Public exploitation
Exploit catalog
Every public exploit we catalog, in one index. Search by CVE, exploit name or technology — and see, right beside it, what the flaw is actually worth: severity, exploitation probability, and whether it’s already under attack.
71,836cataloged exploits
32,133CVEs with public exploitation
1,932lab-tested
AllExploit-DB 22,786Referência 19,967GitHub PoC 13,264VulnCheck XDB 8,156Nuclei 4,201Metasploit 3,462✓ verified onlyrecentpopularrisk
4,193 exploits
Nucleimedium
Sunshine Photo Cart <= 3.2.5 - Reflected Cross-Site Scripting
WordPress Sunshine Photo Cart plugin <= 3.2.5 - Cross Site Scripting (XSS) vulnerability
36RISK
open ↗Nucleicritical
WordPress CAS Theme <= 1.0.0 - Server-Side Request Forgery
CAS <= 1.0.0 - Unauthenticated SSRF
63RISK
open ↗Nucleihigh
LiteSpeed Cache <= 6.4.1 - Sensitive Information Exposure
WordPress LiteSpeed Cache plugin < 6.5.0.1 - Unauthenticated Account Takeover via Cookie Leak vulnerability
85RISK
open ↗Nucleicritical
LearnPress WordPress LMS Plugin <= 4.2.6.5 - SQL Injection
LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Unauthenticated Time-Based SQL Injection
55RISK
open ↗Nucleicritical
AnteeoWMS < v4.7.34 - SQL Injection
A SQL injection vulnerability in login portal in AnteeoWMS before v4.7.34 allows unauthenticated attackers to execute ar
63RISK
open ↗Nucleihigh
WordPress Core <6.5.2 - Cross-Site Scripting
WordPress Core is vulnerable to Stored Cross-Site Scripting via user display names in the Avatar block in various versio
58RISK
open ↗Nucleicritical
Business Directory Plugin <= 6.4.2 - SQL Injection
Business Directory Plugin – Easy Listing Directories for WordPress <= 6.4.2 - Unauthenticated SQL Injection via listingfields Parameter
68RISK
open ↗Nucleihigh
YITH WooCommerce Ajax Search <= 2.4.0 - Cross-Site Scripting
YITH WooCommerce Ajax Search <= 2.4.0 - Unauthenticated Stored Cross-Site Scripting
36RISK
open ↗Nucleimedium
Usermin 2.100 - Username Enumeration
A discrepancy in error messages for invalid login attempts in Webmin Usermin v2.100 allows attackers to enumerate valid
48RISK
open ↗Nucleicritical
Qualitor <= 8.24 - Remote Code Execution
Qualitor up to 8.24 is vulnerable to Remote Code Execution (RCE) via Arbitrary File Upload in checkAcesso.php.
75RISK
open ↗Nucleihigh
Apache OFBiz - Remote Code Execution
Apache OFBiz: Confused controller-view authorization logic (forced browsing)
100RISK
open ↗Nucleicritical
Apache Solr - Authentication Bypass
Apache Solr: Authentication bypass possible using a fake URL Path ending
85RISK
open ↗Nucleihigh
CentralSquare CryWolf - Path Traversal
A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management) through 2024-08-09 allow
41RISK
open ↗Nucleihigh
TablePress < 2.4.3 - XXE Injection
XML External Entity Reference (XXE) in PHPSpreadsheet's XLSX reader
36RISK
open ↗Nucleihigh
OneDev.io < 11.0.9 - Arbitrary File Read
OneDev vulnerable to arbitrary file reading for unauthenticated user
41RISK
open ↗Nucleihigh
Hoverfly < 1.10.3 - Arbitrary File Read
Arbitrary file read in the `/api/v2/simulation` endpoint in hoverfly (`GHSL-2023-274`)
48RISK
open ↗Nucleimedium
Drupal 11.x-dev - Full Path Disclosure
core/authorize.php in Drupal 11.x-dev allows Full Path Disclosure (even when error logging is None) if the value of hash
48RISK
open ↗Nucleicritical
SafeGuard for Privileged Passwords < 7.5.2 - Authentication Bypass
One Identity Safeguard for Privileged Passwords before 7.5.2 allows unauthorized access because of an issue related to c
55RISK
open ↗Nucleicritical
Apache OFBiz - Remote Code Execution
Apache OFBiz: Prevent use of URLs in files when loading them from Java or Groovy, leading to a RCE
58RISK
open ↗Nucleimedium
XWiki Platform - Unauthorized Document History Access
XWiki Platform document history including authors of any page exposed to unauthorized actors
28RISK
open ↗Nucleicritical
ASIS - SQL Injection Authentication Bypass
ASIS (aka Aplikasi Sistem Sekolah using CodeIgniter 3) 3.0.0 through 3.2.0 allows index.php username SQL injection for A
55RISK
open ↗Nucleimedium
FXServer < v9601 - Information Exposure
Incorrect Access Control in Cfx.re FXServer v9601 and earlier allows unauthenticated users to modify and read arbitrary
43RISK
open ↗Nucleicritical
NetAlertX 23.01.14–24.x < 24.10.12 - Remote Code Execution
NetAlertX 23.01.14 through 24.x before 24.10.12 allows unauthenticated command injection via settings update because fun
75RISK
open ↗Nucleihigh
Yeti Platform < 2.1.12 - Server-Side Template Injection to RCE
A SSTI (server side template injection) vulnerability in the custom template export function in yeti-platform yeti befor
56RISK
open ↗Nucleicritical
DATAGERRY - REST API Auth Bypass
Incorrect access control in BECN DATAGERRY v2.2 allows attackers to execute arbitrary commands via crafted web requests.
63RISK
open ↗Nucleihigh
Sitecore Experience Platform <= 10.4 - Arbitrary File Read
An issue was discovered in Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Commerce (XC) 8.0
48RISK
open ↗Nucleicritical
Camaleon CMS < 2.8.1 Arbitrary File Write to RCE
Arbitrary file write leading to RCE in Camaleon CMS
75RISK
open ↗Nucleicritical
Navidrome < 0.53.0 - Authenticated SQL Injection
Multiple SQL Injections and ORM Leak in navidrome
63RISK
open ↗We index only the public link to the proof of concept — we never host or redistribute exploitation code. Sources: PoC-in-GitHub, Exploit-DB, Nuclei, Metasploit and VulnCheck XDB. A public PoC existing does not mean the flaw is exploitable in your environment.