Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
76,008 exploits
GitHub PoC2
Artemir7/CVE-2025-24893-EXP
CVE-2025-24893CRITICALunder attack05 May 2025
Remote code execution as guest via SolrSearchMacros request in xwiki
100RISK
open
GitHub PoC1
CVE-2025-4524 - Unauthenticated madara-core Wordpress theme LFI
CVE-2025-4524CRITICAL05 May 2025
Madara – Responsive and modern WordPress theme for manga sites <= 2.2.2 - Unauthenticated Local File Inclusion
63RISK
open
GitHub PoC
Shellshock Vulnerability Scanner
CVE-2014-6271CRITICALunder attack05 May 2025
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISK
open
GitHub PoC1
Scanner and exploit for CVE-2025-3248
CVE-2025-3248CRITICALunder attackransomware05 May 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
GitHub PoC5
This Python exploit script targets a vulnerable Laravel Filemanager created by UniSharp, which allows authenticated users to bypass file restrictions and upload malicious files. This can lead to Remote Code Execution (RCE) when the uploaded payload is triggered.
CVE-2024-21546CRITICAL05 May 2025
Versions of the package unisharp/laravel-filemanager before 2.9.1 are vulnerable to Remote Code Execution (RCE) through
48RISK
open
VulnCheck XDB
initial-access
CVE-2023-46604CRITICALunder attackransomware04 May 2025
Apache ActiveMQ, Apache ActiveMQ Legacy OpenWire Module: Unbounded deserialization causes ActiveMQ to be vulnerable to a remote code execution (RCE) attack
100RISK
open
GitHub PoC
Bridg3Ops/SOC335-CVE-2024-49138-Exploitation-Detected
CVE-2024-49138HIGHunder attack04 May 2025
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC
CCIEVoice2009/CVE-2023-46604
CVE-2023-46604CRITICALunder attackransomware04 May 2025
Apache ActiveMQ, Apache ActiveMQ Legacy OpenWire Module: Unbounded deserialization causes ActiveMQ to be vulnerable to a remote code execution (RCE) attack
100RISK
open
GitHub PoC
CVE-2024-10914 Shell Exploit
CVE-2024-10914CRITICAL03 May 2025
D-Link DNS-320/DNS-320LW/DNS-325/DNS-340L account_mgr.cgi cgi_user_add os command injection
85RISK
open
GitHub PoC1
ByteMe1001/CVE-2020-13151-POC-Aerospike-Server-Host-Command-Execution-RCE-
CVE-2020-1315103 May 2025
Aerospike Community Edition 4.9.0.5 allows for unauthenticated submission and execution of user-defined functions (UDFs)
60RISK
open
GitHub PoC
A critical flaw has been discovered in Erlang/OTP's SSH server allows unauthenticated attackers to gain remote code execution. One malformed SSH handshake bypasses authentication and exploits improper handling of SSH protocol messages.
CVE-2025-32433CRITICALunder attack03 May 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
GitHub PoC
Vite Development Server's @fs endpoint (CVE-2025-31125) to access sensitive files like /etc/passwd and /etc/hosts via crafted URLs.
CVE-2025-31125MEDIUMunder attack03 May 2025
Vite has a `server.fs.deny` bypassed for `inline` and `raw` with `?import` query
90RISK
open
GitHub PoC3
This repository includes everything needed to run a PoC exploit for CVE-2025-32375 in a Docker environment. It runs the latest vulnerable version of BentoML (1.4.7).
CVE-2025-32375CRITICAL03 May 2025
Insecure Deserialization leads to RCE in BentoML's runner server
75RISK
open
GitHub PoC
This CVE - PoC about information on the CVEs I found.
CVE-2025-47226MEDIUM03 May 2025
Grokability Snipe-IT before 8.1.0 has incorrect authorization for accessing asset information.
33RISK
open
GitHub PoC1
olimpiofreitas/CVE-2025-29927-scanner
CVE-2025-29927CRITICAL03 May 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
initial-access
CVE-2025-32433CRITICALunder attack03 May 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
VulnCheck XDB
infoleak
CVE-2025-29927CRITICAL03 May 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
infoleak
CVE-2025-31125MEDIUMunder attack03 May 2025
Vite has a `server.fs.deny` bypassed for `inline` and `raw` with `?import` query
90RISK
open
VulnCheck XDB
denial-of-service
CVE-2024-23113CRITICALunder attack02 May 2025
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.
90RISK
open
GitHub PoC
toothbrushsoapflannelbiscuits/cve-2017-5638
CVE-2017-5638CRITICALunder attackransomware02 May 2025
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception ha
100RISK
open
GitHub PoC1
CVE-2016-5195 linux kernel exploit
CVE-2016-5195HIGHunder attack02 May 2025
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
VulnCheck XDB
local
CVE-2016-5195HIGHunder attack02 May 2025
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
GitHub PoC
This python scripts searches a client list to see if their FortiGate device is vulnerable to this CVE.
CVE-2024-23113CRITICALunder attack02 May 2025
A use of externally-controlled format string in Fortinet FortiOS versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.6, 7.0.
90RISK
open
GitHub PoC
Simple PoC of wpstorecart before 2.5.30 plugin exploit (CVE-2012-3576) written in bash.
CVE-2012-357602 May 2025
Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows re
28RISK
open
GitHub PoC1
CVE-2025-32433 – Erlang/OTP SSH vulnerability allowing pre-auth RCE
CVE-2025-32433CRITICALunder attack02 May 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
GitHub PoC
sattarbug/Analysis-of-TomcatKiller---CVE-2025-31650-Exploit-Tool
CVE-2025-31650HIGH02 May 2025
Apache Tomcat: DoS via malformed HTTP/2 PRIORITY_UPDATE frame
53RISK
open
GitHub PoC
katseyres2/CVE-2022-44268-pilgrimage
CVE-2022-44268MEDIUM02 May 2025
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISK
open
VulnCheck XDB
initial-access
CVE-2024-27956CRITICAL01 May 2025
WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary SQL Execution vulnerability
85RISK
open
VulnCheck XDB
initial-access
CVE-2025-31161CRITICALunder attackransomware01 May 2025
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unle
100RISK
open
GitHub PoC
S4mma3l/CVE-2025-24054
CVE-2025-24054MEDIUMunder attack01 May 2025
NTLM Hash Disclosure Spoofing Vulnerability
75RISK
open
previouspage 265 / 2,534next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.