Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

81.270exploits catalogados
37.818CVEs com exploração pública
24.695testados em laboratório
81.003 exploits
GitHub PoC★ 1
🔓 Next.js Auth Bypass Demo - Educational application demonstrating CVE-2025-29927 middleware authentication bypass vulnerability . ⚠️ For educational use only.[Made using Ai]
CVE-2025-29927CRITICAL06 jul 2025
Authorization Bypass in Next.js Middleware
85RISCO
abrir ↗
GitHub PoC
hklabCR/CVE-2011-2523
CVE-2011-2523—06 jul 2025
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISCO
abrir ↗
GitHub PoC★ 5
Proof of Concept for CVE-2025-32463 Local privilege escalation exploit targeting sudo -R on vulnerable Linux systems. For educational and authorized security testing only.
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir ↗
VulnCheck XDB
initial-access
CVE-2025-20281CRITICALsob ataque06 jul 2025
Cisco ISE API Unauthenticated Remote Code Execution Vulnerability
100RISCO
abrir ↗
VulnCheck XDB
remote-with-credentials
CVE-2024-55963MEDIUM06 jul 2025
An issue was discovered in Appsmith before 1.51. A user on Appsmith that doesn't have admin permissions can trigger the
45RISCO
abrir ↗
GitHub PoC★ 3
ibrahmsql/CVE-2023-45131
CVE-2023-45131HIGH06 jul 2025
Unauthenticated access to new private chat messages in Discourse
41RISCO
abrir ↗
VulnCheck XDB
local
CVE-2022-37969HIGHsob ataqueransomware06 jul 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISCO
abrir ↗
GitHub PoC★ 9
A PoC exploit for CVE-2025-32463 - Sudo Privilege Escalation
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware06 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
GitHub PoC★ 1
Chocapikk/CVE-2025-32463-lab
CVE-2025-32463CRITICALsob ataque06 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir ↗
GitHub PoC★ 214
PoC & Exploit for CVE-2025-32023 / PlaidCTF 2025 "Zerodeo"
CVE-2025-32023HIGH06 jul 2025
Redis allows out of bounds writes in hyperloglog commands leading to RCE
41RISCO
abrir ↗
GitHub PoC★ 1
r0otk3r/CVE-2025-3248
CVE-2025-3248CRITICALsob ataqueransomware06 jul 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISCO
abrir ↗
GitHub PoC
r0otk3r/CVE-2021-41773
CVE-2021-41773HIGHsob ataqueransomware05 jul 2025
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
GitHub PoC
CVE-2025-32463
CVE-2025-32463CRITICALsob ataque05 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir ↗
GitHub PoC
Royall-Researchers/CVE-2024-9264
CVE-2024-9264CRITICAL05 jul 2025
Grafana SQL Expressions allow for remote code execution
85RISCO
abrir ↗
GitHub PoC
Grafana RCE
CVE-2024-9264CRITICAL05 jul 2025
Grafana SQL Expressions allow for remote code execution
85RISCO
abrir ↗
GitHub PoC
Royall-Researchers/CVE-2025-24071
CVE-2025-24071MEDIUM05 jul 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
GitHub PoC★ 3
Memory disclosure vulnerability in Citrix NetScaler ADC and Gateway when configured as a Gateway (VPN virtual server, ICA proxy, CVPN, RDP Proxy).
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
GitHub PoC
Papercut Vulnerability, Affected Versions are PaperCut MF or NG version 8.0 or later (excluding patched versions) on all OS platforms.
CVE-2023-27350CRITICALsob ataqueransomware05 jul 2025
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RISCO
abrir ↗
VulnCheck XDB
client-side
CVE-2025-24071MEDIUM05 jul 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISCO
abrir ↗
VulnCheck XDB
client-side
CVE-2025-6554HIGHsob ataque05 jul 2025
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v
76RISCO
abrir ↗
VulnCheck XDB
client-side
CVE-2025-6554HIGHsob ataque05 jul 2025
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v
76RISCO
abrir ↗
VulnCheck XDB
infoleak
CVE-2025-49493MEDIUM05 jul 2025
Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via XML External Entity (XXE) injection.
48RISCO
abrir ↗
VulnCheck XDB
local
CVE-2025-32463CRITICALsob ataque05 jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISCO
abrir ↗
GitHub PoC
CitrixBleed2 poc
CVE-2025-5777CRITICALsob ataqueransomware05 jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISCO
abrir ↗
GitHub PoC★ 2
ibrahmsql/discourse-CVE-2021-41163
CVE-2021-41163CRITICAL05 jul 2025
RCE via malicious SNS subscription payload
53RISCO
abrir ↗
GitHub PoC
gmh5225/CVE-2025-6554
CVE-2025-6554HIGHsob ataque05 jul 2025
Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary read/write v
76RISCO
abrir ↗
← anteriorpágina 308 / 2.701próximo →

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.