Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,957cataloged exploits
32,195CVEs with public exploitation
1,932lab-tested
13,307 exploits
GitHub PoC1
CitrixBleed-2 (CVE-2025-5777) – proof-of-concept exploit for NetScaler ADC/Gateway “memory bleed”
CVE-2025-5777CRITICALunder attackransomware04 Jul 2025
NetScaler ADC and NetScaler Gateway - Insufficient input validation leading to memory overread
100RISK
open
GitHub PoC25
PoC for CVE-2025-32463 - Sudo chroot Elevation of Privilege Vulnerability
CVE-2025-32463CRITICALunder attack03 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC5
Multi-host, multi-port scanner and auditor for CVE-2025-6543-affected NetScaler devices. Supports SNMP and SSH enumeration with optional CSV reporting and exploit stubs.
CVE-2025-6543CRITICALunder attack03 Jul 2025
Memory overflow vulnerability leading to unintended control flow and Denial of Service
78RISK
open
GitHub PoC13
A easy sudo poc by cryingn.
CVE-2025-32462LOW03 Jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RISK
open
GitHub PoC
Mr.CIA's manual patching guide for CVE-2025-32463 (Sudo local privilege escalation) on Kali Linux and Ubuntu WSL.
CVE-2025-32463CRITICALunder attack03 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC
0xAkarii/CVE-2025-32463
CVE-2025-32463CRITICALunder attack03 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC
MCP-Inspector-vulncheck is a Python script that checks if an MCP Inspector server is vulnerable to CVE-2025-49596. It tests whether the /sse endpoint responds to unauthenticated requests, indicating a potential security flaw. The script is simple to use and provides clear output on whether the target server is likely vulnerable or patched.
CVE-2025-49596CRITICAL03 Jul 2025
MCP Inspector proxy server lacks authentication between the Inspector client and proxy
75RISK
open
GitHub PoC11
RARLAB WinRAR Directory Traversal Remote Code Execution
CVE-2025-6218HIGHunder attack03 Jul 2025
RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability
93RISK
open
GitHub PoC
CVE-2025-32462 exploit code
CVE-2025-32462LOW03 Jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RISK
open
GitHub PoC
A Writeup for Sleirsgoevy's version of the Exploit Implementation of CVE-2018-4386 by Fire30 called Bad_Hoist
CVE-2018-438603 Jul 2025
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iO
23RISK
open
GitHub PoC
CVE-2024-48061 Langflow vulnerable to remote code execution. Poc
CVE-2024-48061CRITICAL03 Jul 2025
langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the
48RISK
open
GitHub PoC2
Sudo Local Privilege Escalation CVE-2025-32463 (Best For Cases Where the shell is not stable to spawn a new root shell)
CVE-2025-32463CRITICALunder attack03 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC1
CVE-2025-32462 Exploit
CVE-2025-32462LOW03 Jul 2025
Sudo before 1.9.17p1, when used with a sudoers file that specifies a host that is neither the current host nor ALL, allo
28RISK
open
GitHub PoC7
This script checks for the presence of the **CVE-2025-20281** vulnerability in Cisco Identity Services Engine (ISE) and ISE-PIC, which allows **unauthenticated remote code execution (RCE)** as root due to insufficient input validation in a specific API.
CVE-2025-20281CRITICALunder attack03 Jul 2025
Cisco ISE API Unauthenticated Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
yaleman/cve-2025-24813-poc
CVE-2025-24813CRITICALunder attack03 Jul 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
GitHub PoC1
san8383/CVE-2025-32463
CVE-2025-32463CRITICALunder attack03 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC
Python exploit for CVE-2021-41773 - Apache HTTP Server 2.4.49 Path Traversal vulnerability
CVE-2021-41773HIGHunder attackransomware02 Jul 2025
Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49
100RISK
open
GitHub PoC4
SysMancer/CVE-2025-32463
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC1
MAVRICK-1/cve-2024-23113-test-env
CVE-2024-23113CRITICALunder attack02 Jul 2025
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.
90RISK
open
GitHub PoC11
This repository contains a Proof of Concept (PoC) exploit for the **CVE-2025-47175** vulnerability found in Microsoft PowerPoint. The vulnerability is a Use-After-Free (UAF) bug that allows an attacker to execute arbitrary code by tricking a user into opening a specially crafted PPTX file.
CVE-2025-47175HIGH02 Jul 2025
Microsoft PowerPoint Remote Code Execution Vulnerability
41RISK
open
GitHub PoC
robbert1978/CVE-2025-32463_POC
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC466
Local Privilege Escalation to Root via Sudo chroot in Linux
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC
neko205-mx/CVE-2025-32463_Exploit
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC3
Exploit for Local Privilege Escalation in Sudo via Malicious nsswitch.conf with sudo -R. (CVE-2025-32463)
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC3
Wing FTP Server RCE via Lua Injection
CVE-2025-47812CRITICALunder attack02 Jul 2025
In Wing FTP Server before 7.4.4. the user and admin web interfaces mishandle '\0' bytes, ultimately allowing injection o
100RISK
open
GitHub PoC
zhaduchanhzz/CVE-2025-32463_POC
CVE-2025-32463CRITICALunder attack02 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
GitHub PoC
B1gN0Se/Tomcat-CVE-2025-31650
CVE-2025-31650HIGH02 Jul 2025
Apache Tomcat: DoS via malformed HTTP/2 PRIORITY_UPDATE frame
53RISK
open
GitHub PoC1
CVE-2025-6934 POC
CVE-2025-6934CRITICAL02 Jul 2025
Opal Estate Pro <= 1.7.5 - Unauthenticated Privilege Escalation via 'on_regiser_user'
68RISK
open
GitHub PoC
Find out a modified Cacti public exploit!
CVE-2022-46169CRITICALunder attack02 Jul 2025
Unauthenticated Command Injection
100RISK
open
GitHub PoC29
CVE-2025-32463 Proof of concept
CVE-2025-32463CRITICALunder attack01 Jul 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
previouspage 139 / 444next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.