Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

79.386exploits catalogados
36.533CVEs com exploração pública
24.695testados em laboratório
14.991 exploits
GitHub PoC
my exploit for GLPI
CVE-2022-35914CRITICALsob ataque21 jul 2026
/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection.
100RISCO
abrir
GitHub PoC
danielissaq/-PaperCut-CVE-2023-27350-
CVE-2023-27350CRITICALsob ataqueransomware21 jul 2026
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RISCO
abrir
GitHub PoC1
Hashes and shim versions for the UEFI Secure Boot shims affected by CVE-2026-8863
CVE-2026-8863HIGH21 jul 2026
CVE-2026-8863
41RISCO
abrir
GitHub PoC
WhatsWrongAndWhy/CVE-2021-22555
CVE-2021-22555HIGHsob ataque21 jul 2026
Heap Out-Of-Bounds Write in Netfilter IP6T_SO_SET_REPLACE
100RISCO
abrir
GitHub PoC3
CVE-2026-6875 ServiceNow Pre-Auth RCE Framework 🔥 JS Injection → Sandbox Escape → RCE → Root. Features: --detect, --exec, reverse/interactive shell, batch threading, WAF bypass, persistence, lateral movement, credential dump, fileless exec, clean tracks. 🛡️ CVSS 9.5 actively exploited. Authorized & Legal use only. Stay Legal. 🔒
CVE-2026-6875CRITICAL21 jul 2026
Sandbox Escape in ServiceNow AI Platform
85RISCO
abrir
GitHub PoC1
PoC for CVE-2026-57588 - SQL injection in Nessus 10.12.0 XML import. Generates malicious .nessus files to enumerate databases, exfiltrate credentials, and test time-based blind injection. For authorized security research. Author: Sudeepa Wanigarathna. Patched in 10.12.1.
CVE-2026-57588LOW21 jul 2026
SQL Injection in Nessus via Malicious Scan Result File Import
28RISCO
abrir
GitHub PoC1
CVE-2026-52813 (Gogs Path Traversal → Git Hooks RCE) defensive writeup: root-cause & patch analysis, Sigma/SIEM detection rules, IOCs, non-intrusive version scanner. No weaponized PoC.
CVE-2026-52813CRITICAL21 jul 2026
Gogs: Path Traversal in organization name results in RCE through Git hooks
48RISCO
abrir
GitHub PoC
WhatsWrongAndWhy/CVE-2017-7308
CVE-2017-730821 jul 2026
The packet_set_ring function in net/packet/af_packet.c in the Linux kernel through 4.10.6 does not properly validate cer
43RISCO
abrir
GitHub PoC
WhatsWrongAndWhy/CVE-2017-16995
CVE-2017-1699521 jul 2026
The check_alu_op function in kernel/bpf/verifier.c in the Linux kernel through 4.4 allows local users to cause a denial
50RISCO
abrir
GitHub PoC
mass_cve-2021-41773
CVE-2021-41773HIGHsob ataqueransomware21 jul 2026
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISCO
abrir
GitHub PoC1
gigachadusers/CVE-2026-20169
CVE-2026-20169MEDIUM21 jul 2026
Cisco IoT Field Network Director Command Injection Vulnerability
33RISCO
abrir
GitHub PoC27
Technical analysis and Proof-of-Concept (PoC) for CVE-2026-41089, a critical unauthenticated Remote Code Execution (RCE) vulnerability in the Windows Netlogon service affecting Domain Controllers.
CVE-2026-41089CRITICAL21 jul 2026
Windows Netlogon Remote Code Execution Vulnerability
70RISCO
abrir
GitHub PoC
Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.
CVE-2026-45585MEDIUM21 jul 2026
Windows BitLocker Security Feature Bypass Vulnerability
33RISCO
abrir
GitHub PoC
OnePlus Ace 3 preload.so for CVE-2026-43499 (GhostLock)
CVE-2026-43499HIGH21 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC4
Use CVE-2026-43499 on Redmi Turbo 5 to escalate privilege
CVE-2026-43499HIGH21 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC1
PoC toolkit for exploiting Cisco IMC RCE CVE-2026-20200
CVE-2026-20200HIGH21 jul 2026
Cisco Integrated Management Controller Argument Injection and Remote Code Execution Vulnerability
41RISCO
abrir
GitHub PoC
CVE-2026-43499
CVE-2026-43499HIGH21 jul 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISCO
abrir
GitHub PoC6
jaf0rk/CVE-2026-9973-exploit
CVE-2026-9973HIGH21 jul 2026
Out of bounds write in V8 in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code i
41RISCO
abrir
GitHub PoC
Mirrored from tegal1337/CVE-2022-0441
CVE-2022-044121 jul 2026
MasterStudy LMS < 2.7.6 - Unauthenticated Admin Account Creation
60RISCO
abrir
GitHub PoC11
CVE-2026-52910 kernel crash PoC. screen goes off.
CVE-2026-52910HIGH21 jul 2026
bpf: Free reuseport cBPF prog after RCU grace period.
41RISCO
abrir
GitHub PoC3
Analysis and end-to-end implementation of the patched wordpress RCE vulnerability - CVE-2026-60137 and CVE-2026-63030
CVE-2026-60137MEDIUMsob ataque21 jul 2026
WordPress < 7.0.2 - Facilitated SQL Injection via author__not_in in WP_Query
100RISCO
abrir
GitHub PoC
PoC detector & safe validator for the WP2Shell WordPress vulnerability chain: CVE-2026-63030 (REST batch-route confusion) + CVE-2026-60137 (author__not_in SQL injection). For authorized security testing only.
CVE-2026-63030CRITICALsob ataque21 jul 2026
WordPress < 7.0.2 - REST API batch-route confusion and SQL injection issue leading to Remote Code Execution
100RISCO
abrir
GitHub PoC
CVE-2026-60137Temporary Emergency Mitigation for CVE-2026-60137 & CVE-2026-63030 (wp2shell)
CVE-2026-60137MEDIUMsob ataque21 jul 2026
WordPress < 7.0.2 - Facilitated SQL Injection via author__not_in in WP_Query
100RISCO
abrir
GitHub PoC
CVE-2026-13233 (Drupal OpenAI Provider, SA-CONTRIB-2026-053): response-URL SSRF / local file read. Untrusted upstream, not the prompt. Safe reproducer + detections. Fixed in 1.1.1/1.2.2.
CVE-2026-13233LOW21 jul 2026
OpenAI Provider - Moderately critical - Server-side Request Forgery - SA-CONTRIB-2026-053
28RISCO
abrir
GitHub PoC
WhatsWrongAndWhy/CVE-2018-18955
CVE-2018-1895521 jul 2026
In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalat
38RISCO
abrir
GitHub PoC
Tracking the nginx CVE-2026-42533 map/regex capture-clobbering heap overflow
CVE-2026-42533CRITICAL21 jul 2026
NGINX Map directive and Regex matching vulnerability
48RISCO
abrir
GitHub PoC1
CVE-2026-6875
CVE-2026-6875CRITICAL21 jul 2026
Sandbox Escape in ServiceNow AI Platform
85RISCO
abrir
GitHub PoC1
PoC reproducer for CVE-2026-53913 (Apache Camel camel-keycloak): KeycloakSecurityPolicy fails open in the Basic Setup — with no required roles/permissions the token is never verified, so any forged/garbage bearer token bypasses authentication (unauthenticated RCE). Fixed in 4.18.3/4.21.0.
CVE-2026-53913CRITICAL21 jul 2026
Apache Camel Keycloak: KeycloakSecurityPolicy verifies the bearer access token only inside its role and permission checks, so in the default configuration the token is never verified and any non-null bearer value is accepted
48RISCO
abrir
GitHub PoC
PoC reproducer for CVE-2026-49099 (Apache Camel camel-salesforce): the non-Camel-prefixed sObjectQuery header escapes the HTTP header filter and overrides the producer's configured SOQL (SOQL injection / broken access control). Fixed in 4.14.8/4.18.3/4.21.0.
CVE-2026-49099MEDIUM21 jul 2026
Apache Camel Salesforce: Non-Camel-prefixed Exchange header constants bypass the HTTP header filter, allowing an HTTP client to influence internal behaviour
33RISCO
abrir
GitHub PoC
WhatsWrongAndWhy/CVE-2018-5333
CVE-2018-533321 jul 2026
In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning
38RISCO
abrir
anteriorpágina 32 / 500próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.