Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,533cataloged exploits
35,607CVEs with public exploitation
24,695lab-tested
77,302 exploits
VulnCheck XDB
local
CVE-2023-0386HIGHunder attack28 Jun 2023
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities wa
86RISK
open
VulnCheck XDB
local
CVE-2023-28252HIGHunder attackransomware27 Jun 2023
Windows Common Log File System Driver Elevation of Privilege Vulnerability
98RISK
open
VulnCheck XDB
initial-access
CVE-2022-4288927 Jun 2023
Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
60RISK
open
GitHub PoC179
fortra/CVE-2023-28252
CVE-2023-28252HIGHunder attackransomware27 Jun 2023
Windows Common Log File System Driver Elevation of Privilege Vulnerability
98RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware27 Jun 2023
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC14
A Python script for generating exploits targeting CVE-2022-4510 RCE Binwalk. It supports SSH, command execution, and reverse shell options. Exploits are saved in PNG format. Ideal for testing and demonstrations.
CVE-2022-4510HIGH27 Jun 2023
Path Traversal in binwalk
46RISK
open
VulnCheck XDB
infoleak
CVE-2023-35843HIGH27 Jun 2023
NocoDB through 0.106.0 (or 0.109.1) has a path traversal vulnerability that allows an unauthenticated attacker to access
56RISK
open
GitHub PoC13
This repository contains a Python script to automate the process of testing for a vulnerability known as Text4Shell, referenced under the CVE id: CVE-2022-42889.
CVE-2022-4288927 Jun 2023
Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
60RISK
open
GitHub PoC
ps-interactive/lab_cve-2021-4034-polkit-emulation-and-detection
CVE-2021-4034HIGHunder attackransomware27 Jun 2023
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
VulnCheck XDB
initial-access
CVE-2023-32243CRITICAL26 Jun 2023
WordPress Essential Addons for Elementor Plugin 5.4.0-5.7.1 is vulnerable to Privilege Escalation
85RISK
open
Exploit-DB
Azure Apache Ambari 2302250400 - Spoofing
CVE-2023-23408MEDIUMremotemultiple26 Jun 2023
Azure Apache Ambari Spoofing Vulnerability
33RISK
open
VulnCheck XDB
initial-access
CVE-2023-2523HIGH26 Jun 2023
Weaver E-Office unrestricted upload
53RISK
open
Exploit-DB
PrestaShop Winbiz Payment module - Improper Limitation of a Pathname to a Restricted Directory
CVE-2023-30198HIGHwebappsphp26 Jun 2023
Prestashop winbizpayment <= 1.0.2 is vulnerable to Incorrect Access Control via modules/winbizpayment/downloads/download
41RISK
open
GitHub PoC
manavvedawala/CVE-2023-32243-proof-of-concept
CVE-2023-32243CRITICAL26 Jun 2023
WordPress Essential Addons for Elementor Plugin 5.4.0-5.7.1 is vulnerable to Privilege Escalation
85RISK
open
VulnCheck XDB
infoleak
CVE-2023-3459826 Jun 2023
Gibbon v25.0.0 is vulnerable to a Local File Inclusion (LFI) where it's possible to include the content of several files
50RISK
open
GitHub PoC
An exploit for the Nibbles manager version 4.0.3. This exploit allows RCE to be performed.
CVE-2015-696726 Jun 2023
Unrestricted file upload vulnerability in the My Image plugin in Nibbleblog before 4.0.5 allows remote administrators to
50RISK
open
VulnCheck XDB
infoleak
CVE-2023-35844HIGH26 Jun 2023
packages/backend/src/routers in Lightdash before 0.510.3 has insecure file endpoints, e.g., they allow .. directory trav
56RISK
open
Exploit-DB
Microsoft SharePoint Enterprise Server 2016 - Spoofing
CVE-2023-28288HIGHwebappsmultiple26 Jun 2023
Microsoft SharePoint Server Spoofing Vulnerability
41RISK
open
Metasploit600
MagnusBilling application unauthenticated Remote Command Execution.
CVE-2023-30258CRITICAL26 Jun 2023
Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary com
85RISK
open
Exploit-DB
Windows 11 22h2 - Kernel Privilege Elevation
CVE-2023-28293HIGHlocalwindows26 Jun 2023
Windows Kernel Elevation of Privilege Vulnerability
41RISK
open
GitHub PoC2
Tools for working with ImageMagick to handle arbitrary file read vulnerabilities. Generate, read, and apply profile information to PNG files using a command-line interface.
CVE-2022-44268MEDIUM25 Jun 2023
ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulti
55RISK
open
GitHub PoC8
SPIP Vulnerability Scanner - CVE-2023-27372 Detector
CVE-2023-27372CRITICAL25 Jun 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
VulnCheck XDB
local
CVE-2023-22809HIGH25 Jun 2023
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open
VulnCheck XDB
initial-access
CVE-2023-27372CRITICAL25 Jun 2023
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T
85RISK
open
GitHub PoC
pashayogi/CVE-2023-22809
CVE-2023-22809HIGH25 Jun 2023
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open
VulnCheck XDB
initial-access
CVE-2009-1151CRITICALunder attack24 Jun 2023
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remo
100RISK
open
GitHub PoC1
Based on the x.pl exploit/loader script for CVE-2009-1151
CVE-2009-1151CRITICALunder attack24 Jun 2023
Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remo
100RISK
open
GitHub PoC10
An exploit for CVE-2018-5955 GitStack 2.3.10 Unauthenticated RCE
CVE-2018-595523 Jun 2023
An issue was discovered in GitStack through 2.3.10. User controlled input is not sufficiently filtered, allowing an unau
60RISK
open
Exploit-DB
NCH Express Invoice - Clear Text Password Storage and Account Takeover
CVE-2020-11560localwindows23 Jun 2023
NCH Express Invoice 7.25 allows local users to discover the cleartext password by reading the configuration file.
23RISK
open
GitHub PoC1
Windows Network File System Remote exploit (DoS) PoC
CVE-2022-30136CRITICAL23 Jun 2023
Windows Network File System Remote Code Execution Vulnerability
70RISK
open
previouspage 486 / 2,577next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.