Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
77,724cataloged exploits
35,724CVEs with public exploitation
24,695lab-tested
AllExploit-DB 24,455Referência 22,492GitHub PoC 14,286VulnCheck XDB 8,703Nuclei 4,314Metasploit 3,474✓ verified onlyrecentpopularrisk
77,724 exploits
GitHub PoC
Mustafa1986/CVE-2022-22963
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open ↗GitHub PoC
Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10
Path traversal in Icinga Web 2
78RISK
open ↗GitHub PoC
this web is vulnerable against CVE-2021-44228
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
100RISK
open ↗GitHub PoC★ 130
Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
Patch for MS Outlook Critical Vulnerability - CVSS 9.8
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗Metasploit300
MinIO Bootstrap Verify Information Disclosure
Minio Information Disclosure in Cluster Deployment
100RISK
open ↗GitHub PoC★ 1
Custom exploit written for enumerating usernames as per CVE-2016-6210
sshd in OpenSSH before 7.3, when SHA256 or SHA512 are used for user password hashing, uses BLOWFISH hashing on a static
70RISK
open ↗GitHub PoC★ 2
ahmedkhlief/CVE-2023-23397-POC-Using-Interop-Outlook
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗VulnCheck XDB
local
In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environmen
68RISK
open ↗GitHub PoC★ 24
CVE-2022-22963 is a vulnerability in the Spring Cloud Function Framework for Java that allows remote code execution. This python script will verify if the vulnerability exists, and if it does, will give you a reverse shell.
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open ↗VulnCheck XDB
info-leak
An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x. The
60RISK
open ↗VulnCheck XDB
initial-access
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open ↗Metasploit600
pfSense Restore RRD Data Command Injection
A command injection vulnerability in the function restore_rrddata() of Netgate pfSense v2.7.0 allows authenticated attac
60RISK
open ↗VulnCheck XDB
infoleak
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database
93RISK
open ↗GitHub PoC★ 1
CVE-2023-23397 C# PoC
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 9
djackreuter/CVE-2023-23397-PoC
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 1
This script exploits a vulnerability (CVE-2021-25094) in the TypeHub WordPress plugin.
Tatsu < 3.3.12 - Unauthenticated RCE
60RISK
open ↗GitHub PoC★ 73
POC for Veeam Backup and Replication CVE-2023-27532
Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database
93RISK
open ↗GitHub PoC
CVE-2023-23397 Remediation Script (Powershell)
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC★ 7
Generates meeting requests taking advantage of CVE-2023-23397. This requires the outlook thick client to send.
Microsoft Outlook Elevation of Privilege Vulnerability
100RISK
open ↗GitHub PoC
h3x0v3rl0rd/CVE-2016-1531
Exim before 4.86.2, when installed setuid root, allows local users to gain privileges via the perl_startup argument.
38RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.