Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.836exploits catalogados
32.133CVEs com exploração pública
1.932testados em laboratório
13.264 exploits
GitHub PoC4
Lightweight scanner and Nuclei templates for identifying React and Next.js deserialization RCEs (CVE-2025-55182 / CVE-2025-66478).
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
alexandre-briongos-wavestone/react-cve-2025-55182-lab
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC3
This repository documents research into deserialization behavior within Next.js React Server Components (RSC) using the Flight protocol. It focuses on how malformed multipart bodies combined with Server Action request handling can lead to prototype traversal and execution primitives on certain builds.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
imbas007/POC-CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
React2Shell | CVE-2025-55182 - React Server Components RCE
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC7
PoC: CVE-2025-55182 (React) and CVE-2025-66478 (Next.js)
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
prestonhashworth/cve-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
POC for CVE-2025-55182 React2Shell
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Host-based detection rules for the RCE vulnerability in the React JavaScript framework.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC7
CVE-2025-55182复现环境及RCE回显poc
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
nmap nse for detecting React2Shell (CVE-2025-55182)
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
Proof-of-Concept RCE pour CVE‑2025‑55182 exploitant le protocole React Flight sur Next.js App Router.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
React2Shell (CVE-2025-55182) – An intentionally vulnerable Next.js application created for educational and research purposes.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC26
使用burp自动检测CVE-2025-55182 Next.js RCE 漏洞
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
Proof of Concept for React2Shell vulnerability
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
PoC for React2Shell (CVE-2025-55182)
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Show case CVE-2025-55182 POC in Typrescript/Javascript
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
A web-based vulnerability scanner for CVE-2025-55182, a critical Remote Code Execution (RCE) vulnerability in React Server Components.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Hands-on lab for exploiting and understanding Log4Shell (CVE-2021-44228) using Docker, Kali Linux, Burp Suite and log4j-shell-poc. For teaching and defensive training in controlled lab environments only.
CVE-2021-44228CRITICALsob ataqueransomware05 dez 2025
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISCO
abrir
GitHub PoC
CVE-2025-55182 Interactive PoC - React Server Components RCE - Educational Security Research
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
GarethMSheldon/React2Shell-CVE-2025-55182-Detector
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC2
kindone09/CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC7
CVE-2025-55182 React2Shell PoC lab
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC7
React2Shell vulnerability (CVE-2025-55182 / CVE-2025-66478)
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC12
This repository contains a POC of CVE-2025-55182, a critical (CVSS score 10.0) pre-authentication remote code execution vulnerability affecting React Server Components, also known as React2Shell.
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC6
Header bypass for CVE-2025-55182 (React Server Components RCE).
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC8
StealthMoud/CVE-2025-55182-Scanner
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC4
React2Shell (CVE-2025-55182) Exploit
CVE-2025-55182CRITICALsob ataqueransomware05 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Webmin CGI Command Injection Remote Code Execution Vulnerability
CVE-2024-12828CRITICAL05 dez 2025
Webmin CGI Command Injection Remote Code Execution Vulnerability
60RISCO
abrir
anteriorpágina 102 / 443próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.