Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

79,279cataloged exploits
36,463CVEs with public exploitation
24,695lab-tested
79,279 exploits
VulnCheck XDB
initial-access
CVE-2026-33017CRITICALunder attack28 Aug 2026
Langflow has Unauthenticated Remote Code Execution via Public Flow Build Endpoint
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-55182CRITICALunder attackransomware28 Aug 2026
A pre-authentication remote code execution vulnerability exists in React Server Components versions 19.0.0, 19.1.0, 19.1
100RISK
open
GitHub PoC
CVE-2026-66384 - Draft or TODO
CVE-2026-66384MEDIUMunder attack28 Aug 2026
Authenticated users may write data outside the intended Docker cache path
63RISK
open
VulnCheck XDB
info-leak
CVE-2024-23897CRITICALunder attackransomware28 Aug 2026
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an
100RISK
open
GitHub PoC
rmhowe425/POC-CVE-2026-19295
CVE-2026-19295CRITICAL28 Aug 2026
Langflow is affected by multiple remote code execution vulnerabilities due to insufficient code-execution policy enforcement
48RISK
open
GitHub PoC
Hari-v542/CVE-2026-52923
CVE-2026-52923HIGH28 Aug 2026
ipc: limit next_id allocation to the valid ID range
41RISK
open
VulnCheck XDB
initial-access
CVE-2026-18963CRITICAL28 Aug 2026
Keycloak-services: keycloak-services: unauthenticated account takeover via reset-credentials flow bypass
63RISK
open
GitHub PoC
IKEv1 VPN scanners, attempts a Check Point authentication-bypass exploit, and includes internal network scanning and reverse-shell features.
CVE-2026-50751CRITICALunder attackransomware28 Aug 2026
User Authentication Bypass in VPN Remote Access and Mobile Access
100RISK
open
VulnCheck XDB
initial-access
CVE-2026-24061CRITICALunder attack28 Aug 2026
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment
100RISK
open
GitHub PoC
Wazuh Rules for Detection Zimbra (CVE-2026-73570).
CVE-2026-73570HIGHunder attack28 Aug 2026
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp
98RISK
open
GitHub PoC
A specialized Python framework that executes unauthenticated remote code execution via the 9Router Model Context Protocol (MCP) bridge by deploying a 33-layer temporal phase cascade, Riemann-Hadamard dispersion, and an 11 ns wedge filter to bypass traditional proxy and process-monitoring defenses.
CVE-2026-46339CRITICAL28 Aug 2026
9Router: Unauthenticated Remote Code Execution via unprotected MCP custom plugin routes
63RISK
open
GitHub PoC
fastjson-cve-2026-16723
CVE-2026-16723CRITICAL28 Aug 2026
Remote Code Execution in fastjson 1.2.68–1.2.83
53RISK
open
GitHub PoC
Testing CVE-2026-70463 by Fyyre
CVE-2026-70463HIGH28 Aug 2026
rsync 3.1.0 < 3.5.0 Authorization Bypass via auth users Directive Parsing
41RISK
open
VulnCheck XDB
initial-access
CVE-2026-32475CRITICAL28 Aug 2026
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability
63RISK
open
VulnCheck XDB
initial-access
CVE-2022-46169CRITICALunder attack28 Aug 2026
Unauthenticated Command Injection
100RISK
open
GitHub PoC
CVE-2023-27350, CVE-2023-27351 - PaperCut - Draft or TODO
CVE-2023-27350CRITICALunder attackransomware28 Aug 2026
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Bui
100RISK
open
GitHub PoC
Cacti 1.2.22 unauthenticated command injection
CVE-2022-46169CRITICALunder attack28 Aug 2026
Unauthenticated Command Injection
100RISK
open
GitHub PoC
Writeup + CVE analysis + countermeasures for the Hacktivity 'Vulnerabilities, Exploits, and Remote Access Payloads' lab (netcat shells, Metasploit, CVE-2010-1240, CVE-2004-2687).
CVE-2010-124027 Aug 2026
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of
60RISK
open
GitHub PoC
Gvln-S/CVE-2011-2523
CVE-2011-252327 Aug 2026
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.
60RISK
open
GitHub PoC
Oracle WebLogic Console unauthenticated auth bypass + RCE exploit (CVE-2020-14882 / CVE-2020-14750)
CVE-2020-14882CRITICALunder attack27 Aug 2026
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions
100RISK
open
Metasploit600
PaperCut NG/MF Unauthenticated RCE (CVE-2026-81578 + CVE-2026-82078)
CVE-2026-82078CRITICALunder attack27 Aug 2026
PaperCut MF/NG: Unsafe Dynamic Class Loading in Database Connector
93RISK
open
Metasploit600
PaperCut NG/MF Unauthenticated RCE (CVE-2026-81578 + CVE-2026-82078)
CVE-2026-81578HIGHunder attack27 Aug 2026
PaperCut MF/NG: Authentication Bypass
86RISK
open
GitHub PoC
CVE-2026-20303, CVE-2026-20304, CVE-2026-20310, CVE-2026-20312, CVE-2026-20313
CVE-2026-20303CRITICAL27 Aug 2026
Cisco Catalyst SD-WAN Security Hardening Release - Input Validation Vulnerabilities
48RISK
open
VulnCheck XDB
info-leak
CVE-2026-72898CRITICALunder attack27 Aug 2026
Metabase SQL injection via password reset endpoint
100RISK
open
GitHub PoC19
Metabase SQLi
CVE-2026-72898CRITICALunder attack27 Aug 2026
Metabase SQL injection via password reset endpoint
100RISK
open
GitHub PoC1
sahmsec/CVE-2026-32475
CVE-2026-32475CRITICAL27 Aug 2026
WordPress Elementor Pro plugin <= 4.2.1 - Arbitrary File Upload vulnerability
63RISK
open
GitHub PoC
CVE-2026-77542, CVE-2026-77543, CVE-2026-77545, CVE-2026-77550, CVE-2026-77551, CVE-2026-77552, CVE-2026-77553, CVE-2026-77554, CVE-2026-77557 - Draft or TODO
CVE-2026-77542CRITICAL27 Aug 2026
A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit
48RISK
open
GitHub PoC
A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.
CVE-2026-55040CRITICALunder attack27 Aug 2026
Microsoft SharePoint Server Security Feature Bypass Vulnerability
100RISK
open
GitHub PoC
Hunt-Benito/the-token-was-a-row-number-cve-2026-67602-phpipam-rest-api-authentication-bypass
CVE-2026-67602CRITICAL27 Aug 2026
phpIPAM < 1.8.2 Authentication Bypass via REST API Object Cache
48RISK
open
GitHub PoC
Writeup + CVE analysis + countermeasures for the Hacktivity 'Vulnerabilities, Exploits, and Remote Access Payloads' lab (netcat shells, Metasploit, CVE-2010-1240, CVE-2004-2687).
CVE-2004-268727 Aug 2026
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote at
60RISK
open
previouspage 5 / 2,643next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.