Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,275cataloged exploits
36,462CVEs with public exploitation
24,695lab-tested
79,274 exploits
GitHub PoC1
CVE-2026-64788 PoC — IOGPUFamily Use-After-Free (iOS 26.6 / 23G71)
CVE-2026-64788MEDIUM02 Sep 2026
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe
33RISK
open
GitHub PoC1
CVE-2026-65330 PoC — setxattr PAC bypass via fixed #0x307a diversifier (iOS 26.6 / 23G71)
CVE-2026-65330MEDIUM02 Sep 2026
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe
33RISK
open
GitHub PoC1
NetScaler ADC/Gateway SAML unsigned-assertion bypass via HTTP-Redirect binding (CTX696939) - root cause analysis + PoC
CVE-2026-19490CRITICAL02 Sep 2026
NetScaler ADC and NetScaler Gateway Security Bulletin for CVE-2026-19490
48RISK
open
GitHub PoC
Saku0512/CVE-2026-84361-poc
CVE-2026-84361HIGH02 Sep 2026
Composer: Perforce source URL permits P4PORT `rsh:` command execution
41RISK
open
Exploit-DB
Langflow 1.10.0 - RCE
CVE-2026-9198CRITICALunder attackwebappsmultiple02 Sep 2026
Unauthenticated Remote Code Execution via Auto-Login Bypass and Code Validation
100RISK
open
GitHub PoC
CVE-2026-9586 - Draft or TODO
CVE-2026-9586CRITICALunder attack02 Sep 2026
Unauthenticated SQL Injection Leading to Remote Code Execution in Switchvox SMB
83RISK
open
GitHub PoC
CVE-2026-0828
CVE-2026-0828HIGH02 Sep 2026
Kernel driver vulnerability in Safetica Endpoint Client
41RISK
open
GitHub PoC1
CVE-2026-82329 — JFrog Artifactory unauthenticated authentication bypass ("phantom join key" -> forged service admin token)
CVE-2026-82329CRITICALunder attack02 Sep 2026
Potential authentication bypass leading to administrative access in Artifactory
93RISK
open
GitHub PoC
tcollins-hashicorp/vault-cve-2026-5006-audit
CVE-2026-5006MEDIUM02 Sep 2026
Vault Vulnerable to Privilege Escalation via Slash Injection in Templated Policy Paths
33RISK
open
VulnCheck XDB
initial-access
CVE-2026-18963CRITICAL02 Sep 2026
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass
63RISK
open
GitHub PoC4
CVE-2026-82329 — JFrog Artifactory (self-hosted) Auth Bypass
CVE-2026-82329CRITICALunder attack02 Sep 2026
Potential authentication bypass leading to administrative access in Artifactory
93RISK
open
Exploit-DB
Grav CMS 2.0.7 - RCE
CVE-2026-65008CRITICALwebappsmultiple01 Sep 2026
Grav before 2.0.7 Remote Code Execution via Blueprint dynamicData
48RISK
open
GitHub PoC
pervinzahidli/CVE-2026-75855
CVE-2026-75855HIGH01 Sep 2026
ArcadeDB before 26.8.1 Path Traversal via create/drop database
41RISK
open
VulnCheck XDB
initial-access
CVE-2026-24061CRITICALunder attack01 Sep 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
Exploit-DB
EasyAppointments 1.5.1 - Blind SQL Injection
CVE-2025-50455CRITICALwebappsmultiple01 Sep 2026
SQL injection vulnerability exists in the order_by parameter of the /customers/search endpoint in Alex Tselegidis EasyAp
48RISK
open
GitHub PoC
PoC for Unauthenticated Reflected Cross-Site Scripting (XSS) in RegistrationMagic WordPress Plugin
CVE-2026-82221HIGH01 Sep 2026
WordPress RegistrationMagic plugin <= 6.0.9.8 - Cross Site Scripting (XSS) vulnerability
41RISK
open
VulnCheck XDB
initial-access
CVE-2023-46604CRITICALunder attackransomware01 Sep 2026
Apache ActiveMQ, Apache ActiveMQ Legacy OpenWire Module: Unbounded deserialization causes ActiveMQ to be vulnerable to a remote code execution (RCE) attack
100RISK
open
GitHub PoC
PostgreSQL の全文検索(tsvector/tsquery)に見つかった範囲外書き込み脆弱性 CVE-2026-14662 を、修正前(18.4)と修正後(18.6)を Docker で並べて動かして検証した記録と発表資料
CVE-2026-14662HIGH01 Sep 2026
PostgreSQL tsvector and tsquery undersize allocations, via integer wraparound
41RISK
open
VulnCheck XDB
initial-access
CVE-2024-21762CRITICALunder attackransomware01 Sep 2026
A out-of-bounds write in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.0 through 7.0.13, 6.4.0
100RISK
open
VulnCheck XDB
local
CVE-2021-3493HIGHunder attack01 Sep 2026
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting o
98RISK
open
VulnCheck XDB
initial-access
CVE-2021-44228CRITICALunder attackransomware01 Sep 2026
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
CVE-2026-82329 - Draft or TODO
CVE-2026-82329CRITICALunder attack01 Sep 2026
Potential authentication bypass leading to administrative access in Artifactory
93RISK
open
GitHub PoC1
D-Link DIR-825M formDiskFormat stack overflow + command injection RCE PoC (CVE-2026-82592); for authorized security testing
CVE-2026-82592CRITICAL01 Sep 2026
D-Link DIR-825M Disk Formatting Handler Endpoint formDiskFormat sub_46725C stack-based overflow
48RISK
open
Exploit-DB
miniOrange 5.4.3 - Unauthenticated Auth Bypass
CVE-2026-15013CRITICALwebappsmultiple01 Sep 2026
SAML Single Sign On <= 5.4.3 - Unauthenticated Authentication Bypass via 'SAMLResponse' Parameter Signature Algorithm Confusion
48RISK
open
GitHub PoC9
CVE-2026-82329 JFrog Artifactory unauthenticated auth-bypass: reproducible Docker lab + URL-parameter validator PoC + patch-diff analysis
CVE-2026-82329CRITICALunder attack01 Sep 2026
Potential authentication bypass leading to administrative access in Artifactory
93RISK
open
VulnCheck XDB
initial-access
CVE-2026-0768CRITICAL01 Sep 2026
Langflow code Code Injection Remote Code Execution Vulnerability
48RISK
open
Exploit-DB
Wolf CMS 0.8.3.1 - RCE v
CVE-2026-67206HIGHwebappsmultiple01 Sep 2026
Wolf CMS 0.8.3.1 Authenticated RCE via FileManagerController File Upload
41RISK
open
GitHub PoC1
Poc of CVE-2026-13753
CVE-2026-13753HIGH01 Sep 2026
Certain HP DeskJet All in One – Potential Information Disclosure
41RISK
open
GitHub PoC2
Keycloak reset-credentials flow bypass
CVE-2026-18963CRITICAL01 Sep 2026
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass
63RISK
open
GitHub PoC
GiveWP <= 4.16.7.1 Unauthenticated PHP Object Injection → RCE
CVE-2026-82222CRITICAL31 Aug 2026
WordPress GiveWP plugin <= 4.16.7.1 - Remote Code Execution (RCE) vulnerability
48RISK
open
previouspage 2 / 2,643next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.