Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,901cataloged exploits
32,161CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,978GitHub PoC 13,282VulnCheck XDB 8,176Nuclei 4,217Metasploit 3,462✓ verified onlyrecentpopularrisk
4,202 exploits
Nucleihigh
Gitlab CE/EE 10.5 - Server-Side Request Forgery
When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab CE
53RISK
open ↗Nucleicritical
Micro Focus Operations Bridge Reporter - Remote Code Execution
Remote Code execution vulnerability in Micro Focus Operation Bridge Reporter (OBR) product, affecting version 10.40. The
100RISK
open ↗Nucleicritical
EVlink City < R8 V3.4.0.1 - Authentication Bypass
A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to
30RISK
open ↗Nucleimedium
Revive Adserver <5.1.0 - Open Redirect
Revive Adserver before 5.1.0 is vulnerable to open redirects via the `dest`, `oadest`, and/or `ct0` parameters of the lg
50RISK
open ↗Nucleimedium
Ruby on Rails - Open Redirect via Host Header Injection
The Host Authorization middleware in Action Pack before 6.1.2.1, 6.0.3.5 suffers from an open redirect vulnerability. Sp
40RISK
open ↗Nucleicritical
Rocket.Chat <=3.13 - NoSQL Injection
A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti
60RISK
open ↗Nucleicritical
F5 iControl REST - Remote Command Execution
On BIG-IP versions 16.0.x before 16.0.1.1, 15.1.x before 15.1.2.1, 14.1.x before 14.1.4, 13.1.x before 13.1.3.6, and 12.
100RISK
open ↗Nucleimedium
MERCUSYS Mercury X18G 1.0.5 Router - Local File Inclusion
MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (
23RISK
open ↗Nucleicritical
10Web Photo Gallery < 1.5.55 - SQL Injection
Photo Gallery by 10Web < 1.5.55 - Unauthenticated SQL Injection
18RISK
open ↗Nucleicritical
WordPress Perfect Survey <1.5.2 - SQL Injection
Perfect Survey < 1.5.2 - Unauthenticated SQL Injection
60RISK
open ↗Nucleihigh
Download Monitor < 4.4.5 - SQL Injection
Download Monitor < 4.4.5 - Admin+ SQL Injection
61RISK
open ↗Nucleihigh
Header Footer Code Manager < 1.1.14 - Admin+ SQL Injection
Header Footer Code Manager < 1.1.14 - Admin+ SQL Injections
18RISK
open ↗Nucleicritical
WordPress Asgaros Forum <1.15.13 - SQL Injection
Asgaros Forum < 1.15.13 - Unauthenticated SQL Injection
23RISK
open ↗Nucleimedium
WordPress AnyComment <0.3.5 - Open Redirect
AnyComment < 0.3.5 - Open Redirect
18RISK
open ↗Nucleicritical
WCFM WooCommerce Multivendor Marketplace < 3.4.12 - SQL Injection
WCFM - WooCommerce Multivendor Marketplace < 3.4.12 - Unauthenticated SQL Injection
18RISK
open ↗Nucleihigh
WordPress RegistrationMagic <5.0.1.6 - Authenticated SQL Injection
RegistrationMagic < 5.0.1.6 - Admin+ SQL Injection
60RISK
open ↗Nucleimedium
WordPress eCommerce Product Catalog <3.0.39 - Cross-Site Scripting
eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site Scripting
18RISK
open ↗Nucleimedium
Registrations for The Events Calendar < 2.7.5 - Authenticated Reflected Cross-Site Scripting
Registrations for The Events Calendar < 2.7.5 - Reflected Cross-Site Scripting
18RISK
open ↗Nucleimedium
SupportCandy < 2.2.7 - Reflected Cross-Site Scripting
SupportCandy < 2.2.7 - Reflected Cross-Site Scripting
18RISK
open ↗Nucleimedium
WordPress Elementor Website Builder <3.1.4 - Cross-Site Scripting
Elementor < 3.4.8 - DOM Cross-Site-Scripting
23RISK
open ↗Nucleimedium
WordPress Transposh Translation <1.0.8 - Cross-Site Scripting
Transposh WordPress Translation < 1.0.8 - Reflected Cross-Site Scripting
18RISK
open ↗Nucleicritical
Contest Gallery < 13.1.0.6 - SQL injection
Contest Gallery < 13.1.0.6 - Missing Access Controls to Unauthenticated SQL injection / Email Address Disclosure
23RISK
open ↗Nucleihigh
WordPress Qubely < 1.8.6 - Unauthenticated Email Sending
Qubely < 1.8.6 - Unauthenticated Arbitrary E-mail Sending
18RISK
open ↗Nucleihigh
WordPress WPS Hide Login <1.9.1 - Information Disclosure
WPS Hide Login < 1.9.1 - Protection Bypass with Referer-Header
40RISK
open ↗Nucleimedium
WordPress Domain Check <1.0.17 - Cross-Site Scripting
Domain Check < 1.0.17 - Reflected Cross-Site Scripting
43RISK
open ↗Nucleicritical
WordPress Secure Copy Content Protection and Content Locking <2.8.2 - SQL Injection
Secure Copy Content Protection and Content Locking < 2.8.2 - Unauthenticated SQL Injection
60RISK
open ↗Nucleimedium
Visual CSS Style Editor < 7.5.4 - Cross-Site Scripting
Visual CSS Style Editor < 7.5.4 - Reflected Cross-Site Scripting
18RISK
open ↗Nucleimedium
WordPress Persian Woocommerce <=5.8.0 - Cross-Site Scripting
Persian Woocommerce <= 5.8.0 - Reflected Cross-Site Scripting
18RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.