Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
75,597 exploits
GitHub PoC11
watchtowrlabs/watchTowr-vs-Ivanti-EPMM-CVE-2025-4427-CVE-2025-4428
CVE-2025-4427MEDIUMunder attack15 May 2025
Authentication Bypass
100RISK
open
GitHub PoC1
CVE-2025-4094 – WordPress Digits Plugin < 8.4.6.1 - OTP Authentication Bypass
CVE-2025-4094CRITICAL15 May 2025
Digits < 8.4.6.1 - Auth Bypass via OTP Bruteforcing
53RISK
open
GitHub PoC
Analysis, detection, and mitigation of CVE-2023-20198 exploitation in Cisco IOS XE – QUB CSC3064 Network Security Assessment
CVE-2023-20198CRITICALunder attack15 May 2025
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS
100RISK
open
GitHub PoC2
演示 Next.js 中的 Middleware 授權繞過漏洞 (CVE-2025-29927) 允許未經授權的用戶存取受保護的資訊。
CVE-2025-29927CRITICAL15 May 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
initial-access
CVE-2025-4427MEDIUMunder attack15 May 2025
Authentication Bypass
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-24813CRITICALunder attack15 May 2025
Apache Tomcat: Potential RCE and/or information disclosure and/or information corruption with partial PUT
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-4428HIGHunder attack15 May 2025
Remote Code Execution
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-3605CRITICAL15 May 2025
Frontend Login and Registration Blocks <= 1.1.1 - Unauthenticated Privilege Escalation via Account Takeover
63RISK
open
GitHub PoC1
GadaLuBau1337/CVE-2025-3605
CVE-2025-3605CRITICAL15 May 2025
Frontend Login and Registration Blocks <= 1.1.1 - Unauthenticated Privilege Escalation via Account Takeover
63RISK
open
GitHub PoC1
(CVE-2024-51793) Wordpress Plugin: Computer Repair Shop <= 3.8115 - Unauthenticated Arbitrary File Upload
CVE-2024-51793CRITICAL15 May 2025
WordPress RepairBuddy plugin <= 3.8115 - Arbitrary File Upload vulnerability
48RISK
open
VulnCheck XDB
local
CVE-2021-3156HIGHunder attack15 May 2025
Sudo before 1.9.5p2 contains an off-by-one error that can result in a heap-based buffer overflow, which allows privilege
100RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attack14 May 2025
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC
This contains single-file exploit for ProFTPd 1.3.5 mod_copy (CVE-2015-3306) vulnerability, especially for TryHackMe Kenobi Lab.
CVE-2015-330614 May 2025
The mod_copy module in ProFTPD 1.3.5 allows remote attackers to read and write to arbitrary files via the site cpfr and
60RISK
open
VulnCheck XDB
initial-access
CVE-2020-17530CRITICALunder attack14 May 2025
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-27636MEDIUM14 May 2025
Apache Camel: Camel Message Header Injection via Improper Filtering
55RISK
open
GitHub PoC
This contains single-file exploit for cve-2021-4034 which is a Polkit Local Privilege Escalation. Use it wisely!
CVE-2021-4034HIGHunder attack14 May 2025
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC29
encrypter15/CVE-2025-29824
CVE-2025-29824HIGHunder attackransomware14 May 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC
fatkz/CVE-2020-17530
CVE-2020-17530CRITICALunder attack14 May 2025
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected
100RISK
open
VulnCheck XDB
local
CVE-2025-29824HIGHunder attackransomware14 May 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
VulnCheck XDB
infoleak
CVE-2022-21661HIGH13 May 2025
SQL injection in WordPress
78RISK
open
Exploit-DB
TP-Link VN020 F3v(T) TT_V6.2.1021) - DHCP Stack Buffer Overflow
CVE-2024-11237HIGHlocalmultiple13 May 2025
TP-Link VN020 F3v(T) DHCP DISCOVER Packet Parser TP-Thumper stack-based overflow
41RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware13 May 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
Exploit-DB
WordPress Frontend Login and Registration Blocks Plugin 1.0.7 - Privilege Escalation
CVE-2025-3605CRITICALwebappsmultiple13 May 2025
Frontend Login and Registration Blocks <= 1.1.1 - Unauthenticated Privilege Escalation via Account Takeover
63RISK
open
GitHub PoC1
Kubio AI Page Builder <= 2.5.1 - Unauthenticated Local File Inclusion
CVE-2025-2294CRITICAL13 May 2025
Kubio AI Page Builder <= 2.5.1 - Unauthenticated Local File Inclusion
85RISK
open
Exploit-DB
Kentico Xperience 13.0.178 - Cross Site Scripting (XSS)
CVE-2025-32370HIGHwebappsmultiple13 May 2025
Kentico Xperience before 13.0.178 has a specific set of allowed ContentUploader file extensions for unauthenticated uplo
41RISK
open
Metasploit600
Ivanti EPMM Authentication Bypass for Expression Language Remote Code Execution
CVE-2025-4427MEDIUMunder attack13 May 2025
Authentication Bypass
100RISK
open
Metasploit600
Ivanti EPMM Authentication Bypass for Expression Language Remote Code Execution
CVE-2025-4428HIGHunder attack13 May 2025
Remote Code Execution
100RISK
open
GitHub PoC
A Python PoC for CVE-2022-21661, adapted from z92g's Go PoC, designed to demonstrate the vulnerability in a more accessible scripting environment.
CVE-2022-21661HIGH13 May 2025
SQL injection in WordPress
78RISK
open
GitHub PoC
MandipJoshi/CVE-2021-3560
CVE-2021-3560HIGHunder attack13 May 2025
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privile
91RISK
open
VulnCheck XDB
infoleak
CVE-2025-2294CRITICAL13 May 2025
Kubio AI Page Builder <= 2.5.1 - Unauthenticated Local File Inclusion
85RISK
open
previouspage 258 / 2,520next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.