
Metabase SQL injection via password reset endpoint
98RIESGO
abrir ↗GitHub PoC
S2-072(CVE-2026-73633)poc
Apache Struts: Unbounded read of a JSON request body
41RIESGO
abrir ↗GitHub PoC
Hunt-Benito/bring-your-own-key-cve-2026-73678-unauthenticated-rce-in-mindsdb-cowork
MindsDB Minds Platform v26.1.0 Unauthenticated RCE via scratchpad exec()
48RIESGO
abrir ↗GitHub PoC
This is my simple implementation of an exploit for the PwnKit vulnerability.
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RIESGO
abrir ↗GitHub PoC
CVE-2026-54433 Roundcube plain-text email stored XSS PoC
In Roundcube Webmail before 1.6.17 and 1.7.x before 1.7.2, there is Stored Cross-Site Scripting (XSS) via a crafted plai
41RIESGO
abrir ↗GitHub PoC
CVE-2026-72550 — Friendica Unauthenticated Stacked-Query SQL Injection PoC (CVSS 9.8 Critical)
Friendica Friendica - SQL Injection
48RIESGO
abrir ↗GitHub PoC
jeffmarlonmandela/CVE-2021-4034-PwnKit
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RIESGO
abrir ↗GitHub PoC
CS50's Introduction to Cybersecurity final project on React2Shell (CVE-2025-55182)
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RIESGO
abrir ↗GitHub PoC★ 5
KSuRoot 2.2.0 — One-click KernelSU rooting based on CVE-2026-43499. Synced from Root-My-Galaxy v0.2.6 with custom payload (.so) import. Mod by hmascs
rtmutex: Use waiter::task instead of current in remove_waiter()
41RIESGO
abrir ↗GitHub PoC★ 1
This package is not a complete root. It flips SELinux to Permissive and holds reclaim long enough for follow-on work. Host `uid=0` is not achieved here.
rtmutex: Use waiter::task instead of current in remove_waiter()
41RIESGO
abrir ↗GitHub PoC
Kentox493/CVE-2026-46300_Fragnesia
net: skbuff: preserve shared-frag marker during coalescing
56RIESGO
abrir ↗GitHub PoC
KovachVL/CVE-2026-54356
Budibase authenticated arbitrary S3 signed upload URL issuance via `/api/attachments/:datasourceId/url`
41RIESGO
abrir ↗GitHub PoC
PoC funcional de CVE-2026-52715 (GeoLeak): SQLi no autenticada en GEO my WordPress <= 4.5.5 via swlatlng/nelatlng. Laboratorio Docker + exploit time-based/boolean-based + exfiltracion sin comas en payload.
WordPress GEO my WordPress plugin <= 4.5.5 - SQL Injection vulnerability
48RIESGO
abrir ↗GitHub PoC★ 58
CVE-2026-8452 PreAuth RCE
Memory overflow vulnerability leading to unpredictable or erroneous behavior and Denial of Service
41RIESGO
abrir ↗GitHub PoC
CVE-2021-41773 Exploit Lab
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RIESGO
abrir ↗GitHub PoC
Mohaimenul370/Perform-an-RDP-exploitation-using-the-BlueKeep-vulnerability-CVE-2019-0708-on-Windows
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unau
100RIESGO
abrir ↗GitHub PoC
Hunt-Benito/the-sanitizer-is-the-weapon-cve-2026-68749-cve-2026-68750-quadratic-dos-in-elixir-html-sanitize-ex
Quadratic regex backtracking in the html_sanitize_ex CSS scrubber allows CPU-exhaustion denial of service
41RIESGO
abrir ↗GitHub PoC
pimpamebanihah/cve-2026-43499-app.so
rtmutex: Use waiter::task instead of current in remove_waiter()
41RIESGO
abrir ↗GitHub PoC★ 1
GoDAM WordPress plugin <= 1.12.2 unauthenticated file upload RCE (CVE-2026-14282)
GoDAM <= 1.12.2 - Unauthenticated Arbitrary File Upload via WPForms File Upload Field
48RIESGO
abrir ↗GitHub PoC
针对CVE-2026-41940漏洞的临时缓解措施
WebPros cPanel and WHM Authentication Bypass via Login Flow
100RIESGO
abrir ↗GitHub PoC
nullwhisper/CVE-2026-14840
YOP Poll < 7.0.6 - Unauthenticated Vote Restriction Bypass via IP Header Spoofing
33RIESGO
abrir ↗GitHub PoC★ 24
CVE-2026-66804 Windows Cross Device virtual camera EoP - Standard user to SYSTEM
Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
41RIESGO
abrir ↗Indexamos solo el enlace público a la prueba de concepto — nunca alojamos ni redistribuimos código de explotación. Fuentes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit y VulnCheck XDB. La existencia de PoC pública no significa que la falla sea explotable en tu entorno.