Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

76,008cataloged exploits
34,638CVEs with public exploitation
24,695lab-tested
76,008 exploits
VulnCheck XDB
initial-access
CVE-2024-28987CRITICALunder attack21 Apr 2025
SolarWinds Web Help Desk Hardcoded Credential Vulnerability
100RISK
open
GitHub PoC2
CrushFTP CVE-2025-31161 Exploit Tool 🔓
CVE-2025-31161CRITICALunder attackransomware21 Apr 2025
CrushFTP 10 before 10.8.4 and 11 before 11.3.1 allows authentication bypass and takeover of the crushadmin account (unle
100RISK
open
GitHub PoC1
Proof of Concept Exploit for CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability
CVE-2024-28987CRITICALunder attack21 Apr 2025
SolarWinds Web Help Desk Hardcoded Credential Vulnerability
100RISK
open
GitHub PoC118
CVE-2025-31200 - @Noahhw46 figured it out
CVE-2025-31200CRITICALunder attack21 Apr 2025
A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.4.1 and iPadOS 18.4
83RISK
open
GitHub PoC
custiya/geoserver-CVE-2023-25157
CVE-2023-25157CRITICAL21 Apr 2025
Unfiltered SQL Injection Vulnerabilities in Geoserver
85RISK
open
GitHub PoC2
A critical RCE vulnerability has been identified in the Wazuh server due to unsafe deserialization in the wazuh-manager package. This bug affects Wazuh versions ≥ 4.4.0 and has been patched in version 4.9.1.
CVE-2025-24016CRITICALunder attack21 Apr 2025
Remote code execution in Wazuh server
100RISK
open
GitHub PoC1
A CVSS 10.0-rated vulnerability in the parquet-avro Java module allows remote code execution via unsafe deserialization when parsing schemas. Tracked as CVE-2025-30065, this flaw affects Apache Parquet ≤ 1.15.0. All users must upgrade to version 1.15.1 immediately to mitigate exploitation risks.
CVE-2025-30065CRITICAL21 Apr 2025
Apache Parquet Java: Arbitrary code execution in the parquet-avro module when reading an Avro schema from a Parquet file metadata
60RISK
open
GitHub PoC1
CVE-2025-30208 vite file read nuclei template
CVE-2025-30208MEDIUM21 Apr 2025
Vite bypasses server.fs.deny when using `?raw??`
70RISK
open
GitHub PoC2
pouriam23/Next.js-Middleware-Bypass-CVE-2025-29927-
CVE-2025-29927CRITICAL21 Apr 2025
Authorization Bypass in Next.js Middleware
85RISK
open
GitHub PoC
pswalia2u/CVE-2025-24071_POC
CVE-2025-24071MEDIUM21 Apr 2025
Microsoft Windows File Explorer Spoofing Vulnerability
38RISK
open
VulnCheck XDB
infoleak
CVE-2023-25157CRITICAL21 Apr 2025
Unfiltered SQL Injection Vulnerabilities in Geoserver
85RISK
open
VulnCheck XDB
initial-access
CVE-2025-55182CRITICALunder attackransomware21 Apr 2025
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
VulnCheck XDB
local
CVE-2019-2215HIGHunder attack20 Apr 2025
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISK
open
VulnCheck XDB
initial-access
CVE-2019-7238CRITICALunder attack20 Apr 2025
Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2025-3102HIGH20 Apr 2025
SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation
78RISK
open
VulnCheck XDB
client-side
CVE-2021-44026CRITICALunder attack20 Apr 2025
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.
90RISK
open
GitHub PoC2
nmap scripts for vuln cve-2020-0796 & cve-2019-7238 & cve2019-11580 & cve2017-6327
CVE-2019-7238CRITICALunder attack20 Apr 2025
Sonatype Nexus Repository Manager before 3.15.0 has Incorrect Access Control.
100RISK
open
GitHub PoC
Bug Chain XSS (CVE-2020-35730 and CVE-2023-43770) to SQLi (CVE-2021-44026)
CVE-2020-35730MEDIUMunder attack20 Apr 2025
An XSS issue was discovered in Roundcube Webmail before 1.2.13, 1.3.x before 1.3.16, and 1.4.x before 1.4.10. The attack
75RISK
open
GitHub PoC2
mouseos/cve-2019-2215_SH-M08
CVE-2019-2215HIGHunder attack20 Apr 2025
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISK
open
GitHub PoC
Bug Chain XSS (CVE-2020-35730 and CVE-2023-43770) to SQLi (CVE-2021-44026)
CVE-2021-44026CRITICALunder attack20 Apr 2025
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to a potential SQL injection via search or search_params.
90RISK
open
GitHub PoC2
nmap scripts for vuln cve-2020-0796 & cve-2019-7238 & cve2019-11580 & cve2017-6327
CVE-2020-0796CRITICALunder attackransomware20 Apr 2025
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
GitHub PoC
Bug Chain XSS (CVE-2020-35730 and CVE-2023-43770) to SQLi (CVE-2021-44026)
CVE-2023-43770MEDIUMunder attack20 Apr 2025
Roundcube before 1.4.14, 1.5.x before 1.5.4, and 1.6.x before 1.6.3 allows XSS via text/plain e-mail messages with craft
75RISK
open
VulnCheck XDB
client-side
CVE-2020-35730MEDIUMunder attack20 Apr 2025
An XSS issue was discovered in Roundcube Webmail before 1.2.13, 1.3.x before 1.3.16, and 1.4.x before 1.4.10. The attack
75RISK
open
VulnCheck XDB
client-side
CVE-2023-43770MEDIUMunder attack20 Apr 2025
Roundcube before 1.4.14, 1.5.x before 1.5.4, and 1.6.x before 1.6.3 allows XSS via text/plain e-mail messages with craft
75RISK
open
VulnCheck XDB
initial-access
CVE-2025-32433CRITICALunder attack20 Apr 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
GitHub PoC2
The WooCommerce Ultimate Gift Card plugin for WordPress is vulnerable to arbitrary file uploads.
CVE-2024-8425CRITICAL19 Apr 2025
WooCommerce Ultimate Gift Card <= 2.9.2 - Unauthenticated Arbitrary File Upload
63RISK
open
GitHub PoC
pruthuraut/CVE-2025-28121
CVE-2025-28121MEDIUM19 Apr 2025
code-projects Online Exam Mastering System 1.0 is vulnerable to Cross Site Scripting (XSS) in feedback.php via the "q" p
33RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack19 Apr 2025
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
VulnCheck XDB
client-side
CVE-2023-38408CRITICAL19 Apr 2025
The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remot
70RISK
open
VulnCheck XDB
denial-of-service
CVE-2020-0796CRITICALunder attackransomware19 Apr 2025
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol h
100RISK
open
previouspage 271 / 2,534next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.