Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

72,018cataloged exploits
32,219CVEs with public exploitation
1,932lab-tested
13,334 exploits
GitHub PoC4
CVE-2025-24813-Scanner is a Python-based vulnerability scanner that detects Apache Tomcat servers vulnerable to CVE-2025-24813, an arbitrary file upload vulnerability leading to remote code execution (RCE) via insecure PUT method handling and jsessionid exploitation.
CVE-2025-24813CRITICALunder attack12 Apr 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
GitHub PoC
Next.js CVE-2025-29927 Hunter
CVE-2025-29927CRITICAL11 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC3
Exploit PoC for CVE-2023-20198
CVE-2023-20198CRITICALunder attack11 Apr 2025
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC1
A Python proof-of-concept exploit for CVE-2019-15107 - an unauthenticated remote code execution vulnerability in Webmin versions 1.890 through 1.920.
CVE-2019-15107CRITICALunder attackransomware11 Apr 2025
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open
GitHub PoC43
CVE-2024-36401 图形化利用工具,支持各个JDK版本利用以及回显、内存马实现
CVE-2024-36401CRITICALunder attack11 Apr 2025
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
100RISK
open
GitHub PoC
PoC for exploitation of vulnerability CVE-2019-10149
CVE-2019-10149CRITICALunder attack11 Apr 2025
A flaw was found in Exim versions 4.87 to 4.91 (inclusive). Improper validation of recipient address in deliver_message(
100RISK
open
GitHub PoC
ngyinkit/cve-2019-18634
CVE-2019-1863411 Apr 2025
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
GitHub PoC
Exploit CVE-2025-69985 to bypass authentication and execute remote commands on FUXA versions ≤ 1.2.8 via the /api/runscript endpoint.
CVE-2025-69985CRITICAL10 Apr 2025
FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Execution (RCE). The vulnera
48RISK
open
GitHub PoC2
Unverified Password Change (CWE-620)
CVE-2024-48887CRITICAL10 Apr 2025
A unverified password change vulnerability in Fortinet FortiSwitch GUI may allow a remote unauthenticated attacker to c
53RISK
open
GitHub PoC4
TomcatScanner is a comprehensive security tool designed for detecting and exploiting the CVE-2025-24813 vulnerability in Apache Tomcat servers.
CVE-2025-24813CRITICALunder attack10 Apr 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
GitHub PoC3
CVE-2019-15107-Scanner is a Python-based scanner that detects vulnerable Webmin (1.890 - 1.920) servers affected by CVE-2019-15107, an unauthenticated remote code execution (RCE) vulnerability in the /password_change.cgi endpoint.
CVE-2019-15107CRITICALunder attackransomware10 Apr 2025
An issue was discovered in Webmin <=1.920. The parameter old in password_change.cgi contains a command injection vulnera
100RISK
open
GitHub PoC2
POC of CVE-2025-3248, RCE of LangFlow
CVE-2025-3248CRITICALunder attackransomware10 Apr 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
GitHub PoC9
A vulnerability scanner for CVE-2025-3248 in Langflow applications. 用于扫描 Langflow 应用中 CVE-2025-3248 漏洞的工具。
CVE-2025-3248CRITICALunder attackransomware10 Apr 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
GitHub PoC18
CVE-2025-22457: Python Exploit POC Scanner to Detect Ivanti Connect Secure RCE
CVE-2025-22457CRITICALunder attackransomware10 Apr 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7
100RISK
open
GitHub PoC1
Exploit CVE-2025-1974 with a single file.
CVE-2025-1974CRITICAL10 Apr 2025
ingress-nginx admission controller RCE escalation
85RISK
open
GitHub PoC8
CVE-2025-24813 poc
CVE-2025-24813CRITICALunder attack10 Apr 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
GitHub PoC73
PoC for CVE-2025-22457 - A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Pulse Connect Secure, Ivanti Policy Secure, and ZTA Gateways
CVE-2025-22457CRITICALunder attackransomware09 Apr 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7
100RISK
open
GitHub PoC1
A simple, easy-to-use POC for CVE-2025-42813 (Apache Tomcat versions below 9.0.99).
CVE-2025-24813CRITICALunder attack09 Apr 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
GitHub PoC
Research on Next.js middleware vulnerability (CVE-2025-29927) allowing authorization bypass and potential exploits.
CVE-2025-29927CRITICAL09 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC
OD&H's scanner for CVE-2024-25600 vulnerability in the Bricks Builder WordPress plugin. For use in Try Hack Me (THM) environments.
CVE-2024-25600CRITICAL09 Apr 2025
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RISK
open
GitHub PoC2
a lightweight JavaScript snippet showcasing how unauthorized password changes can be triggered on vulnerable Fortinet FortiSwitch GUI endpoints.
CVE-2024-48887CRITICAL09 Apr 2025
A unverified password change vulnerability in Fortinet FortiSwitch GUI may allow a remote unauthenticated attacker to c
53RISK
open
GitHub PoC
pickovven/vulnerable-nextjs-14-CVE-2025-29927
CVE-2025-29927CRITICAL08 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC2
CVE-2025-31651 PoC
CVE-2025-31651CRITICAL08 Apr 2025
Apache Tomcat: Bypass of rules in Rewrite Valve
48RISK
open
GitHub PoC2
sandsoncosta/CVE-2025-26633
CVE-2025-26633HIGHunder attackransomware08 Apr 2025
Microsoft Management Console Security Feature Bypass Vulnerability
83RISK
open
GitHub PoC48
Proof of Concept for CVE-2025-31161 / CVE-2025-2825
CVE-2025-31161CRITICALunder attackransomware08 Apr 2025
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unle
100RISK
open
GitHub PoC1
0xnxt1me/CVE-2025-29927
CVE-2025-29927CRITICAL08 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC
CVE-2025-29927 ~ a poc of the next.js middleware authentication bypass
CVE-2025-29927CRITICAL08 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC2
Prevent CVE-2025-22457 and other security problems with Juniper/Ivanti Secure Connect SSL VPN
CVE-2025-22457CRITICALunder attackransomware08 Apr 2025
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.6, Ivanti Policy Secure before version 22.7
100RISK
open
GitHub PoC
Project Repository for Exploitation, Detection and Mitigation of Folina Vulnerability (CVE-2022-30190)
CVE-2022-30190HIGHunder attackransomware08 Apr 2025
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
100RISK
open
GitHub PoC1
GadaLuBau1337/CVE-2025-24813
CVE-2025-24813CRITICALunder attack08 Apr 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
previouspage 157 / 445next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.