Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,386cataloged exploits
36,533CVEs with public exploitation
24,695lab-tested
79,305 exploits
GitHub PoC1
IamDremig/CVE-2026-65591
CVE-2026-65591HIGH10 Aug 2026
n8n before 1.123.64 Sanitizer Bypass Remote Code Execution
41RISK
open
GitHub PoC1
IamDremig/CVE-2026-15598
CVE-2026-15598MEDIUM10 Aug 2026
antv layout object.js setNestedValue prototype pollution
33RISK
open
GitHub PoC
CVE-2026-20685 - Draft or TODO
CVE-2026-20685MEDIUM10 Aug 2026
An attacker in a privileged network position may be able to leak sensitive information. A path handling issue was addres
33RISK
open
VulnCheck XDB
local
CVE-2025-7771HIGH10 Aug 2026
Code Execution / Escalation of Privileges in ThrottleStop
41RISK
open
GitHub PoC5
Community-maintained fork of image-size with fixes for CVE-2025-71329 and CVE-2025-71330
CVE-2025-71329HIGH10 Aug 2026
image-size 2.0.2 Denial of Service via Infinite Loop in JXL/HEIF Parser
41RISK
open
Exploit-DB
OrkesConductor 3.30.2 - Unauthenticated Remote Code Execution
CVE-2026-58138CRITICALwebappsmultiple10 Aug 2026
Orkes Conductor 3.21.21 < 3.30.2 Unauthenticated RCE via GraalVM Script Evaluators
63RISK
open
GitHub PoC1
Tracking SCTPhantom (CVE-2026-64564), the Linux kernel SCTP ASCONF transport use-after-free
CVE-2026-64564CRITICAL10 Aug 2026
sctp: don't free the ASCONF's own transport in DEL-IP processing
48RISK
open
GitHub PoC
CVE-2026-43499 GhostLock APK 骨架 — 从零开始,仅空项目编译验证
CVE-2026-43499HIGH10 Aug 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
GitHub PoC
my poc for CVE-2026-53787
CVE-2026-53787CRITICAL10 Aug 2026
Amasty Order Attributes for Magento 2 < 4.0.0 Unauthenticated Arbitrary File Upload
63RISK
open
GitHub PoC2
A rewritten Proof-of-Concept / Local Privilege Escalation (LPE) exploit targeting CVE-2019-2215, a Use-After-Free vulnerability in the Android Binder driver.
CVE-2019-2215HIGHunder attack10 Aug 2026
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
100RISK
open
GitHub PoC
The poc of CVE-2026-23744
CVE-2026-23744CRITICAL10 Aug 2026
REC in MCPJam inspector due to HTTP Endpoint exposes
75RISK
open
GitHub PoC
CVE-2026-19264 - Critical unauthenticated path traversal to full instance takeover in Postiz (< 2.22.1). Technical writeup: decode-order bypass, JWT_SECRET escalation, and analysis of the upstream fix.
CVE-2026-19264CRITICAL10 Aug 2026
Unauthenticated arbitrary file read via /uploads path traversal (URL-encoded separators) leading to instance takeover
48RISK
open
GitHub PoC
The poc of CVE-2025-59528
CVE-2025-59528CRITICAL10 Aug 2026
Flowise has Remote Code Execution vulnerability
85RISK
open
GitHub PoC
unpredictable21/halo-cors-csrf-CVE-2026-67921
CVE-2026-67921CRITICAL10 Aug 2026
Cross-Site Request Forgery (CSRF) vulnerability exists in Halo CMS versions up to 2.25.4 via the CorsConfigurer.java and
48RISK
open
GitHub PoC
Authorized Kali–Metasploitable2 lab using Python and Nmap NSE to validate CVE-2011-2523 in vsFTPd 2.3.4.
CVE-2011-252310 Aug 2026
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISK
open
Exploit-DB
Microsoft Edge 150.0.4078.48 - RCE
CVE-2026-58289CRITICALlocalmultiple10 Aug 2026
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
48RISK
open
GitHub PoC1
CVE-2026-43499 (GhostLock) research on HUAWEI MatePad Pro 11 GOT-W29
CVE-2026-43499HIGH10 Aug 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
VulnCheck XDB
local
CVE-2024-30088HIGHunder attackransomware10 Aug 2026
Windows Kernel Elevation of Privilege Vulnerability
83RISK
open
GitHub PoC1
IamDremig/CVE-2026-14802
CVE-2026-14802MEDIUM10 Aug 2026
react create-react-app react-dev-utils openBrowser.js startBrowserProcess os command injection
33RISK
open
GitHub PoC
CVE-2026-43499 GhostLock APK 骨架 — 仅验证空项目能编译通过
CVE-2026-43499HIGH10 Aug 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
GitHub PoC1
Saku0512/CVE-2026-9086-poc
CVE-2026-9086HIGH10 Aug 2026
Keycloak: keycloak: cross-site scripting (xss) via case-insensitive uri validation bypass
41RISK
open
VulnCheck XDB
initial-access
CVE-2026-63077CRITICALunder attack10 Aug 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
100RISK
open
VulnCheck XDB
initial-access
CVE-2026-23744CRITICAL10 Aug 2026
REC in MCPJam inspector due to HTTP Endpoint exposes
75RISK
open
VulnCheck XDB
initial-access
CVE-2026-34910CRITICALunder attack10 Aug 2026
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2025-59528CRITICAL10 Aug 2026
Flowise has Remote Code Execution vulnerability
85RISK
open
VulnCheck XDB
initial-access
CVE-2023-21839HIGHunder attack10 Aug 2026
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t
100RISK
open
Exploit-DB
Joomla 2.9.99.4 - Unauthenticated Remote Code Execution
CVE-2026-48907CRITICALunder attackwebappsmultiple10 Aug 2026
Joomla Extension - joomlacontenteditor.net - Remote Code Execution in JCE extension for Joomla < 2.9.99.5
100RISK
open
VulnCheck XDB
initial-access
CVE-2026-63077CRITICALunder attack10 Aug 2026
In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent pollin
100RISK
open
GitHub PoC4
GhostLock-X200 v1.0 - temporary root toolchain for vivo X200 (PD2415 / b57 kernel) based on CVE-2026-43499. For authorized security research only.
CVE-2026-43499HIGH10 Aug 2026
rtmutex: Use waiter::task instead of current in remove_waiter()
41RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware10 Aug 2026
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
previouspage 22 / 2,644next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.