Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

75,505cataloged exploits
34,478CVEs with public exploitation
24,695lab-tested
13,639 exploits
GitHub PoC8
CVE-2024-55875 | GHSA-7mj5-hjjj-8rgw | http4k first CVE
CVE-2024-55875CRITICAL13 Dec 2024
http4k has a potential XXE (XML External Entity Injection) vulnerability
48RISK
open
GitHub PoC
tlavi00/CVE-2018-7750
CVE-2018-775013 Dec 2024
transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x
28RISK
open
GitHub PoC
Improved version of PikaChu CVE
CVE-2017-12617HIGHunder attack13 Dec 2024
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTT
100RISK
open
GitHub PoC
CVE to CTF FP
CVE-2022-22963CRITICALunder attack13 Dec 2024
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open
GitHub PoC4
666asd/CVE-2024-23653
CVE-2024-23653CRITICAL13 Dec 2024
BuildKit interactive containers API does not validate entitlements check
48RISK
open
GitHub PoC
sudlit/CVE-2023-40028
CVE-2023-40028MEDIUM13 Dec 2024
Arbitrary file read via symlinks in Ghost
45RISK
open
GitHub PoC
Super Backup & Clone - Migrate for WordPress <= 2.3.3 - Unauthenticated Arbitrary File Upload
CVE-2024-9290CRITICAL13 Dec 2024
Super Backup & Clone - Migrate for WordPress <= 2.3.3 - Unauthenticated Arbitrary File Upload
48RISK
open
GitHub PoC9
s2-067(CVE-2024-53677)
CVE-2024-53677CRITICAL12 Dec 2024
Apache Struts: Mixing setters for uploaded files and normal fields can allow bypass file upload checks
70RISK
open
GitHub PoC4
exploit CVE-2024-38475(mod_rewrite weakness with filesystem path matching)
CVE-2024-38475CRITICALunder attack12 Dec 2024
Apache HTTP Server weakness in mod_rewrite when first segment of substitution matches filesystem path.
100RISK
open
GitHub PoC
Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce <= 1.1.1 - Missing Authorization to Unauthenticated Arbitrary Plugin Installation/Activation
CVE-2024-10124CRITICAL12 Dec 2024
Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce <= 1.1.1 - Missing Authorization to Unauthenticated Arbitrary Plugin Installation/Activation
60RISK
open
GitHub PoC13
CVE-2023-40028 affects Ghost, an open source content management system, where versions prior to 5.59.1 allow authenticated users to upload files that are symlinks. This can be exploited to perform an arbitrary file read of any file on the host operating system.
CVE-2023-40028MEDIUM12 Dec 2024
Arbitrary file read via symlinks in Ghost
45RISK
open
GitHub PoC
writeup cve-2024-42327
CVE-2024-42327CRITICAL12 Dec 2024
SQL injection in user.get API
70RISK
open
GitHub PoC8
This PoC is targeting vulnerabilities in Palo Alto PAN-OS, specifically CVE-2024-0012 and CVE-2024-9474. This script automates the exploitation process, including payload creation, chunked delivery, and seamless command execution.
CVE-2024-0012CRITICALunder attackransomware11 Dec 2024
PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015)
100RISK
open
GitHub PoC1
KiviCare – Clinic & Patient Management System (EHR) WordPress Plugin Unauthenticated SQL Injection PoC
CVE-2024-11728HIGH11 Dec 2024
KiviCare – Clinic & Patient Management System (EHR) <= 3.6.4 - Unauthenticated SQL Injection
61RISK
open
GitHub PoC2
Palo Alto Networks PAN-OS(CVE-2024-9474) POC
CVE-2024-9474MEDIUMunder attackransomware11 Dec 2024
PAN-OS: Privilege Escalation (PE) Vulnerability in the Web Management Interface
100RISK
open
GitHub PoC
An example of a repo that would make use of the CVE-2024-32002
CVE-2024-32002CRITICAL11 Dec 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
GitHub PoC25
Cleo Unrestricted file upload and download PoC (CVE-2024-50623)
CVE-2024-50623CRITICALunder attackransomware11 Dec 2024
In Cleo Harmony before 5.8.0.21, VLTrader before 5.8.0.21, and LexiCom before 5.8.0.21, there is an unrestricted file up
100RISK
open
GitHub PoC
itform-fr/Zabbix---CVE-2024-42327
CVE-2024-42327CRITICAL11 Dec 2024
SQL injection in user.get API
70RISK
open
GitHub PoC
Cái này dựng lên với mục đích cho ae tham khảo, chê thì đừng có xem. :))))
CVE-2023-346011 Dec 2024
Ultimate Member < 2.6.7 - Unauthenticated Privilege Escalation
60RISK
open
GitHub PoC
This repo contains both the exploit and the explaination of how this vulnerability is exploited
CVE-2019-1863411 Dec 2024
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the
28RISK
open
GitHub PoC1
CVE-2024-55557
CVE-2024-55557CRITICAL10 Dec 2024
ui/pref/ProxyPrefView.java in weasis-core in Weasis 4.5.1 has a hardcoded key for symmetric encryption of proxy credenti
48RISK
open
GitHub PoC1
Privilege escaltion exploit script for Boardlight machine on HackTheBox. I had access as the Larissa user and ran this script from the /tmp directory; script has been adjusted accordingly.
CVE-2022-37706HIGH10 Dec 2024
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and th
56RISK
open
GitHub PoC1
WP Umbrella: Update Backup Restore & Monitoring <= 2.17.0 - Unauthenticated Local File Inclusion
CVE-2024-12209CRITICAL09 Dec 2024
WP Umbrella: Update Backup Restore & Monitoring <= 2.17.0 - Unauthenticated Local File Inclusion
68RISK
open
GitHub PoC
This is an exploit for CVE-2024-23346 that acts as a "terminal" (tested on chemistry.htb)
CVE-2024-23346CRITICAL09 Dec 2024
pymatgen arbitrary code execution when parsing a maliciously crafted JonesFaithfulTransformation transformation_string
48RISK
open
GitHub PoC
Danyw24/CVE-2004-1561-Icecast-Header-Overwrite-buffer-overflow-RCE-2.0.1-Win32-
CVE-2004-156109 Dec 2024
Buffer overflow in Icecast 2.0.1 and earlier allows remote attackers to execute arbitrary code via an HTTP request with
60RISK
open
GitHub PoC
A simple python script to test for CVE-2024-9441.
CVE-2024-9441CRITICAL09 Dec 2024
Linear eMerge e3-Series Forgot Password Command Injection
60RISK
open
GitHub PoC1
This repository is a proof of concept (POC) for CVE-2024-23334, demonstrating an attempt to replicate the bug in aiohttp that leads to Local File Inclusion (LFI).
CVE-2024-23334MEDIUM09 Dec 2024
aiohttp.web.static(follow_symlinks=True) is vulnerable to directory traversal
70RISK
open
GitHub PoC
Jimmy01240397/CVE-2012-1823-Analyze
CVE-2012-1823CRITICALunder attack09 Dec 2024
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not
100RISK
open
GitHub PoC4
D1se0/CVE-2024-23897-Vulnerabilidad-Jenkins
CVE-2024-23897CRITICALunder attackransomware08 Dec 2024
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
GitHub PoC1
The issue only affects nginx if the "resolver" directive is used in the configuration file. Further, the attack is only possible if an attacker is able to forge UDP packets from the DNS server.
CVE-2021-2301708 Dec 2024
A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from t
35RISK
open
previouspage 187 / 455next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.