Public exploitation

Exploit catalog

Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.

71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
8,156 exploits
VulnCheck XDB
initial-access
CVE-2025-25257CRITICALunder attack21 Sep 2025
An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability [CWE-89] vulnerabi
100RISK
open
VulnCheck XDB
infoleak
CVE-2018-13379CRITICALunder attackransomware21 Sep 2025
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet FortiOS 6.0.0 to 6.0.4, 5.
100RISK
open
VulnCheck XDB
infoleak
CVE-2025-29927CRITICAL20 Sep 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
local
CVE-2025-32463CRITICALunder attack20 Sep 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
VulnCheck XDB
local
CVE-2025-32463CRITICALunder attack20 Sep 2025
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled director
100RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2025-49113CRITICALunder attack19 Sep 2025
Roundcube Webmail before 1.5.10 and 1.6.x before 1.6.11 allows remote code execution by authenticated users because the
100RISK
open
VulnCheck XDB
initial-access
CVE-2023-30258CRITICAL18 Sep 2025
Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary com
85RISK
open
VulnCheck XDB
infoleak
CVE-2025-29306CRITICAL18 Sep 2025
An issue in FoxCMS v.1.2.5 allows a remote attacker to execute arbitrary code via the case display page in the index.htm
75RISK
open
VulnCheck XDB
initial-access
CVE-2025-57819CRITICALunder attack18 Sep 2025
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-32433CRITICALunder attack18 Sep 2025
Erlang/OTP SSH Vulnerable to Pre-Authentication RCE
100RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware17 Sep 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
VulnCheck XDB
client-side
CVE-2010-124017 Sep 2025
Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of
60RISK
open
VulnCheck XDB
local
CVE-2021-22600MEDIUMunder attack17 Sep 2025
Double Free in net/packet/af_packet.c leading to priviledge escalation
63RISK
open
VulnCheck XDB
infoleak
CVE-2025-29927CRITICAL17 Sep 2025
Authorization Bypass in Next.js Middleware
85RISK
open
VulnCheck XDB
initial-access
CVE-2014-6287CRITICALunder attack16 Sep 2025
The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c a
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-1708HIGHunder attackransomware16 Sep 2025
Improper limitation of a pathname to a restricted directory (“path traversal”)
100RISK
open
VulnCheck XDB
initial-access
CVE-2024-1709CRITICALunder attackransomware16 Sep 2025
Authentication bypass using an alternate path or channel
100RISK
open
VulnCheck XDB
initial-access
CVE-2019-3396CRITICALunder attackransomware16 Sep 2025
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from vers
100RISK
open
VulnCheck XDB
infoleak
CVE-2025-24799HIGH16 Sep 2025
GLPI allows unauthenticated SQL injection through the inventory endpoint
78RISK
open
VulnCheck XDB
initial-access
CVE-2025-3248CRITICALunder attackransomware15 Sep 2025
Langflow < 1.3.0 Unauthenticated RCE via /api/v1/validate/code
100RISK
open
VulnCheck XDB
initial-access
CVE-2017-1261115 Sep 2025
In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expression in a Freemarker tag in
60RISK
open
VulnCheck XDB
remote-with-credentials
CVE-2017-9822HIGHunder attackransomware15 Sep 2025
DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code e
100RISK
open
VulnCheck XDB
client-side
CVE-2025-8088HIGHunder attack14 Sep 2025
Path traversal vulnerability in WinRAR
93RISK
open
VulnCheck XDB
infoleak
CVE-2025-57819CRITICALunder attack14 Sep 2025
FreePBX Affected by Authentication Bypass Leading to SQL Injection and RCE
100RISK
open
VulnCheck XDB
local
CVE-2025-48543HIGHunder attack14 Sep 2025
In multiple locations, there is a possible way to escape chrome sandbox to attack android system_server due to a use aft
71RISK
open
VulnCheck XDB
initial-access
CVE-2025-54309CRITICALunder attack13 Sep 2025
CrushFTP 10 before 10.8.5 and 11 before 11.3.4_23, when the DMZ proxy feature is not used, mishandles AS2 validation and
100RISK
open
VulnCheck XDB
client-side
CVE-2025-48384HIGHunder attack13 Sep 2025
Git allows arbitrary code execution through broken config quoting
71RISK
open
VulnCheck XDB
client-side
CVE-2025-8088HIGHunder attack13 Sep 2025
Path traversal vulnerability in WinRAR
93RISK
open
VulnCheck XDB
local
CVE-2021-3493HIGHunder attack13 Sep 2025
The overlayfs implementation in the linux kernel did not properly validate with respect to user namespaces the setting o
98RISK
open
VulnCheck XDB
initial-access
CVE-2025-53770CRITICALunder attackransomware13 Sep 2025
Microsoft SharePoint Server Remote Code Execution Vulnerability
100RISK
open

We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.