Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
75,589 exploits
GitHub PoC
The `swp_debug` parameter in `admin-post.php` allows remote attackers to include external files containing malicious PHP code, which are evaluated on the server. By supplying a crafted URL that hosts a reverse shell payload, an attacker can gain command execution.
CVE-2019-9978MEDIUMunder attack19 May 2025
The social-warfare plugin before 3.5.3 for WordPress has stored XSS via the wp-admin/admin-post.php?swp_debug=load_optio
100RISK
open
VulnCheck XDB
client-side
CVE-2025-24054MEDIUMunder attack19 May 2025
NTLM Hash Disclosure Spoofing Vulnerability
75RISK
open
Exploit-DB
Zyxel USG FLEX H series uOS 1.31 - Privilege Escalation
CVE-2025-1731HIGHlocalmultiple18 May 2025
An incorrect permission assignment vulnerability in the PostgreSQL commands of the Zyxel USG FLEX H series uOS firmware
41RISK
open
VulnCheck XDB
infoleak
CVE-2024-41713CRITICALunder attackransomware18 May 2025
A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could
100RISK
open
VulnCheck XDB
local
CVE-2024-44258HIGH18 May 2025
This issue was addressed with improved handling of symlinks. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, iOS 18
41RISK
open
Exploit-DB
CrushFTP 11.3.1 - Authentication Bypass
CVE-2025-31161CRITICALunder attackransomwareremotemultiple18 May 2025
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unle
100RISK
open
Exploit-DB
Invision Community 5.0.6 - Remote Code Execution (RCE)
CVE-2025-47916CRITICALremotemultiple18 May 2025
Invision Community 5.0.0 before 5.0.7 allows remote code execution via crafted template strings to themeeditor.php. The
85RISK
open
GitHub PoC4
Designed for Demonstration of Deep Exploitation.
CVE-2025-32756CRITICALunder attack18 May 2025
A stack-based buffer overflow vulnerability [CWE-121] vulnerability in Fortinet FortiCamera 2.1.0 through 2.1.3, FortiCa
90RISK
open
GitHub PoC
Mitel MiCollab Authentication Bypass to Arbitrary File Read
CVE-2024-41713CRITICALunder attackransomware18 May 2025
A vulnerability in the NuPoint Unified Messaging (NPM) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.201) could
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-32756CRITICALunder attack18 May 2025
A stack-based buffer overflow vulnerability [CWE-121] vulnerability in Fortinet FortiCamera 2.1.0 through 2.1.3, FortiCa
90RISK
open
VulnCheck XDB
local
CVE-2025-0288HIGH17 May 2025
CVE-2025-0288
41RISK
open
GitHub PoC
Automation Exploit
CVE-2021-4034HIGHunder attack17 May 2025
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
tdevworks/CVE-2020-1472-ZeroLogon-Demo-Detection-Mitigation
CVE-2020-1472MEDIUMunder attackransomware17 May 2025
Netlogon Elevation of Privilege Vulnerability
100RISK
open
GitHub PoC4
Eventin <= 4.0.26 - Missing Authorization to Unauthenticated Privilege Escalation
CVE-2025-47539CRITICAL17 May 2025
WordPress Eventin plugin <= 4.0.26 - Privilege Escalation Vulnerability
75RISK
open
GitHub PoC
tdevworks/CVE-2020-0796-SMBGhost-Exploit-Demo
CVE-2020-0796CRITICALunder attackransomware17 May 2025
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC200
CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS. Exploitation bypassed Blastdoor, enabled kernel escalation (CVE-2025-31201), and allowed token theft until patched in iOS 18.4.1 (Apr 16, 2025).
CVE-2025-31200CRITICALunder attack17 May 2025
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4
83RISK
open
VulnCheck XDB
initial-access
CVE-2025-47539CRITICAL17 May 2025
WordPress Eventin plugin <= 4.0.26 - Privilege Escalation Vulnerability
75RISK
open
GitHub PoC
PenguinCabinet/CVE-2024-4367-hands-on
CVE-2024-4367MEDIUM16 May 2025
A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js c
55RISK
open
VulnCheck XDB
initial-access
CVE-2025-4428HIGHunder attack16 May 2025
Remote Code Execution
100RISK
open
GitHub PoC4
Ivanti EPMM Pre-Auth RCE Chain
CVE-2025-4428HIGHunder attack16 May 2025
Remote Code Execution
100RISK
open
GitHub PoC2
WordPress PSW Front-end Login &amp; Registration Plugin <= 1.12 is vulnerable to Broken Authentication
CVE-2025-47646CRITICAL16 May 2025
WordPress PSW Front-end Login & Registration plugin <= 1.13 - Broken Authentication Vulnerability
68RISK
open
GitHub PoC2
GadaLuBau1337/CVE-2025-32583
CVE-2025-32583CRITICAL16 May 2025
WordPress PDF 2 Post Plugin <= 2.4.0 - Remote Code Execution (RCE) vulnerability
53RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attack16 May 2025
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
CyprianAtsyor/LetsDefend-CVE-2022-41082-Exploitation-Attempt
CVE-2022-41082HIGHunder attackransomware16 May 2025
Microsoft Exchange Server Remote Code Execution Vulnerability
100RISK
open
GitHub PoC
Software Vulnerabilities and mitigation university course, to show exploitation and remediation caused by this vulnerability
CVE-2021-4034HIGHunder attack16 May 2025
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
Metasploit600
Invision Community 5.0.6 customCss RCE
CVE-2025-47916CRITICAL16 May 2025
Invision Community 5.0.0 before 5.0.7 allows remote code execution via crafted template strings to themeeditor.php. The
85RISK
open
GitHub PoC
Analysis, detection, and mitigation of CVE-2023-20198 exploitation in Cisco IOS XE – QUB CSC3064 Network Security Assessment
CVE-2023-20198CRITICALunder attack15 May 2025
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC11
watchtowrlabs/watchTowr-vs-Ivanti-EPMM-CVE-2025-4427-CVE-2025-4428
CVE-2025-4427MEDIUMunder attack15 May 2025
Authentication Bypass
100RISK
open
GitHub PoC1
GadaLuBau1337/CVE-2025-3605
CVE-2025-3605CRITICAL15 May 2025
Frontend Login and Registration Blocks <= 1.1.1 - Unauthenticated Privilege Escalation via Account Takeover
63RISK
open
GitHub PoC2
WordPress Plugin Digits < 8.4.6.1 - OTP Auth Bypass via Bruteforce (CVE-2025-4094)
CVE-2025-4094CRITICAL15 May 2025
Digits < 8.4.6.1 - Auth Bypass via OTP Bruteforcing
53RISK
open
previouspage 257 / 2,520next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.