Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

77,900cataloged exploits
35,840CVEs with public exploitation
24,695lab-tested
77,900 exploits
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware26 Mar 2022
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
GitHub PoC354
spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP,CVE-2022-22963
CVE-2022-22963CRITICALunder attack26 Mar 2022
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is po
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-22965CRITICALunder attack26 Mar 2022
A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data b
100RISK
open
GitHub PoC
spasm5/CVE-2018-12326
CVE-2018-1232625 Mar 2022
Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 RC3 allows an attacker to achieve code execution
23RISK
open
GitHub PoC2
Android Ransomware Development - AES256 encryption + CVE-2019-2215 (reverse root shell) + Data Exfiltration
CVE-2019-2215HIGHunder attack25 Mar 2022
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interacti
98RISK
open
GitHub PoC1
poc for CVE-2022-22947
CVE-2022-22947CRITICALunder attack25 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC
tzwlhack/CVE-2018-20250
CVE-2018-20250HIGHunder attackransomware25 Mar 2022
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
VulnCheck XDB
client-side
CVE-2018-20250HIGHunder attackransomware25 Mar 2022
In WinRAR versions prior to and including 5.61, There is path traversal vulnerability when crafting the filename field o
100RISK
open
GitHub PoC
A quick python exploit for the Nostromo 1.9.6 remote code execution vulnerability. Only takes in host and port of web server as required arguments.
CVE-2019-16278CRITICALunder attack24 Mar 2022
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an attacker to achieve remote co
100RISK
open
VulnCheck XDB
initial-access
CVE-2021-44529CRITICALunder attackransomware24 Mar 2022
A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execut
100RISK
open
VulnCheck XDB
initial-access
CVE-2018-289324 Mar 2022
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). S
50RISK
open
VulnCheck XDB
initial-access
CVE-2019-16278CRITICALunder attack24 Mar 2022
Directory Traversal in the function http_verify in nostromo nhttpd through 1.9.6 allows an attacker to achieve remote co
100RISK
open
GitHub PoC1
This is a exploit code for CVE-2020-8163
CVE-2020-816324 Mar 2022
The is a code injection vulnerability in versions of Rails prior to 5.0.1 that wouldallow an attacker who controlled the
60RISK
open
VulnCheck XDB
local
CVE-2021-4034HIGHunder attackransomware23 Mar 2022
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack22 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
Exploit-DB
iRZ Mobile Router - CSRF to RCE
CVE-2022-27226remotehardware22 Mar 2022
A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in
35RISK
open
Exploit-DB
Ivanti Endpoint Manager 4.6 - Remote Code Execution (RCE)
CVE-2021-44529CRITICALunder attackransomwareremotemultiple22 Mar 2022
A code injection vulnerability in the Ivanti EPM Cloud Services Appliance (CSA) allows an unauthenticated user to execut
100RISK
open
GitHub PoC2
Dirty Pipe - CVE-2022-0847
CVE-2022-0847HIGHunder attack22 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
GitHub PoC
XSS via Host Header injection and Steal Password Reset Token of another user
CVE-2022-2418122 Mar 2022
Cross-site scripting (XSS) via Host Header injection in PKP Open Journals System 2.4.8 >= 3.3 allows remote attackers to
38RISK
open
Metasploit500
io_uring Same Type Object Reuse Priv Esc
CVE-2022-104322 Mar 2022
A flaw was found in the Linux kernel’s io_uring implementation. This flaw allows an attacker with a local account to cor
18RISK
open
GitHub PoC1
SivaPriyaRanganatha/CVE-2020-6418
CVE-2020-6418HIGHunder attack21 Mar 2022
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corru
100RISK
open
VulnCheck XDB
local
CVE-2016-5195HIGHunder attack21 Mar 2022
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by lev
93RISK
open
GitHub PoC18
Enokiy/cve-2022-22947-spring-cloud-gateway
CVE-2022-22947CRITICALunder attack21 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC
Anonymous-Family/CVE-2015-1701-download
CVE-2015-1701HIGHunder attackransomware21 Mar 2022
Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local
98RISK
open
GitHub PoC
LTiDi2000/CVE-2020-2551
CVE-2020-2551CRITICALunder attack21 Mar 2022
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Suppor
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-22947CRITICALunder attack21 Mar 2022
In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack whe
100RISK
open
GitHub PoC
Unspecified vulnerability in Microsoft Windows before 8 allows local users to gain privileges via unknown vectors, as exploited in the wild in April 2015 (Base Score: 7.2 HIGH) Current Description Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local users to gain privileges via a crafted application, as exploited in the wild in April 2015, aka "Win32k Elevation of Privilege Vulnerability
CVE-2015-1701HIGHunder attackransomware21 Mar 2022
Win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows local
98RISK
open
GitHub PoC9
Apache APISIX < 2.12.1 Remote Code Execution and Docker Lab
CVE-2022-24112CRITICALunder attack20 Mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISK
open
VulnCheck XDB
local
CVE-2022-0847HIGHunder attack20 Mar 2022
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in cop
100RISK
open
VulnCheck XDB
initial-access
CVE-2022-24112CRITICALunder attack20 Mar 2022
apisix/batch-requests plugin allows overwriting the X-REAL-IP header
100RISK
open
previouspage 598 / 2,597next

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.