Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,278cataloged exploits
36,463CVEs with public exploitation
24,695lab-tested
79,275 exploits
VulnCheck XDB
initial-access
CVE-2026-48611CRITICAL30 Aug 2026
Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or
63RISK
open
VulnCheck XDB
initial-access
CVE-2026-60004CRITICAL30 Aug 2026
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
85RISK
open
VulnCheck XDB
initial-access
CVE-2026-1357CRITICAL29 Aug 2026
Migration, Backup, Staging <= 0.9.123 - Unauthenticated Arbitrary File Upload
75RISK
open
GitHub PoC
rmhowe425/POC-CVE-2026-19286
CVE-2026-19286CRITICAL29 Aug 2026
Langflow is affected by multiple remote code execution vulnerabilities due to insufficient code-execution policy enforcement
48RISK
open
GitHub PoC
CVE-2026-47884:覆盖 15 条 Spring / Tomcat 官方安全公告,8 条被 NVD 报成 CRITICAL 9.x 而厂商官方评 LOW/MEDIUM,另 7 条两边一致 —— 差别只在厂商有没有自己提交 CVSS。工具告诉你中了哪几条、官方评多少分、是否真满足触发条件,以及官方叫你升的版本 Maven Central 上有没有。
CVE-2026-47884CRITICAL29 Aug 2026
Spring Framework Improper Path Limitation in XsltView
48RISK
open
GitHub PoC
Hunt-Benito/your-bot-my-inbox-cve-2026-68929-fastgpt-unauthenticated-wechat-channel-hijack
CVE-2026-68929CRITICAL29 Aug 2026
FastGPT: Unauthenticated WeChat channel hijack and denial of service via shareId-only authorization
48RISK
open
GitHub PoC2
Learn how I found my first two CVEs by pure accident.
CVE-2026-19745MEDIUM29 Aug 2026
Calix GigaSpire Web Management utilities_configurationsave.cgi denial of service
33RISK
open
GitHub PoC
CVE-2026-82286 — gpt-crawler <=1.5.1 unauthenticated arbitrary file write via outputFileName (POST /crawl). PoC + self-contained Docker lab. CVSS 8.6, CWE-22.
CVE-2026-82286HIGH29 Aug 2026
gpt-crawler Arbitrary File Write via outputFileName Parameter
41RISK
open
GitHub PoC
rmhowe425/POC-CVE-2026-18729
CVE-2026-18729HIGH29 Aug 2026
Langflow is affected by multiple remote code execution vulnerabilities due to insufficient code-execution policy enforcement
41RISK
open
GitHub PoC2
Security research tool for PaperCut CVE-2026-81578 & CVE-2026-82078
CVE-2026-81578HIGHunder attack29 Aug 2026
PaperCut MF/NG: Authentication Bypass
86RISK
open
GitHub PoC
morzelowski/CVE-2026-12243-NLTK-PoC
CVE-2026-1224329 Aug 2026
23RISK
open
GitHub PoC
FranklinF25/cve-2026-42533
CVE-2026-42533CRITICAL29 Aug 2026
NGINX Map directive and Regex matching vulnerability
48RISK
open
GitHub PoC
Static XML fixtures for authorized bug bounty testing of XML parser behaviour (CVE-2026-45071).
CVE-2026-45071HIGH29 Aug 2026
Symfony: XXE (Local File Disclosure) in DomCrawler::addXmlContent() via validateOnParse = true
41RISK
open
GitHub PoC1
#PaperCut CVE-2026-81578 + CVE-2026-82078 Defense Toolkit 2 3 A **defensive** toolkit to check and understand exposure to the chained
CVE-2026-81578HIGHunder attack29 Aug 2026
PaperCut MF/NG: Authentication Bypass
86RISK
open
GitHub PoC
joaovicdev/EXPLOIT-CVE-2026-9198
CVE-2026-9198CRITICALunder attack29 Aug 2026
Unauthenticated Remote Code Execution via Auto-Login Bypass and Code Validation
100RISK
open
GitHub PoC
SOC investigation of a CVE-2024-49138 exploitation alert using log analysis, threat intelligence, and endpoint containment.
CVE-2024-49138HIGHunder attack29 Aug 2026
Windows Common Log File System Driver Elevation of Privilege Vulnerability
76RISK
open
GitHub PoC
I know you are probably here from Hack the Box, if so, yes this one actually works.
CVE-2025-55182CRITICALunder attackransomware28 Aug 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
Jenkins CVE-2024-23897 — CSRF-crumb aware PoC
CVE-2024-23897CRITICALunder attackransomware28 Aug 2026
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
GitHub PoC
A specialized Python framework that executes unauthenticated remote code execution via the 9Router Model Context Protocol (MCP) bridge by deploying a 33-layer temporal phase cascade, Riemann-Hadamard dispersion, and an 11 ns wedge filter to bypass traditional proxy and process-monitoring defenses.
CVE-2026-46339CRITICAL28 Aug 2026
9Router: Unauthenticated Remote Code Execution via unprotected MCP custom plugin routes
63RISK
open
GitHub PoC
IKEv1 VPN scanners, attempts a Check Point authentication-bypass exploit, and includes internal network scanning and reverse-shell features.
CVE-2026-50751CRITICALunder attackransomware28 Aug 2026
User Authentication Bypass in VPN Remote Access and Mobile Access
100RISK
open
GitHub PoC
Hari-v542/CVE-2026-52923
CVE-2026-52923HIGH28 Aug 2026
ipc: limit next_id allocation to the valid ID range
41RISK
open
GitHub PoC1
poc and yara rules
CVE-2025-59528CRITICAL28 Aug 2026
Flowise has Remote Code Execution vulnerability
85RISK
open
VulnCheck XDB
initial-access
CVE-2026-24061CRITICALunder attack28 Aug 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
GitHub PoC
rmhowe425/POC-CVE-2026-19295
CVE-2026-19295CRITICAL28 Aug 2026
Langflow is affected by multiple remote code execution vulnerabilities due to insufficient code-execution policy enforcement
48RISK
open
GitHub PoC
fastjson-cve-2026-16723
CVE-2026-16723CRITICAL28 Aug 2026
Remote Code Execution in fastjson 1.2.68–1.2.83
53RISK
open
GitHub PoC1
hideki233/CVE-2025-3248-Langflow-RCE
CVE-2025-3248CRITICALunder attackransomware28 Aug 2026
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
GitHub PoC
CVE-2026-65643 - Draft or TODO
CVE-2026-65643HIGH28 Aug 2026
Eval injection in cPanel 11.138.0.0 and earlier allows remote authenticated users to execute arbitrary code as root.
41RISK
open
GitHub PoC
Testing CVE-2026-70463 by Fyyre
CVE-2026-70463HIGH28 Aug 2026
rsync 3.1.0 < 3.5.0 Authorization Bypass via auth users Directive Parsing
41RISK
open
VulnCheck XDB
initial-access
CVE-2026-32475CRITICAL28 Aug 2026
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability
63RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware28 Aug 2026
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
previouspage 4 / 2,643next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.