Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,533cataloged exploits
35,607CVEs with public exploitation
24,695lab-tested
77,302 exploits
VulnCheck XDB
initial-access
CVE-2023-3496003 Jul 2023
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.18 allows attackers to ex
60RISK
open
GitHub PoC
WARNING: This is a vulnerable application to test the exploit for the Cacti command injection (CVE-2023-39362). Run it at your own risk!
CVE-2023-39362HIGH03 Jul 2023
Authenticated command injection in SNMP options of a Device
63RISK
open
VulnCheck XDB
initial-access
CVE-2023-32315HIGHunder attack02 Jul 2023
Openfire administration console authentication bypass
100RISK
open
GitHub PoC6
Perform With Massive Openfire Unauthenticated Users
CVE-2023-32315HIGHunder attack02 Jul 2023
Openfire administration console authentication bypass
100RISK
open
GitHub PoC1
Expoit for CVE-2022-44268
CVE-2022-44268MEDIUM02 Jul 2023
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISK
open
GitHub PoC
spip
CVE-2023-27372CRITICAL01 Jul 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
initial-access
CVE-2023-27372CRITICAL01 Jul 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
initial-access
CVE-2014-6271CRITICALunder attack01 Jul 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISK
open
Metasploit600
OpenTSDB 2.4.1 unauthenticated command injection
CVE-2023-25826CRITICAL01 Jul 2023
Remote Code Execution in OpenTSDB
75RISK
open
Metasploit600
OpenTSDB 2.4.1 unauthenticated command injection
CVE-2023-36812CRITICAL01 Jul 2023
Remote Code Execution in OpenTSDB
68RISK
open
Metasploit600
OpenNMS Horizon Authenticated RCE
CVE-2023-0872HIGH01 Jul 2023
ROLE_REST can be used to escalate to ROLE_ADMIN via /rest/users
36RISK
open
Metasploit600
OpenNMS Horizon Authenticated RCE
CVE-2023-40315MEDIUM01 Jul 2023
ROLE_FILESYSTEM_EDITOR Can Be Used To Escalate To ROLE_ADMIN
28RISK
open
GitHub PoC5
Exploitation of "Shellshock" Vulnerability. Remote code execution in Apache with mod_cgi
CVE-2014-6271CRITICALunder attack01 Jul 2023
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which
100RISK
open
VulnCheck XDB
client-side
CVE-2023-24488MEDIUM01 Jul 2023
Cross site scripting
70RISK
open
VulnCheck XDB
client-side
CVE-2023-24488MEDIUM01 Jul 2023
Cross site scripting
70RISK
open
GitHub PoC9
WordPress社交登录和注册(Discord,Google,Twitter,LinkedIn)<=7.6.4-绕过身份验证
CVE-2023-2982CRITICAL30 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
GitHub PoC11
Decrypt reversible secrets encrypted using the default hardcoded key related to CVE-2020-9289 on FortiAnalyzer/FortiManager (the only difference with CVE-2019-6693 is the encryption routine).
CVE-2019-6693MEDIUMunder attackransomware30 Jun 2023
Use of a hard-coded cryptographic key to cipher sensitive data in FortiOS configuration backup file may allow an attacke
63RISK
open
VulnCheck XDB
local
CVE-2020-104830 Jun 2023
An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writin
43RISK
open
VulnCheck XDB
initial-access
CVE-2023-2982CRITICAL30 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
VulnCheck XDB
initial-access
CVE-2023-2982CRITICAL29 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
VulnCheck XDB
infoleak
CVE-2021-42013CRITICALunder attackransomware29 Jun 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
GitHub PoC4
Using this tool, you can scan for remote command execution vulnerability CVE-2021-44228 on Apache Log4j at multiple addresses.
CVE-2021-44228CRITICALunder attackransomware29 Jun 2023
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC1
Hamesawian/CVE-2021-42013
CVE-2021-42013CRITICALunder attackransomware29 Jun 2023
Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773)
100RISK
open
GitHub PoC82
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
CVE-2023-2982CRITICAL29 Jun 2023
WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.6.4 - Authentication Bypass
75RISK
open
VulnCheck XDB
initial-access
CVE-2021-44228CRITICALunder attackransomware29 Jun 2023
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open
GitHub PoC
yangshifan-git/CVE-2021-1732
CVE-2021-1732HIGHunder attackransomware29 Jun 2023
Windows Win32k Elevation of Privilege Vulnerability
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2023-287728 Jun 2023
Formidable Forms < 6.3.1 - Subscriber+ Remote Code Execution
28RISK
open
VulnCheck XDB
local
CVE-2023-0386HIGHunder attack28 Jun 2023
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities wa
86RISK
open
GitHub PoC21
非常简单的CVE-2023-0386's exp and analysis.Use c and sh.
CVE-2023-0386HIGHunder attack28 Jun 2023
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities wa
86RISK
open
VulnCheck XDB
local
CVE-2023-3269HIGH28 Jun 2023
Distros-[dirtyvma] privilege escalation via non-rcu-protected vma traversal
41RISK
open
previouspage 485 / 2,577next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.