Exploração pública

Catálogo de exploits

Todo exploit público que catalogamos, num índice só. Busque por CVE, nome do exploit ou tecnologia — e veja, ao lado, o que a falha realmente vale: severidade, probabilidade de exploração e se já está sob ataque.

71.836exploits catalogados
32.133CVEs com exploração pública
1.932testados em laboratório
13.264 exploits
GitHub PoC2
A standalone GUI tool to detect and demonstrate the **React Server Components Remote Code Execution (RCE)** vulnerability (CVE-2025-55182) in Next.js applications.
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC29
react2shell CVE-2025-55182 PoC
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
CVE-2025-55182 Detector. Find which of your GitHub repositories are exposed to the critical React/Next.js RCE vulnerability and generate a clean Markdown report.
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC3
This is an easy to use PoC script to exploit React2Shell-CVE-2025-55182 Nextjs vulnerability. This will help to gain a reverse shell.
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC7
encrypter15/CVE-2025-50165-x64-Exploit
CVE-2025-50165CRITICAL07 dez 2025
Windows Graphics Component Remote Code Execution Vulnerability
48RISCO
abrir
GitHub PoC
ethicalrohitt/React2Shell_cve-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Remote Command Execution exploit for Rejetto HTTP File Server 2.3.x (CVE-2014-6287) rewritten in Python 3 for modern offensive security testing.
CVE-2014-6287CRITICALsob ataque07 dez 2025
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c a
100RISCO
abrir
GitHub PoC4
This is CVE-2025-55182 exploit
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
ahmedshamsddin/CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
jumodada/react-cve-2025-55182-demo
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
Security toolkit to detect CVE-2025-55182 (React2Shell) vulnerability
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
RCE vuln in magnus billing php resource
CVE-2023-30258CRITICAL07 dez 2025
Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary com
85RISCO
abrir
GitHub PoC1
Automated scanner for CVE-2025-55182: a critical RCE vulnerability in React Server Components and Next.js.
CVE-2025-55182CRITICALsob ataqueransomware07 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC4
Python RCE exploit for Sendmail with ClamAV-Milter <0.91.2 (CVE-2007-4560). Remote root command injection via SMTP RCPT TO headers.
CVE-2007-456007 dez 2025
clamav-milter in ClamAV before 0.91.2, when run in black hole mode, allows remote attackers to execute arbitrary command
60RISCO
abrir
GitHub PoC1
ch3m1cl/CVE-2025-31161
CVE-2025-31161CRITICALsob ataqueransomware07 dez 2025
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unle
100RISCO
abrir
GitHub PoC4
Docker API CVE-2025-9074 PoC (Proof-Of-Concept). A sophisticated exploitation framework for CVE-2025-9074, targeting unauthenticated Docker API endpoints with an integrated interactive command shell.
CVE-2025-9074CRITICAL07 dez 2025
Docker Desktop allows unauthenticated access to Docker Engine API from containers
48RISCO
abrir
GitHub PoC
Scripts for a lab environment demonstrating the Zerologon (CVE-2020-1472) vulnerability.
CVE-2020-1472MEDIUMsob ataqueransomware07 dez 2025
Netlogon Elevation of Privilege Vulnerability
100RISCO
abrir
GitHub PoC2
Advanced security testing tool for CVE-2025-55182 vulnerability assessment in Next.js applications. Features interactive shell, batch scanning, WAF bypass, and comprehensive reporting.
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC5
CVE-2025-55182 RCE - Massive Scanner POC
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC4
React2Shell-Exploit — Complete exploitation framework for CVE-2025-55182, including Python exploit, Docker vulnerable lab, Burp Suite manual and automated exploitation, Nuclei detection template, and validated testing workflow. Developed for penetration testing and educational research.
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC38
Mass Hunting & Exploitation PoC for CVE-2025-55182 & CVE-2025-66478
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC6
CVE-2025-55182 React Server Components RCE - Go PoC
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
More exploit-focused; great for security research repos.
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
My research on CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
zorejt/Rust_CVE-2025-55182
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC2
CVE-2025-55182 poc
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC2
chrome extension to detect next.js sites vulnerable to CVE-2025-55182 (react2shell)
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
This is a POC for testing your projects that are vulnerable to CVE-2025-55182 with a terminal and ability to scan a list
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC
Patches CVE-2025-55182 in your repositories
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
GitHub PoC1
CVE-2025-55182 & CVE-2025-66478 Detection Tool for Next.js RSC RCE
CVE-2025-55182CRITICALsob ataqueransomware06 dez 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISCO
abrir
anteriorpágina 99 / 443próximo

Indexamos apenas o link público para a prova de conceito — nunca hospedamos nem redistribuímos código de exploração. Fontes: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit e VulnCheck XDB. A existência de PoC pública não significa que a falha seja explorável no seu ambiente.