Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

78,331cataloged exploits
36,057CVEs with public exploitation
24,695lab-tested
24,458 exploits
Exploit-DB
Repetier-Server 1.4.10 - Path Traversal
CVE-2026-26335CRITICALwebappsmultiple30 Apr 2026
Calero VeraSMART < 2022 R1 Static IIS Machine Keys Enable ViewState RCE
48RISK
open
Exploit-DB
Windows 11 23H2 - Denial of Service (DoS)
CVE-2025-47987HIGHlocalwindows30 Apr 2026
Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
41RISK
open
Exploit-DB
Google Chrome 145.0.7632.75 - CSSFontFeatureValuesMap
CVE-2026-2441HIGHunder attacklocalmultiple30 Apr 2026
Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside
76RISK
open
Exploit-DB
Python-Multipart 0.0.22 - Path Traversal
CVE-2026-24486HIGHwebappspython30 Apr 2026
Python-Multipart has Arbitrary File Write via Non-Default Configuration
41RISK
open
Exploit-DB
NiceGUI 3.6.1 - Path Traversal
CVE-2026-25732HIGHwebappsmultiple30 Apr 2026
NiceGUI's Path Traversal via Unsanitized FileUpload.name Enables Arbitrary File Write
41RISK
open
Exploit-DB
Windows 11 25H2 - Heap Overflow
CVE-2026-21248HIGHlocalwindows30 Apr 2026
Windows Hyper-V Remote Code Execution Vulnerability
41RISK
open
Exploit-DB
FUXA 1.2.8 - Authentication Bypass + RCE Exploit
CVE-2025-69985CRITICALwebappsmultiple30 Apr 2026
FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Execution (RCE). The vulnera
48RISK
open
Exploit-DB
BusyBox 1.37.0 - Path Traversal
CVE-2026-26157HIGHwebappsmultiple30 Apr 2026
Busybox: busybox: arbitrary file overwrite and potential code execution via incomplete path sanitization
41RISK
open
Exploit-DB
Erugo 0.2.14 - Remote Code Execution (RCE)
CVE-2026-24897CRITICALwebappsmultiple30 Apr 2026
Authenticated Remote Code Execution via Arbitrary File Upload
48RISK
open
Exploit-DB
Windows 11 25H2 - Heap Overflow
CVE-2026-21244HIGHlocalwindows30 Apr 2026
Windows Hyper-V Remote Code Execution Vulnerability
41RISK
open
Exploit-DB
deephas 1.0.7 - Prototype Pollution
CVE-2026-25047CRITICALwebappsmultiple30 Apr 2026
deepHas vulnerable to Prototype Pollution via constructor.prototype
48RISK
open
Exploit-DB
Camaleon CMS v2.9.0 - Path Traversal
CVE-2024-46987HIGHwebappsmultiple30 Apr 2026
Arbitrary path traversal in Camaleon CMS
61RISK
open
Exploit-DB
Js2Py 0.74 - RCE
CVE-2024-28397MEDIUMwebappsmultiple30 Apr 2026
An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a
48RISK
open
Exploit-DB
phpMyFAQ 4.0.16 - Improper Authorization
CVE-2026-24421MEDIUMwebappsphp29 Apr 2026
phpMyFAQ missing authorization exposes /api/setup/backup to any authenticated user
33RISK
open
Exploit-DB
GUnet OpenEclass E-learning platform < 4.2 - Remote Code Execution (RCE)
CVE-2026-22241HIGHwebappsmultiple29 Apr 2026
Open eClass has Unrestricted File Upload that Leads to Remote Code Execution (RCE)
41RISK
open
Exploit-DB
Craft CMS 5.6.16 - RCE
CVE-2025-32432CRITICALunder attackwebappsmultiple29 Apr 2026
Craft CMS Allows Remote Code Execution
100RISK
open
Exploit-DB
Atlona ATOMERX21 - Authenticated Command Injection
CVE-2024-30167MEDIUMlocalmultiple29 Apr 2026
/cgi-bin/time.cgi in Atlona AT-OME-MS42 Matrix Switcher 1.1.2 allow remote authenticated users to execute arbitrary comm
33RISK
open
Exploit-DB
Fedora - Local Privilege Escalation
CVE-2025-12744HIGHlocallinux29 Apr 2026
Abrt: command-injection in abrt leading to local privilege escalation
41RISK
open
Exploit-DB
GeographicLib v2.5.1 - stack buffer overflow
CVE-2025-60751HIGHwebappsmultiple29 Apr 2026
GeographicLib 2.5 is vulnerable to Buffer Overflow in GeoConvert DMS::InternalDecode.
41RISK
open
Exploit-DB
GNU InetUtils 2.6 - Telnetd Remote Privilege Escalation
CVE-2026-24061CRITICALunder attacklocallinux29 Apr 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
Exploit-DB
Xibo CMS 4.3.0 - RCE via SSTI
CVE-2025-62639webappsmultiple29 Apr 2026
20RISK
open
Exploit-DB
FacturaScripts 2025.43 - XSS
CVE-2025-69210LOWwebappsmultiple29 Apr 2026
FacturaScripts vulnerable to Stored Cross-Site Scripting (XSS) via XML File Upload
28RISK
open
Exploit-DB
HAX CMS 24.x - Stored Cross-Site Scripting (XSS)
CVE-2026-22704HIGHwebappsmultiple29 Apr 2026
HAXcms Has Stored XSS Vulnerability that May Lead to Account Takeover
41RISK
open
Exploit-DB
LangChain Core 1.2.4 - SSTI/RCE
CVE-2025-68664CRITICALwebappsmultiple29 Apr 2026
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs
60RISK
open
Exploit-DB
WordPress Plugin 5.2.0 - Broken Access Control
CVE-2025-67586MEDIUMwebappsmultiple22 Apr 2026
WordPress Highlight and Share plugin <= 5.2.0 - Broken Access Control vulnerability
33RISK
open
Exploit-DB
Throttlestop Kernel Driver - Kernel Out-of-Bounds Write Privilege Escalation
CVE-2025-7771HIGHlocalwindows22 Apr 2026
Code Execution / Escalation of Privileges in ThrottleStop
41RISK
open
Exploit-DB
NetBT e-Fatura - Privilege Escalation
CVE-2025-14018HIGHlocalmultiple10 Apr 2026
Unquoted Service Path in NetBT Consultancy's e-Fatura
41RISK
open
Exploit-DB
RomM 4.4.0 - XSS_CSRF Chain
CVE-2025-65027HIGHwebappsmultiple09 Apr 2026
RomM Chained XSS and CSRF Vulnerabilities Enable Admin Account Takeover
41RISK
open
Exploit-DB
React Server 19.2.0 - Remote Code Execution
CVE-2025-55182CRITICALunder attackransomwarewebappsmultiple09 Apr 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
Exploit-DB
Horilla v1.3 - RCE
CVE-2025-48868HIGHwebappsmultiple08 Apr 2026
Horilla vulnerable to authenticated RCE via eval() in project_bulk_archive
41RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.