Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,020cataloged exploits
35,276CVEs with public exploitation
24,695lab-tested
76,647 exploits
GitHub PoC
adapting CVE-2024-32002 for running offline and locally
CVE-2024-32002CRITICAL02 Aug 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
VulnCheck XDB
client-side
CVE-2024-21412HIGHunder attackransomware02 Aug 2024
Internet Shortcut Files Security Feature Bypass Vulnerability
93RISK
open
VulnCheck XDB
initial-access
CVE-2023-4220HIGH02 Aug 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
VulnCheck XDB
local
CVE-2021-21551HIGHunder attack02 Aug 2024
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privile
98RISK
open
GitHub PoC
This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220
CVE-2023-4220HIGH02 Aug 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
GitHub PoC1
Proof of concept exploit for CVE-2021-21551
CVE-2021-21551HIGHunder attack02 Aug 2024
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privile
98RISK
open
GitHub PoC
y1s4s/CVE-2024-36401-PoC
CVE-2024-36401CRITICALunder attack01 Aug 2024
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-36401CRITICALunder attack01 Aug 2024
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
100RISK
open
GitHub PoC1
bananoname/cve-2021-42013
CVE-2021-42013CRITICALunder attackransomware31 Jul 2024
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALunder attackransomware31 Jul 2024
Argument Injection in PHP-CGI
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-4577CRITICALunder attackransomware31 Jul 2024
Argument Injection in PHP-CGI
100RISK
open
GitHub PoC1
An exploit for CVE-2024-6387, targeting a signal handler race condition in OpenSSH's server
CVE-2024-6387HIGH31 Jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RISK
open
GitHub PoC1
apena-ba/CVE-2024-39304
CVE-2024-39304HIGH31 Jul 2024
ChurchCRM SQL Injection Vulnerability
41RISK
open
Metasploit600
Calibre Python Code Injection (CVE-2024-6782)
CVE-2024-6782CRITICAL31 Jul 2024
Calibre Remote Code Execution
85RISK
open
VulnCheck XDB
initial-access
CVE-2021-42013CRITICALunder attackransomware31 Jul 2024
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
GitHub PoC
批量验证POC和EXP
CVE-2024-4577CRITICALunder attackransomware31 Jul 2024
Argument Injection in PHP-CGI
100RISK
open
GitHub PoC
Exploit script for CVE-2022-41544 in GetSimple CMS, with enhanced error handling and detailed usage instructions.
CVE-2022-41544HIGH31 Jul 2024
GetSimple CMS v3.3.16 was discovered to contain a remote code execution (RCE) vulnerability via the edited_file paramete
41RISK
open
GitHub PoC1
12
CVE-2023-25813CRITICAL30 Jul 2024
SQL Injection via replacements in sequelize
48RISK
open
GitHub PoC86
GeoServer Remote Code Execution
CVE-2024-36401CRITICALunder attack30 Jul 2024
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-25600CRITICAL30 Jul 2024
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RISK
open
VulnCheck XDB
initial-access
CVE-2024-36401CRITICALunder attack30 Jul 2024
Remote Code Execution (RCE) vulnerability in evaluating property name expressions in Geoserver
100RISK
open
GitHub PoC
Just small script to exploit CVE-2024-32002
CVE-2024-32002CRITICAL30 Jul 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
GitHub PoC
KaSooMi0228/CVE-2024-25600-Bricks-Builder-WordPress
CVE-2024-25600CRITICAL30 Jul 2024
WordPress Bricks Theme <= 1.9.6 - Unauthenticated Remote Code Execution (RCE) vulnerability
85RISK
open
GitHub PoC12
Proof of concept python script for regreSSHion exploit.
CVE-2024-6387HIGH30 Jul 2024
Openssh: regresshion - race condition in ssh allows rce/dos
63RISK
open
GitHub PoC3
PoC of CVE-2024-32002 - Remote Code Execution while cloning special-crafted local repositories
CVE-2024-32002CRITICAL30 Jul 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
GitHub PoC
FlojBoj/CVE-2024-32002
CVE-2024-32002CRITICAL30 Jul 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
GitHub PoC
CVE-2023-4220 POC RCE
CVE-2023-4220HIGH29 Jul 2024
Chamilo LMS Unauthenticated Big Upload File Remote Code Execution
78RISK
open
GitHub PoC
projectforsix/CVE-2021-45428-Defacer
CVE-2021-4542829 Jul 2024
TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can uploa
50RISK
open
GitHub PoC
GIT RCE CVE-2024-32002
CVE-2024-32002CRITICAL29 Jul 2024
Git's recursive clones on case-insensitive filesystems that support symlinks are susceptible to Remote Code Execution
53RISK
open
VulnCheck XDB
local
CVE-2024-21338HIGHunder attackransomware29 Jul 2024
Windows Kernel Elevation of Privilege Vulnerability
83RISK
open
previouspage 365 / 2,555next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.